Engineering Manager, Security Detection & Response
Apolloio · Remote, United States · posted Jul 10, 2026
What this role actually asks for
Extracted by RemoteHuntMust have
- •Lead security detection & response engineers
- •Build and scale security operations systems
- •Manage detection engineering and telemetry onboarding
- •Oversee Python-based automation and CI/CD
- •Lead incident response and post-incident reviews
- •Define security observability and detection strategy
Nice to have
- •AI-assisted triage and investigation workflows
- •MITRE ATT&CK-aligned use cases
Tools and technologies
The full posting
Role Overview
Apollo is looking for a technical Engineering Manager to lead our Security Detection & Response function. This role is responsible for managing engineers while building and scaling the technical systems behind modern security operations, including detection engineering, Panther content, telemetry onboarding, Python-based automation, and CI/CD workflows for security tooling. This is a hands-on leadership role for someone who can coach a team, make sound engineering decisions, and stay close to the technical details.
This role operates in a fully remote environment and requires excellent asynchronous communication and collaboration skills.
Key Responsibilities
Security Incident Leadership & Response
- Own and continuously improve end-to-end detection, investigation, response, post-incident review, and threat intelligence-informed improvement processes, including AI-assisted triage and investigation workflows.
- Lead complex and high-severity incidents with clear decision-making, effective stakeholder communication, and accountable follow-through on remediation.
- Stay technically engaged in investigations across cloud infrastructure, SaaS platforms, corporate systems, user behavior, and abuse scenarios, and translate incident learnings, platform changes, and threat trends into Security Detection & Response priorities.
Security Observability, Detection Engineering, Automation & AI
- Define and evolve security observability and detection strategy, including telemetry onboarding, signal quality, threat intelligence inputs, alert tuning, and coverage validation.
- Oversee Panther detections, MITRE ATT&CK-aligned use cases, investigation playbooks, and response automations, with measurement and validation loops for coverage, precision, latency, tuning effectiveness, safe rollout, and attack-simulation-based validation.
- Transform security operations processes through practical use of AI, including designing agents and AI-native workflows for triage, enrichment, investigation, and response.
- Drive Python-based tooling, CI/CD practices, and pragmatic use of AI to improve the speed, quality, and reliability of Security Detection & Response workflows.
Team Leadership & Cross-Functional Collaboration
- Build, lead, and retain a high-performing remote Security Detection & Response team with clear expectations, strong onboarding, documentation, and knowledge-sharing practices.
- Coach engineers to grow in technical depth, operational ownership, and leadership capability while partnering closely with Engineering, IT, Fraud, Legal, People, Support, and Product on incidents, investigations, and security improvements.
- Work closely with Engineering and Infrastructure on telemetry quality, data pipelines, and operational readiness, and communicate security risk, incident impact, and remediation plans clearly to technical and non-technical stakeholders.
- Define and review strategy-aligned metrics and reporting that measure Security Detection & Response effectiveness, highlight trends and gaps, and inform priorities and stakeholder decisions.
Required Skills & Experience
- 5+ years of experience in Security Detection & Response, Security Engineering, or Incident Response.
- 2+ years of people management experience, including hiring, coaching, and performance management, ideally in a remote-first environment.
- Strong hands-on experience with modern SIEM platforms, security observability, detection engineering, log analysis, and complex security investigations; experience with Panther is highly valued.
- Strong proficiency in Python for automation, analysis, and internal tooling, with the ability to remain technically credible with engineers.
- Experience with automation, Git-based workflows, CI/CD practices, threat intelligence-informed detections, AI-assisted workflows, and building agents or AI-native workflows for security content, tooling, or response processes.
- Experience with cloud-native platforms, security telemetry, and SaaS environments; GCP experience preferred. Familiarity with toolsets similar to Apollo's, including Google Workspace, Okta, GitHub, Slack, Atlassian, Cloudflare, CrowdStrike, Kandji, Panther, and Snowflake-backed log pipelines, is strongly valued.
- Excellent written and verbal communication, leadership, and stakeholder management skills.
Preferred Qualifications
- Experience leading Detection Engineering, Security Engineering, or Security Detection & Response teams in a high-growth cloud or SaaS environment.
- Experience applying AI-assisted security tooling to detection, triage, investigation, or response in a production environment.
- Familiarity with MITRE ATT&CK, threat intelligence workflows, and vulnerability management programs, SLAs, and remediation processes.
- Relevant certifications such as CISSP, GCIA, GCIH, GCED, or cloud security certifications.
Pay Transparency Range
$225,400—$281,800 USD
Additional benefits for this role may include: equity; company bonus or sales commissions/bonuses; 401(k) plan; at least 10 paid holidays per year, flex PTO, and parental leave; employee assistance program and wellbeing benefits; global travel coverage; life/AD&D/STD/LTD insurance; FSA/HSA and medical, dental, and vision benefits.
We are AI Native
Apollo.io is an AI-native company built on a culture of continuous improvement. We’re on the front lines of driving productivity for our customers—and we expect the same mindset from our team. If you're energized by finding smarter, faster ways to get things done using AI and automation, you'll thrive here.
Why You’ll Love Working at Apollo
At Apollo, we’re driven by a shared mission: to help our customers unlock their full revenue potential. That’s why we take extreme ownership of our work, move with focus and urgency, and learn voraciously to stay ahead.
We invest deeply in your growth, ensuring you have the resources, support, and autonomy to own your role and make a real impact. Collaboration is at our core—we’re all for one, meaning you’ll have a team across departments ready to help you succeed. We encourage bold ideas and courageous action, giving you the freedom to experiment, take smart risks, and drive big wins.
If you’re looking for a place where your work matters, where you can push boundaries, and where your career can thrive—Apollo is the place for you.
Learn more here!
Is this one actually worth your time?
RemoteHunt scores every remote job 0–100 against your own resume, so you apply to the handful that fit instead of the hundred that don't. Free plan, no card required.