1,338,985open jobs
78,444companies
206,994added this week
Browse all
Salary
≈ $25k – $59k per year (Estimated)
Location
In office (Delhi)
Seniority
Staff · 7+ years exp

First seen by Alion on Sep 17, 2026.

Overview
Company
Impact
Profile match
Chegg is an online textbook rental company where students can rent, buy and sell text books from its platform. Headquartered in the US with offices in India and several other countries, Chegg became a public company by listing in 2013.

Role : Staff Security Engineer - Detection & Response

Your goal is to improve the education process and better the lives of students by keeping their data secure.

What you will do :

- Triage and investigate alerts from our SIEM/UEBA, endpoint detection and response, cloud, and email security platforms to determine whether indicators of compromise represent a real intrusion

- Declare, lead, and manage security incidents end to end - endpoint compromise, cloud and infrastructure compromise, credential theft, phishing, and insider risk - through containment, eradication, and recovery

- Own written incident documentation, including timelines, root cause analysis, and post-incident reviews that drive durable fixes rather than one-off cleanup

- Build, tune, and maintain detection content to expand coverage of real attacker behavior while reducing false positives and alert fatigue

- Develop and maintain incident response playbooks and runbooks

- Between incidents, contribute to security engineering work : deploying and operating security tooling in our cloud environment, closing logging and telemetry gaps, and automating response actions

- Partner with IT, engineering, and cloud platform teams to drive remediation of identified weaknesses to closure

What you'll bring :

- 7+ years of relevant work experience, with significant time spent in security operations, detection and response, or incident response

- Hands-on experience investigating alerts across SIEM/UEBA and endpoint detection and response tooling, and separating true positives from noise at volume

- Demonstrated experience leading incident response from detection through recovery, including coordinating responders and stakeholders across teams

- Strong understanding of attacker tradecraft and common attack paths across endpoint, identity, network, and cloud, and familiarity with a framework such as MITRE ATT&CK

- Working knowledge of security in cloud environments, ideally AWS, including identity, logging, and the misconfigurations attackers most often abuse

- Experience writing and tuning detection logic, correlation rules, or queries against large log data sets

- Scripting and automation ability, such as Python, and comfort working with open-source tools and APIs to connect systems and remove manual effort

- Practical familiarity with Windows, macOS, and Linux internals, and the forensic artifacts each produces during an investigation

- Sound judgment and composure under pressure, including the ability to make decisions with incomplete information

- Excellent written and oral communication skills, including the ability to explain an incident clearly to both engineers and executives

- Ability to work independently and with various other teams across the organization

- Creative, resourceful, and adaptive problem solving

Stand Out Qualifications :

- Experience with a SIEM or UEBA platform such as Exabeam, and an endpoint detection and response platform such as SentinelOne

- Experience working in AWS with features such as GuardDuty, CloudTrail, Security Hub, Inspector, IAM, WAF and Shield

- Experience managing detection content as code, under version control and peer review

- Familiarity with SOAR platforms and automated response workflows

- Digital forensics, malware analysis, or reverse engineering experience

- Experience working with container technologies including Docker and Kubernetes

- Relevant certifications such as GCIH, GCIA, GCFA, OSCP, or AWS Certified Security - Specialty

Skills

SIEM, UEBA, Security, Incident Management, Threat Detection, Threat Hunting, Cloud Security, Sentinel, SOAR, Malware

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,338,985 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Delhi
Apply
$96k – $130k per year • In office
Apply
$96k – $130k per year • In office
Apply
≈ $18k – $40k per year (Estimated) • In office • 5+ years exp • Bengaluru
Python
Bash
DevOps
Terraform
GCP
GitHub Actions
CloudFormation
GitLab CI
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Platform Engineering
GitLab
Linux
Apply
In office • Internship • Ulyanovsk
Python
JavaScript
SQL
Python
FastAPI
Django
Litestar
Databases
PostgreSQL
Redis
RabbitMQ
Frontend
Vue.js
React.js
DevOps
GitLab CI
CI/CD
Docker
Kubernetes
GitHub
GitLab
Linux
Apply
In office • Tashkent
Java
Kotlin
SQL
Java
Maven
Spring Boot
Hibernate
Spring MVC
Spring Data JPA
Spring Security
Testcontainers
Flyway
Liquibase
Kotlin
Mockito
Databases
PostgreSQL
Redis
Cassandra
RabbitMQ
Apache Kafka
Mobile
JUnit
DevOps
Rest API
OpenTelemetry
Git
Docker
SOAP
Cybersecurity
Keycloak
Management
Agile
Scrum
Kanban
QA
Swagger
Apply
In office • Tashkent
Java
Kotlin
Java
Maven
Spring Boot
Testcontainers
Liquibase
Kotlin
Mockito
Databases
PostgreSQL
Redis
Mobile
JUnit
Clean Architecture
DevOps
Rest API
OpenTelemetry
Git
Docker
Cybersecurity
Keycloak
QA
Swagger
Apply
≈ $19k – $51k per year (Estimated) • In office • Moscow
Python
C++
DevOps
Linux
Apply
≈ $17k – $43k per year (Estimated) • In office • 5+ years exp • Delhi
Python
Databases
Databricks
Delta Lake
AI/ML
MLFlow
Fine-tuning
RLHF
Function Calling
AI Agents
AWS Bedrock
TensorFlow
PyTorch
LLM
Hallucination
Amazon SageMaker
DPO
SFT
Post-training
Human-in-the-Loop
Tool Use
RLAIF
Reward Modeling
Machine Learning
DevOps
AWS
Apply
In office • Delhi
Apply
Security Engineer - I 11 hours ago
≈ $12k – $32k per year (Estimated) • In office • Full-Time • 3+ years exp • Delhi
Python
Bash
DevOps
Terraform
GCP
CI/CD
AWS
Kubernetes
Amazon EKS
Google GKE
IAM
Linux
Cybersecurity
ISO 27001
CIS Benchmarks
Least Privilege
SIEM
Apply
≈ $12k – $32k per year (Estimated) • In office • 2+ years exp • Delhi
DevOps
TCP/IP
DNS
VPN
Cybersecurity
Zero Trust
Apply
≈ $19k – $41k per year (Estimated) • Hybrid • Full-Time • Delhi
AI/ML
Copilot
DevOps
Azure
CI/CD
Platform Engineering
IAM
Cybersecurity
Ping Identity
Active Directory
Apply
≈ $15k – $30k per year (Estimated) • In office • Full-Time • 3+ years exp • Delhi
SQL
Management
Notion
Google Sheets
Apply
≈ $25k – $52k per year (Estimated) • In office • 10+ years exp • Delhi • Noida
JavaScript
Java
TypeScript
SQL
Java
Spring Framework
Spring Boot
Spring MVC
Databases
PostgreSQL
Oracle
DynamoDB
AI/ML
LLM
Frontend
Angular
Mobile
Dependency Injection
DevOps
AWS
Amazon S3
Apply
See all jobs
This is one of many
1,338,985 more open roles from verified company boards, updated every day.