Security Engineer, Detection & Response
Join us in building the future of finance.
Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.
About the team + role
The Security Operations (SecOps) team’s mission is to proactively safeguard Robinhood and its customers. SecOps is responsible for monitoring, detecting, and responding to security incidents in real time. We do this by staying ahead of threats through gathering threat intelligence, conducting Red Team operations, and working with external security researchers to identify and mitigate potential risks before they can be exploited. By maintaining a robust defense posture, the team protects Robinhood customers from ever-evolving cyber threats.
Want more jobs like this?
Get jobs in New York, NY delivered to your inbox every week.

As a Detection & Response Engineer, you will focus on strengthening Robinhood’s ability to detect, investigate, and respond to security incidents. You’ll work on developing high-quality detections, improving response workflows, and collaborating with security teams to reduce detection gaps. This role requires technical expertise in security operations, detection engineering, and incident response while working closely with SOC analysts, engineers, and security stakeholders.
The role is located in the office location(s) listed on this job description which will align with our in-office working environment. Please connect with your recruiter for more information regarding our in-office philosophy and expectations.
What you’ll do
-
Investigate security alerts and incidents, conduct log analysis, and collaborate with teams to mitigate threats
-
Develop and fine-tune detection logic to improve visibility into security threats, reducing false positives and detection gaps
-
Analyze security signals, correlate data across multiple sources, and determine appropriate response actions
-
Continuously monitor, evaluate, and improve security detections based on evolving threats and real-time feedback from investigations
-
Assist in automating detection workflows and enhancing security operations efficiency through scripting or SOAR tools
-
Contribute to post-incident reports and identify areas for improvement in detections, response, and remediation strategies
What you bring
-
1+ years of experience in security operations, detection engineering, or incident response
-
Strong understanding of log analysis, detection tuning, and alert triage within security tools (SIEMs, EDRs, cloud security platforms)
-
Hands-on experience conducting incident response and writing detections for AWS, Kubernetes, Google Workspace, macOS, and Okta
-
Experience writing detections using query languages
-
Familiarity with threat hunting, log correlation, and investigation techniques across cloud and endpoint environments
-
Ability to analyze security telemetry, identify attack patterns, and contribute to continuous detection improvements
-
Strong problem-solving skills and ability to collaborate across security teams in fast-paced incident response scenarios
Accommodation
Our team is committed to providing an inclusive and welcoming interview experience for all candidates. If you require a specific accommodation during the application or interview process due to a physical or mental condition, please complete this Applicant Accommodation Form to notify our team. The form should only be completed if you need a specific accommodation.
In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.
Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed.
Base Pay Range:
Click here to learn more about our Total Rewards, which vary by region and entity.
If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.
Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.
Perks and Benefits
Health and Wellness
- FSA
- Fitness Subsidies
- HSA With Employer Contribution
- Health Insurance
- Dental Insurance
- Vision Insurance
- Life Insurance
- Short-Term Disability
- Long-Term Disability
- Mental Health Benefits
Parental Benefits
- Fertility Benefits
- Adoption Assistance Program
Work Flexibility
- Work-From-Home Stipend
Office Life and Perks
- Company Outings
- Commuter Benefits Program
- Casual Dress
- Pet-friendly Office
- Happy Hours
- Snacks
- Some Meals Provided
- On-Site Cafeteria
Vacation and Time Off
- Leave of Absence
- Personal/Sick Days
- Paid Holidays
- Paid Vacation
- Volunteer Time Off
Financial and Retirement
- Company Equity
- 401(K) With Company Matching
- Stock Purchase Program
- Performance Bonus
Professional Development
- Learning and Development Stipend
- Promote From Within
- Lunch and Learns
- Work Visa Sponsorship
- Access to Online Courses
Diversity and Inclusion
- Diversity, Equity, and Inclusion Program
- Employee Resource Groups (ERG)
Company Videos
Hear directly from employees about what it is like to work at Robinhood.