At a Glance
- Tasks: Shape Doxy.me's security operations by writing detection rules and responding to threats.
- Company: Join a leading telehealth platform dedicated to protecting patient data globally.
- Benefits: Enjoy competitive salary, unlimited PTO, and flexible work options.
- Why this job: Make a real impact in healthcare security while working with innovative technology.
- Qualifications: Strong programming skills in Python/TypeScript and experience with detection engineering.
- Other info: Be part of a small, high-impact team with excellent career growth opportunities.
The predicted salary is between 36000 - 60000 £ per year.
Who You Are
You are a security engineer with a strong software engineering background who would rather write detection-as-code than click through a SIEM UI. You care about protecting healthcare providers and the patients who depend on them — and you want to build the systems that make that possible. You will own Doxy.me's detection and security operations function: writing detection rules, building telemetry pipelines, and responding to threats across our cloud-native platform. You will apply engineering principles to security — detection-as-code over point-and-click, automation over manual toil. Most of your time will be spent on detection engineering, but you will also contribute to threat modeling and product security alongside the wider team. You are comfortable with ambiguity, self-directed, and motivated by impact. There is no SOC manager — you will shape this function from scratch.
Your Skills
- Experience writing and shipping detection rules using a detection-as-code approach
- Strong programming skills in Python and/or TypeScript; comfortable with SQL for querying security data
- Experience with AWS and cloud-native infrastructure
- Familiarity with observability and monitoring platforms like Datadog
- Understanding of attacker techniques and frameworks like MITRE ATT&CK
- Experience with CI/CD pipelines and software engineering workflows
- Comfort with threat modeling and application security concepts
Nice to have:
- Experience with incident response and forensic investigation
- Familiarity with identity and access management systems
The Team
The Information Security team at Doxy.me is small and high-impact: a CISO, plus engineers covering corporate security, GRC & compliance, and product & application security. You will be our first dedicated detection engineer — meaning you will shape the function, the tooling, and the approach from the ground up. You will work most closely with our product security engineer on threat modeling and detection strategy, and across the company with product and engineering teams.
Detection Engineering
- Own the detection lifecycle end-to-end: research threats, write rules as code, deploy via CI/CD, tune for precision, and maintain over time
- Build and maintain telemetry pipelines that give visibility into application, infrastructure, and identity activity
- Correlate signals across multiple data sources to improve detection accuracy and reduce false positives
Security Operations & Response
- Investigate and respond to security events, including containment, remediation, and post-incident analysis
- Build automated response workflows that integrate with our cloud infrastructure and identity systems
Broader Security
- Partner with product and engineering teams on threat modelling to identify detection opportunities early in the design process
- Contribute to security monitoring standards, response procedures, and operational playbooks
Technical Assessment
As part of the interview process, you will complete a practical assessment focused on detection engineering and threat analysis — or share a portfolio of relevant past work.
Who We Are
At Doxy.me, we are on a mission to connect the world to the future of healthcare. With the trust of over one million providers, we are one of the largest Telehealth platforms in the world — but we are not done there. We are HIPAA-regulated and trusted with sensitive patient data across 180+ countries — protecting that trust is why our security team exists. Blending innovative technology and world-class design, we enhance the patient-provider experience and extend the reach of healthcare to every corner of the globe. Our team is motivated by making a difference in the world and pushing the boundaries of what is possible. If you want to change the world by impacting the lives of millions while having fun with a great team, come join us!
Our Culture
- Authentic: We are sincere and care personally. We do not let egos get in the way — getting to the right answer is more important than being right. We focus on doing the right thing and act with integrity.
- Bright: We use our intelligence, talent, and curiosity to create simple, innovative, world-class solutions to problems. We are constantly seeking to increase our own brightness through learning and collaboration.
- Effective: We are hungry self-starters who will get the job done regardless of circumstances. We do not need to be managed or told what to do. We pride ourselves in producing high-quality, world-class results.
Benefits
We are committed to giving you the tools you need to do your best work. We take care of the little things so you can focus on what matters most. Here is a taste of what you can expect:
- A fun, flexible work environment (work from home or on location at one of our regional hubs)
- Competitive salary
- Paid trainings and certifications
- Advancement opportunities in a growing company
- Medical, Vision, and Dental insurance
- 401k match
- Unlimited PTO
Our employees give us a 4.9 rating on Glassdoor.
Security Engineer, Detection & Response employer: Doxy.me Inc.
Contact Detail:
Doxy.me Inc. Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Engineer, Detection & Response
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, especially those already at Doxy.me. A friendly chat can open doors and give you insider info on what they're really looking for.
✨Tip Number 2
Show off your skills! If you've got a portfolio of detection rules or projects, share it during interviews. It’s a great way to demonstrate your expertise and passion for detection engineering.
✨Tip Number 3
Prepare for that technical assessment! Brush up on your detection-as-code skills and be ready to discuss your thought process. We love seeing how you tackle real-world problems.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our mission at Doxy.me.
We think you need these skills to ace Security Engineer, Detection & Response
Some tips for your application 🫡
Show Your Passion for Security: When writing your application, let us see your enthusiasm for security engineering! Share why you care about protecting healthcare providers and how you want to make a difference in the lives of patients. This will help us understand your motivation and fit for our mission.
Highlight Your Technical Skills: Make sure to showcase your programming skills, especially in Python or TypeScript, and any experience with detection-as-code. We want to see how your technical background aligns with the role, so don’t hold back on sharing relevant projects or experiences!
Be Clear and Concise: Keep your application straightforward and to the point. Use clear language to describe your experiences and skills, and avoid jargon unless it’s relevant. We appreciate clarity as much as we appreciate creativity!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy and quick!
How to prepare for a job interview at Doxy.me Inc.
✨Know Your Detection-as-Code
Make sure you can talk confidently about your experience with detection-as-code. Prepare examples of detection rules you've written and how you've implemented them in a CI/CD pipeline. This will show that you understand the core of what the role entails.
✨Brush Up on Your Programming Skills
Since strong programming skills in Python and/or TypeScript are crucial, be ready to discuss your coding experience. You might even want to prepare for some technical questions or coding challenges related to security data querying using SQL.
✨Familiarise Yourself with MITRE ATT&CK
Understanding attacker techniques is key for this role. Review the MITRE ATT&CK framework and be prepared to discuss how you would apply it in threat modelling and detection strategies. This shows you're proactive and knowledgeable about current security threats.
✨Show Your Passion for Impact
Doxy.me is all about making a difference in healthcare. Be ready to share why you're passionate about security in this field and how you envision contributing to their mission. This personal touch can really set you apart from other candidates.