Senior Security Operations Analyst (Detection & Response)
Point
- Location
- San Francisco, California, United States
- Work model
- On-Site
- Level
- Senior
- Salary
- $151.1k – $166.9k/yr
- Posted
- 1h ago
Skills
About this role
About Point
✨ Real Impact, Real People: Our mission at Point is to make homeownership more valuable and accessible. Your work directly helps homeowners access their wealth, achieve financial flexibility, and realize life changing goals.
✨ Funding: With over $175M raised from top investors like Andreessen Horowitz, WestCap, Greylock, and Prudential, we’re scaling fast! You have the opportunity to join us at a pivotal stage.
✨ Game-changing Product: We're building a category defining company in home equity. We’ve earned a 4.7 Trustpilot rating and an A+ from the BBB, a testament to the value we provide to our 20,000+ customers.
✨ Great Place to Work: Our employees love working here! We are a Certified Great Place to Work and a Fortune Best Workplaces in the Bay Area.
✨ Remote First Culture, Genuine Connection: Work from anywhere in the U.S., while staying closely connected through virtual collaboration, team gatherings, and a people-first culture.
Local or 100% Remote
While this role is remote, candidates located near our Palo Alto headquarters are preferred and will have opportunities to connect and collaborate with colleagues in person approximately once per week.
About the role
Point Digital Finance is expanding its Information Security function, and this is the team's first dedicated monitoring and response hire — a high-visibility role with immediate, measurable impact. As Senior Security Operations Analyst (Detection & Response), you will be the second half of an incident-response rotation, partnering directly with the security lead to detect, investigate, and contain threats across a regulated consumer-finance environment that protects the financial data of hundreds of thousands of homeowners. This is not an alert-watching seat: you will engineer the detections, automate the response, and harden how we see our AWS, Google Workspace, and SaaS estate. You'll help stand up a modern detection & response practice from an early-stage footing, with the autonomy to own problems end to end and the mandate to turn noisy alerts into fast, repeatable, well-documented response. If you like building as much as responding — and want your work to directly reduce risk to real people's financial lives — this role is for you.
Check out our latest Engineering Blog to learn more about why it's a great time to join Point's Engineering team!
Your responsibilities
• Rotate on-call and lead response: share the 24/7 on-call and incident-response rotation with the security lead — triaging, investigating, and driving containment of security alerts and incidents.
• Own response documentation: build and maintain incident-response runbooks, escalation paths, and post-incident reviews so response is consistent and repeatable.
• Engineer detections: build, tune, and maintain SIEM detections, correlation rules, dashboards, and reporting in Coralogix across cloud and identity log sources.
• Close coverage gaps: reduce false positives and onboard new log sources to eliminate detection blind spots.
• Own vulnerability management: run day-to-day vulnerability management — prioritize findings, coordinate remediation with system owners, and report on risk reduction across cloud and endpoints.
• Automate response: develop detection-as-code and lightweight automation/SOAR so common