Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Operations Engineer (f/m) image - Rise Careers
Job details

Senior Security Operations Engineer (f/m)

We're making the world of digital assets accessible and secure for everyone. Join the mission. 


Founded in 2014, Ledger is the global platform for digital assets and Web3. Over 25% of the world’s crypto assets are secured through our Ledger Nanos. Headquartered in Paris and Vierzon, with offices in the UK, US, Switzerland and Singapore, Ledger has a team of more than 700 professionals developing a variety of products and services to enable individuals and companies to securely buy, store, swap, grow and manage crypto assets – including the Ledger hardware wallets line with more than 7 millions units already sold in 200 countries. 


At Ledger, we embody the values that make us unique: Pragmatism, Audacity, Commitment, Trust and Transparency. Hear from our employees how they shape the work we do here.


Your mission
  • Ledger is seeking a Senior Threat Hunter & Automation Engineer with extensive experience in scale-up environments to strengthen and optimize our security operations.
  • This role will focus on maintaining and enhancing security monitoring, detection, and response capabilities, with a specific emphasis on developing and refining detection logic in our SIEM (Sekoia).
  • The ideal candidate will bring expertise in securing SaaS platforms, Google Workspace, and IAM (e.g., OKTA), while contributing to the scalability and efficiency of our security tools and processes.
  • This is a technical, hands-on role for someone who thrives in dynamic environments and has a strong background in cloud and SaaS security.


In this role you will:
  • Detection Logic Development: Design, implement, and optimize detection rules in the SIEM (Sekoia) to improve threat detection accuracy and reduce false positives. Collaborate with the Threat Intelligence team to integrate CTI (Cyber Threat Intelligence) into detection workflows.
  • Security Monitoring & Response: Monitor and analyze security events using Sekoia (SIEM) and SentinelOne (EDR), ensuring rapid identification and mitigation of threats. Lead technical investigations and coordinate with stakeholders to resolve security incidents effectively.
  • SaaS and Google Workspace Security: Manage and secure SaaS applications, with a focus on Google Workspace, ensuring configurations meet security best practices.
  • Identify and Access Management (IAM): Administer and optimize IAM systems like OKTA, implementing robust access control policies and automating user lifecycle management.
  • Automation and Process Improvement: Develop and enhance automation workflows using GitHub Actions or other tools to streamline detection and response processes.
  • Vulnerability Management: Identify, prioritize, and remediate vulnerabilities in cloud and SaaS environments using tools like Wiz and SBOM registries.
  • Collaboration and Enablement: Work closely with Engineering, Infrastructure, and GRC teams to align security practices with organizational goals. Provide technical guidance and support to team members, ensuring alignment with best practices.
  • Documentation and Knowledge Sharing: Create and maintain playbooks, runbooks, and documentation for detection logic and incident response processes.


What we’re looking for:
  • Professional Experience: 7+ years in security operations, preferably in scale-up environments with a focus on SaaS platforms and cloud infrastructure. Hands-on experience developing detection logic for SIEM tools (e.g., Sekoia, Splunk).
  • Technical Skills: Proficiency in configuring and managing SIEM tools, with a focus on custom detection logic and rule optimization. Expertise in EDR (e.g., SentinelOne), IAM systems (e.g., OKTA), and SaaS security (e.g., Google Workspace). Solid understanding of vulnerability management tools like Wiz and cloud security best practices (AWS preferred).
  • Soft Skills: Strong analytical skills for incident investigation and threat analysis. Excellent collaboration and communication abilities to work across teams and share knowledge effectively.


What's in it for you:
  • Working schedule: Monday to Friday, standard working hours, hybrid (2 days in the office / week)
  • Training: Get trained and gain experience in one of today's most exciting and growing industries
  • Equity: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow
  • Flexibility: A hybrid work policy
  • Medical: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage
  • Well-being: Personal development, coaching & fitness with our dedicated partners
  • Vacation: 20 days of paid leave per year
  • Retirement: 401k with employer match
  • High tech: Access to high performance office equipment and gadgets, including Apple products
  • Transport: Ledger reimburses part of your preferred means of transportation
  • Discounts: Employee discount on all our products.


We are an equal opportunity employer for all without any distinction of gender, ethnicity, religion, sexual orientation, social status, disability or age. 

Ledger Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Ledger DE&I Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of Ledger
Ledger CEO photo
Pascal Gauthier
Approve of CEO

Average salary estimate

$150000 / YEARLY (est.)
min
max
$120000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Operations Engineer (f/m), Ledger

Join Ledger as a Senior Security Operations Engineer and be a crucial part of making digital assets secure and accessible for everyone! Based in vibrant Portland, United States, you will play a key role in strengthening and optimizing our security operations within a company that has secured over 25% of the world’s crypto assets. As a Senior Security Operations Engineer, you'll harness your extensive experience from scale-up environments to maintain and enhance our security monitoring, detection, and response capabilities. This hands-on role emphasizes developing and refining detection logic in our SIEM system, Sekoia, ensuring we stay ahead of threats in this dynamic landscape. Your expertise in managing SaaS platforms, particularly Google Workspace, and IAM systems such as OKTA will be invaluable as you work closely with various teams to implement robust security measures. You'll be leading technical investigations, streamlining processes through automation, and continuously improving our security posture. Being part of Ledger means being surrounded by passionate professionals committed to values like Pragmatism, Audacity, and Trust. Not only do we offer a robust working environment, but also perks that enhance your career and well-being—such as stock options, comprehensive health coverage, and flexibility with our hybrid work policy. Ready to take charge and innovate in the realm of security operations? Apply to join us at Ledger today!

Frequently Asked Questions (FAQs) for Senior Security Operations Engineer (f/m) Role at Ledger
What are the responsibilities of a Senior Security Operations Engineer at Ledger?

As a Senior Security Operations Engineer at Ledger, responsibilities include designing and optimizing detection logic in our SIEM (Sekoia), monitoring security events to ensure rapid threat identification and response, and managing security for SaaS applications like Google Workspace. You will also be involved in developing automation workflows, managing IAM systems like OKTA, and collaborating closely with various teams to enhance security practices.

Join Rise to see the full answer
What qualifications are needed for the Senior Security Operations Engineer position at Ledger?

The ideal qualifications for the Senior Security Operations Engineer position at Ledger include 7+ years of experience in security operations, particularly within SaaS platforms and cloud environments. Hands-on experience with SIEM tools (such as Sekoia or Splunk), EDR tools (like SentinelOne), and vulnerability management tools (such as Wiz) is essential. Strong analytical, collaboration, and communication skills are also required.

Join Rise to see the full answer
What technical skills are essential for a Senior Security Operations Engineer at Ledger?

A Senior Security Operations Engineer at Ledger should exhibit proficiency in configuring and managing SIEM tools with a focus on developing custom detection logic. Expertise in EDR, IAM systems such as OKTA, and overall SaaS security practices is critical, alongside a solid understanding of cloud security best practices, particularly in AWS environments.

Join Rise to see the full answer
What benefits can I expect as a Senior Security Operations Engineer at Ledger?

Working as a Senior Security Operations Engineer at Ledger comes with several attractive benefits, including a hybrid work policy, stock options, extensive medical, dental, and vision coverage, personal development initiatives, and a retirement plan with employer matching. You also get 20 days of paid vacation each year, access to high-performance office equipment, and discounts on Ledger products.

Join Rise to see the full answer
How does the Senior Security Operations Engineer role support Ledger's mission?

The Senior Security Operations Engineer plays a vital role in supporting Ledger's mission by enhancing our security posture, ensuring our tools and processes are optimized to detect and respond to threats effectively. By developing detection logic and securing SaaS platforms, the Senior Engineer directly contributes to our goal of making digital assets accessible and secure for everyone.

Join Rise to see the full answer
Common Interview Questions for Senior Security Operations Engineer (f/m)
What experience do you have with SIEM tools like Sekoia?

When answering this question, describe your hands-on experience with SIEM tools, particularly how you developed and optimized detection rules. Provide an example of a time when your work led to improved threat detection or reduced false positives.

Join Rise to see the full answer
Can you detail your experience with vulnerability management tools?

In response, mention the specific tools you've used (e.g., Wiz) and explain your approach to identifying, prioritizing, and remediating vulnerabilities. Use concrete examples to showcase your process and outcomes.

Join Rise to see the full answer
How do you handle collaboration across different teams regarding security practices?

Discuss your communication strategies and how you've successfully collaborated with engineering, infrastructure, or GRC teams. Highlight instances where teamwork led to improved security outcomes, showing your ability to bridge gaps between teams.

Join Rise to see the full answer
What techniques do you use for incident response?

Explain your structured approach to incident response. Detail the steps you take from detection to incident resolution and include any tools or frameworks you rely on to guide your actions during an incident.

Join Rise to see the full answer
Describe your familiarity with Google Workspace security.

When you answer, detail your experience with managing Google Workspace security settings and best practices. You can mention any specific security configurations you've implemented or changes that resulted in enhanced security.

Join Rise to see the full answer
How do you ensure your detection logic remains relevant and effective?

Describe your methods for continuously reviewing and updating detection rules based on new threats or changes in the environment. Mention any specific metrics or feedback mechanisms you use to gauge effectiveness.

Join Rise to see the full answer
What is your process for developing automation workflows?

Share your experience with automation tools like GitHub Actions. Discuss a particular project where you created workflows to streamline processes and the impact it made on operational efficiency.

Join Rise to see the full answer
Can you give examples of challenges you've faced in SaaS security?

Respond with real-life challenges that you've encountered concerning SaaS security. Explain how you approached these challenges and the solutions or improvements that resulted from your efforts.

Join Rise to see the full answer
How do you stay updated on cybersecurity trends?

Explain your approach to professional development, including any websites, forums, certifications, or networks you actively engage with. This will show your commitment to staying informed in a rapidly changing field.

Join Rise to see the full answer
What role does threat intelligence play in your security processes?

Discuss how you incorporate threat intelligence into your workflows, emphasizing any collaboration with Threat Intelligence teams and how it influences your detection and response strategies.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted yesterday
Photo of the Rise User
SKIMS (CA) Hybrid Los Angeles, California
Posted 13 days ago
Photo of the Rise User
Posted 14 days ago
Photo of the Rise User
Posted 8 hours ago
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
Pythian Remote No location specified
Posted 7 days ago
Photo of the Rise User
Posted 14 hours ago

Founded in 2014, Ledger is the global platform for digital assets and Web3. Over 15% of the world’s crypto assets are secured through Ledger Nanos. Headquartered in Paris and Vierzon, with offices in London, New York and Singapore, Ledger has a te...

26 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 3, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!