Security Operations Engineer
23andMe
October 2, 2026
Full-time
Remote friendly (Palo Alto, CA)
Worldwide
$165,000 - $165,000 USD yearly
IT
Role: Security Operations Engineer leading incident response, threat detection, and automation architecture within 23andMe's security team. Responsibilities: serve as Incident Commander, triage and investigate alerts across endpoint, identity, cloud, and application telemetry; design and tune threat detections; build automation and integrations to improve response efficiency; maintain and enhance incident response runbooks; partner with cross-functional teams to reduce detection and response times; participate in an on-call rotation. Requirements: 4+ years in security operations, detection engineering, or incident response; hands-on experience with threat detection, threat hunting, and incident investigation; proficiency with scripting (Python preferred), EDR, SIEM platforms, and cloud/enterprise tools such as AWS, Okta, CrowdStrike, Splunk, or Datadog; strong communication skills; Bachelorβs degree or equivalent. HighValue: incident command, detection engineering, threat hunting, threat detection automation, incident response, cloud security, enterprise security stack. WorkSetup: not specified; likely hybrid or remote based on location.