Skip to content

Security Engineer, Detection & Response

Robinhood

unknownPosted Jun 2, 2026

Skills

spark

About the role

Join us in building the future of finance.

Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.

The Security Operations (SecOps) team works to safeguard Robinhood and its customers by identifying, investigating, and responding to security threats. The team monitors production systems, endpoints, and cloud environments, and uses threat intelligence and structured testing to uncover risks before they affect customers. SecOps partners closely with engineering and infrastructure teams to strengthen detection coverage and response readiness. The team’s focus is clear: reduce risk, improve visibility, and protect customer trust every day!

As a Security Engineer, Detection & Response, you will strengthen Robinhood’s ability to detect, investigate, and contain security incidents. You will design and improve detection logic, analyze security telemetry across cloud and endpoint systems, and contribute to measurable reductions in false positives and detection gaps. You will work directly with SOC analysts and security engineers to refine investigation workflows and document incident findings. This role is ideal for someone who enjoys hands-on detection engineering and improving how teams respond to real-world threats!

This role is based in our Ljubljana office, with in-person attendance expected at least 3 days per week.

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

Applications for this role will be accepted through June 30, 2026

Requires participation in an on-call rotation to support business needs.

What you’ll do

Investigate security alerts across SIEM, EDR, and cloud security platforms, perform log analysis, and coordinate containment or remediation steps with engineering partners

Develop, test, and tune detection rules using query languages to improve signal quality and reduce false positives

Correlate data from multiple telemetry sources to identify attack patterns and determine appropriate response actions

Monitor emerging threats and update detection logic based on investigation findings and threat intelligence reporting

Contribute to automation efforts by building or refining SOAR playbooks and scripts that improve investigation speed and consistency

Document incidents and contribute to post-incident reviews with clear findings and recommended improvements to detection and response processes

What you bring

2–4 years of experience in security operations, detection engineering, or incident response

Experience analyzing logs and tuning alerts within SIEMs, EDR platforms, and cloud security tools

Experience writing detections using query languages (e.g., SQL-like, KQL, or similar)

Familiarity with threat hunting and investigation techniques across cloud and endpoint environments

Ability to analyze security telemetry, identify patterns of malicious activity, and recommend practical improvements

Clear written and verbal communication skills when documenting incidents and collaborating with technical teams

English proficiency is required

What we offer

Challenging, high-impact work to grow your career

Performance driven compensation with multipliers for outsized impact and bonus programs

Top tier benefits to fuel your work, including supplemental health insurance, ancillary insurance, and mental health support programs

Lifestyle wallet - a highly flexible employer-paid benefits spending account expenses beyond traditional benefits such as wellness, childcare, learning, and more.

Time off to recharge including company holidays, paid time off, sick time, paid volunteer time off, parental leave, and more!

Exceptional office experience with catered meals, events, and comfortable workspaces.

Monthly commuter stipend to help offset in-office commuting costs

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Questions about this role

  • How do I apply to this Security Engineer, Detection & Response role at Robinhood?

    Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

  • What's the typical salary for Security Engineer in your country?

    Compensation varies by seniority, employer size, and location. When this listing publishes a salary band you'll see it in the badge row above the description.

  • How fast does AI Applyd auto-apply?

    Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

  • What ATS does Robinhood use?

    AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, LinkedIn Easy Apply, and most other ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.