Overview
Instacart is transforming the grocery industry by delivering essential services that customers rely on while creating flexible earning opportunities for Personal Shoppers. The Detection Engineering team is central to the Security organization, focusing on identifying and responding to threats across a large grocery technology platform.
Key Responsibilities
- Develop, tune, document, and maintain detection logic across multiple log sources including endpoint, cloud, container, and SaaS products.
- Assist in cyber forensic investigations across a variety of log sources.
- Optimize log ingestion pipelines and telemetry collection to manage volume and cost of actionable security data.
- Design and build SOAR playbooks and automation workflows to streamline detection triage and response actions.
- Mentor junior security analysts and detection engineers on threat hunting methodologies and investigation techniques.
Requirements
- 6+ years of experience in a detection engineering, incident response, or offensive security role.
- Experience with one or more public cloud platforms (AWS, Azure, GCP).
- Deep understanding of attacker TTPs across modern zero trust environments.
- Proficient understanding of macOS internals and telemetry.
- Experience implementing detection-as-code workflows including version control and automated testing.
- Basic proficiency with Python, Golang, or other programming languages.
- Relevant certifications: GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar.
Benefits
Instacart offers highly competitive compensation and benefits, including potential for equity grants for new hires and annual refresh grants.
Location
Remote - United States
How to Apply
Please visit the company’s careers page to submit your application.