Talent.com
Sandisk
Senior Security EngineerSandisk • Milpitas, California, United States
Senior Security Engineer

Senior Security Engineer

Sandisk • Milpitas, California, United States
20 days ago
Job type
  • Full-time
Job description
Job Description

We are seeking a highly experienced Senior Security Engineer to own, design, and continuously improve the security tooling ecosystem that underpins a modern, detection-first Security Operations Center (SOC). This role is deeply technical and hands-on, with primary responsibility for the reliability, effectiveness, and evolution of SOC platforms.

This engineer will act as the L3/L4 technical authority for the security platforms utilized by the SOC—bridging engineering and operations—while also owning EDR health & hygiene, detection engineering enablement, and emerging threat assessment. The role partners closely with SOC analysts, Incident Response, Threat Intelligence, IT Infrastructure, and Architecture teams to ensure tools are resilient, trusted, and aligned to adversary behaviors.

ESSENTIAL DUTIES AND RESPONSIBILITIES:

SOC Tooling Engineering & Ownership

  • Engineer, deploy, and maintain all core SOC platforms, including:
    • Malware analysis and sandboxing solutions
    • Analyst workstation environments (Windows investigation VMs)
    • Endpoint Detection & Response (EDR/XDR)
    • Email Security Engineering
    • Vulnerability Scan Engineering
  • Act as technical owner for SOC platforms, including alignment with architecture requirements, lifecycle management, upgrades, and decommissioning
  • Ensure SOC platforms are engineered for scale, reliability, performance, and forensic integrity
  • Partner with IT and platform teams to resolve dependency, access, and infrastructure issues impacting SOC operations

EDR Engineering, Health & Hygiene

  • Own EDR platform engineering, configuration, and operational health across the enterprise
  • Define and enforce EDR hygiene standards (sensor coverage, policy consistency, versioning, asset attribution)
  • Monitor EDR health metrics and proactively remediate gaps impacting detection or response efficacy
  • Develop testing frameworks to validate EDR detections, policies, and response actions

Detection Engineering Enablement

  • Serve as a technical owner of detection engineering, enabling high-fidelity detections through better tooling, telemetry, and data quality
  • Validate that endpoint, sandbox, and supporting tooling generate the telemetry required to support detection logic and investigations
  • Collaborate on detection validation, tuning, and testing pipelines
  • Translate emerging threats and attacker techniques into tooling and telemetry requirements

Malware Analysis & Investigation Enablement

  • Engineer and maintain malware detonation and analysis environments that support safe, repeatable analysis
  • Support SOC and IR teams with tooling for static and dynamic malware analysis
  • Improve sandbox fidelity to better represent enterprise environments and common attacker tradecraft

Emerging Threat & Capability Assessment

  • Assess new attacker techniques, malware families, and evasion tactics for detection and prevention opportunities across the enterprise
  • Identify gaps where tooling or configurations do not adequately surface malicious behavior
  • Evaluate new security tools and capabilities to address detection, analysis, or response gaps
  • Provide engineering-backed recommendations grounded in operational SOC realities

Automation & Reliability

  • Automate routine SOC operations including health checks, validation, deployments, and reporting
  • Develop scripts and tooling (PowerShell, Python, etc.) to reduce manual overhead and analyst toil
  • Improve reliability through monitoring, alerting, and failure-mode testing of SOC platforms

Documentation & Standards

  • Author and maintain engineering documentation for SOC platforms, architectures, and configurations
  • Define technical standards and guardrails for SOC platforms usage and integrations
  • Support audits, tabletop exercises, and incident reviews from a tooling and telemetry perspective

Qualifications

Education & Experience

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent practical experience
  • 5–10+ years of experience in security engineering, detection engineering, or advanced SOC technical roles
  • Demonstrated experience supporting SOC operations through engineering and platform ownership

Required Technical Qualifications

  • Deep hands-on experience with EDR/XDR platforms (e.g., CrowdStrike, Defender, SentinelOne)
  • Experience engineering SOC platforms rather than only consuming alerts (platform ownership mindset)
  • Strong understanding of Windows internals, Linux operating systems, and server infrastructure, including endpoint and host-level telemetry, process execution, persistence mechanisms, and administrative activity across workstation and server environments
  • Experience supporting malware analysis and sandboxing environments
  • Familiarity with SOC workflows, detection pipelines, and incident response requirements
  • Strong scripting and automation skills (PowerShell, Python)
  • Solid grasp of attacker TTPs mapped to the MITRE ATT&CK framework

Preferred Qualifications

  • Experience integrating SOC platforms with SIEM, SOAR, or case management platforms
  • Exposure to vulnerability management and scanning platforms
  • Experience designing detection validation or purple-team style testing
  • Relevant certifications (GIAC, GREM, GCED, GCIA, OSCP) preferred but not required

Success in This Role Looks Like

  • High confidence in SOC platform reliability, coverage, and data quality
  • Measurable improvements in EDR health, sensor coverage, and detection fidelity
  • Faster, higher-quality investigations enabled by well-engineered analyst tooling
  • Reduced analyst toil through automation and platform stability
  • SOC detection and response capabilities that evolve in step with emerging threats


Additional Information

Sandisk is committed to providing equal opportunities to all applicants and employees and will not discriminate against any applicant or employee based on their race, color, ancestry, religion (including religious dress and grooming standards), sex (including pregnancy, childbirth or related medical conditions, breastfeeding or related medical conditions), gender (including a person’s gender identity, gender expression, and gender-related appearance and behavior, whether or not stereotypically associated with the person’s assigned sex at birth), age, national origin, sexual orientation, medical condition, marital status (including domestic partnership status), physical disability, mental disability, medical condition, genetic information, protected medical and family care leave, Civil Air Patrol status, military and veteran status, or other legally protected characteristics. We also prohibit harassment of any individual on any of the characteristics listed above. Our non-discrimination policy applies to all aspects of employment. We comply with the laws and regulations set forth in the "Know Your Rights: Workplace Discrimination is Illegal” poster. Our pay transparency policy is available here.

Sandisk thrives on the power and potential of diversity. As a global company, we believe the most effective way to embrace the diversity of our customers and communities is to mirror it from within. We believe the fusion of various perspectives results in the best outcomes for our employees, our company, our customers, and the world around us. We are committed to an inclusive environment where every individual can thrive through a sense of belonging, respect and contribution.

Sandisk is committed to offering opportunities to applicants with disabilities and ensuring all candidates can successfully navigate our careers website and our hiring process. Please contact us at jobs.accommodations@sandisk.com to advise us of your accommodation request. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

Based on our experience, we anticipate that the application deadline will be 11/03/2026 (3 months from posting), although we reserve the right to close the application process sooner if we hire an applicant for this position before the application deadline. If we are not able to hire someone from this role before the application deadline, we will update this posting with a new anticipated application deadline.

#LI-RT1

Compensation & Benefits Details

  • An employee’s pay position within the salary range may be based on several factors including but not limited to (1) relevant education; qualifications; certifications; and experience; (2) skills, ability, knowledge of the job; (3) performance, contribution and results; (4) geographic location; (5) shift; (6) internal and external equity; and (7) business and organizational needs.
  • The salary range is what we believe to be the range of possible compensation for this role at the time of this posting. We may ultimately pay more or less than the posted range and this range is only applicable for jobs to be performed in California, Colorado, New York or remote jobs that can be performed in California, Colorado and New York. This range may be modified in the future.
  • You will be eligible to participate in Sandisk's Short-Term Incentive (STI) Plan, which provides incentive awards based on Company and individual performance. Depending on your role and your performance, you may be eligible to participate in our annual Long-Term Incentive (LTI) program, which consists of restricted stock units (RSUs) or cash equivalents, pursuant to the terms of the LTI plan. Please note that not all roles are eligible to participate in the LTI program, and not all roles are eligible for equity under the LTI plan. RSU awards are also available to eligible new hires, subject to Sandisk's Standard Terms and Conditions for Restricted Stock Unit Awards.
  • We offer a comprehensive package of benefits including paid vacation time; paid sick leave; medical/dental/vision insurance; life, accident and disability insurance; tax-advantaged flexible spending and health savings accounts; employee assistance program; other voluntary benefit programs such as supplemental life and AD&D, legal plan, pet insurance, critical illness, accident and hospital indemnity; tuition reimbursement; transit; the Applause Program, employee stock purchase plan, and the Sandisk's Savings 401(k) Plan.
  • Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company’s sole discretion, consistent with the law.
Create a job alert for this search

Senior Security Engineer • Milpitas, California, United States

Similar jobs

Sr. Security Manager

Super Micro ComputerSan Jose, CA, United States
Full-time

Location: San Jose, California, United States.About Supermicro: Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise ... Show more

 • Promoted

Senior Security Engineer (Remote)

Lightning LabsPalo Alto, CA, United States
Remote
Full-time

Lightning Labs is seeking to hire a Security Engineer for the ongoing scaling of our growing engineering organization.This is a hands-on role that consists of devising and implementing policies and... Show more

 • Promoted

Security Engineer III

Pinnacle Technical ResourcesCupertino, CA, US
$80.00–$90.00 hourly
Full-time +1

Position: Security Engineer III Location: Cupertino, California Duration: 12 months Contract Type: W2 Job ID: 175804 Job Overview: The Security Engineer III will play a critical role in ensuring th... Show more

 • Promoted

Consumer Research Associate (Remote)

GL IncRio del Mar, California
$15.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Senior Security Architect

TradeJobsWorkForce95126 San Jose, CA, US
Full-time

Senior Security Architect Job Duties: Enhances security team accomplishments and competence by planning deliv... Show more

 • Promoted

Director, Enterprise Security (UCAN)

NetflixLos Gatos, CA, United States
Full-time

Director, Enterprise Security (UCAN).New York, New York, United States of America Los Angeles, California, United States of America.At Netflix, our mission is to entertain the world.Together, we a... Show more

 • Promoted

Application Security Engineer at San Jose, CA (Remote)

Sysmind LLCSan Jose, CA, United States
Remote
Full-time

Location :San Jose, CA (remote)Duration :6 monthsSeeking an Application Security Engineer to build and integrate services that generate and validate SBOMs (Software Bill of Materials), enabling sec... Show more

 • Promoted

Senior IT-Security Engineer - Remote & Team Lead

Data-Sec UG (haftungsbeschrnkt)Palo Alto, CA, United States
Remote

Kandidaten sollten eine passende Ausbildung oder ein Studium sowie praktische Kenntnisse in Security-Lsungen mitbringen.Flexible Arbeitszeiten und Homeoffice sind Teil des Angebots. Show more

 • Promoted

Senior Security - Corporate Security

NubankPalo Alto, CA, United States
Full-time

Senior Security - Corporate SecurityNu is one of the largest digital financial platforms in the world, with more than 127 million customers across Brazil, Mexico, and Colombia.Guided by our mission... Show more

 • Promoted

Security Engineer - Data Loss Prevention (DLP)

CADENCE INCSan Jose, CA, United States
Full-time

Cadence Security EngineerAt Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.Summary:A highly skilled and experienced Security Engineer with... Show more

 • Promoted

Senior Manager, Cybersecurity

A10 NetworksSan Jose, CA, United States
Full-time

A10 Networks is seeking a Senior Manager, Production Operations & Data Center Security to lead security strategy and operational execution across production infrastructure, cloud environments, and ... Show more

 • Promoted

Senior Vice President, Global Go-To-Market (GTM) - Citrix Security Business

CloudSan Ramon, CA, United States
Full-time

Senior Vice President, Global Go-To-Market (GTM) - Citrix Security Business.Citrix is seeking an exceptional, growth-oriented Senior Vice President (SVP), Global Go-To-Market (GTM) Citrix Security... Show more

 • Promoted

Project Engineer - Audio/Visual

BEI Construction, Inc.San Leandro, CA, United States
Full-time

BEI Construction is seeking a Project Engineer to support audio/visual projects in our Low Voltage division.This role will report to a General Manager with periodic travel to jobsites located throu... Show more

 • Promoted

Senior Engineering Manager - Enterprise Security & Java API Development

Argyle InfotechSan Jose, CA, United States
Temporary

Senior Engineering Manager Enterprise Security & Java API Development.Location: San Jose, CA 95134 Duration: 6 Months Contract Target Start Date: June 15, 2026.We are seeking an experienced Senior... Show more

 • Promoted

USA_Engineer

VariteSanta Clara, CA, United States
Full-time

Review and intake physical security project assessments provided by business stakeholders.Hiring Manager is seeking a candidate with experience in construction project management, Access Control (C... Show more

 • Promoted

Senior Lead Endpoint Security

Capital oneSan Jose, CA, United States
Full-time +1

Senior Lead Endpoint SecurityDo you love building and pioneering in the technology space? Do you enjoy solving complex technical problems in a fast-paced, collaborative, inclusive, and iterative de... Show more

 • Promoted

Security Systems Engineer (Remote).

CiscoSan Jose, CA, United States
Remote
Full-time

The application window is expected to close on 10 / 28 / 2025.Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received.AI at CiscoWith Cis... Show more

 • Promoted

Principal Cyber Security Engineer

Strong Network | Now Part Of Citrix.San Ramon, CA, United States
Full-time

Principal Cyber Security EngineerArchitectural Leadership:Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure.Clou... Show more

 • Promoted

Senior Security Researcher Remote US

Endor Labs Inc.Palo Alto, CA, United States
Remote
Full-time

About the RoleWe are looking for a Senior Security Researcher to lead our offensive security research efforts in the domain of software supply chain security.This is a unique opportunity to work at... Show more

 • Promoted

InterSources Inc - Cyber Security - PMO

IntersourcesFremont, CA, United States
Full-time

Willingness to work in a highly demanding and result oriented team environment where priorities can change frequently.Experience 3 to 4 years as PMO of which at least 1-2 years experience in managi... Show more