WFH.teamOpen app
Back to remote jobs
Remote job detail

Senior Detection Engineer II

Instacart

LocationCanada
Senioritysenior
CompanyInstacart
Verified recentlyAug 25
Compensation

$196k-$207k

Salary details are shown when available from the source listing. Sign in before applying so the role can be reviewed against your resume, salary goals, seniority, timezone, and location eligibility.

Requirements and working style

Decision details from the source listing

Experience

6+ years stated

Work authorization

Work authorization in Canada provinces: Ontario, Alberta, British Columbia, Nova Scotia

Schedule

flexible

Benefits stated
Equity grantAnnual refresh grants

These fields are normalized from the employer's text. Confirm details on the employer site before applying.

WFH.team analysis

What this posting tells you

Senior Detection Engineer II at Instacart, remote within specified Canadian provinces. Requires 6+ years experience in detection engineering, incident response or offensive security, public cloud platform knowledge, macOS threat detection, and detection-as-code skills with Python/Golang proficiency. Salary range $196,000-$207,000 USD. Flexible schedule with equity benefits.

Role lane

Backend, Data, Design and creative, DevOps, QA and testing, Security

Where you can work

Canada

Working hours

America/Toronto, America/Edmonton, America/Vancouver, America/Halifax

Arrangement

senior · full_time

Required signals
Detection engineeringIncident responseOffensive securityAWSAzureGCPmacOS telemetryDetection-as-codePythonGolangSecurity automationSOAR
Preferred signals
Offensive security or red teaming backgroundMachine learning for threat detection
Market context

Backend hiring on WFH.team

3,164active related roles
2,324new in the latest period
153jobs per 100 candidates
$182kmedian of comparable listed ranges

This role's listed pay is above the median among 200 comparable roles shown here. Category counts come from WFH.team's latest published remote job market snapshot.

Explore the remote job market
Skills and signals
Detection engineeringIncident responseOffensive securityAWSAzureGCPmacOS telemetryDetection-as-codePythonGolangSecurity automationSOAROffensive security or red teaming backgroundMachine learning for threat detectionCanada - Remote (ON, AB, BC, or NS Only). Instacart is a Flex First team allowing work from home, office, or other locat
Job description

Senior Detection Engineer II at Instacart

We're transforming the grocery industry

At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We work to deliver an essential service that customers rely on to get their groceries and household goods, while also offering safe and flexible earnings opportunities to Instacart Personal Shoppers.

Instacart has become a lifeline for millions of people, and we’re building the team to help push our shopping cart forward. If you’re ready to do the best work of your life, come join our table.

Instacart is a Flex First team

There’s no one-size fits all approach to how we do our best work. Our employees have the flexibility to choose where they do their best work—whether it’s from home, an office, or your favorite coffee shop—while staying connected and building community through regular in-person events. Learn more about our flexible approach to where we work.

Overview

Instacarts Detection Engineering team sits at the core of our Security organization, building and operating the systems that identify, surface, and respond to threats across one of North America's largest grocery technology platforms. We own the full detection lifecycle, from telemetry collection and signal design to automated response, across a complex, cloud-native environment spanning endpoint, cloud, container, and SaaS.

As a Senior Detection Engineer II, you'll be a technical anchor on the team: developing high-fidelity detection logic, hunting for novel attacker techniques, and raising the bar for how we think about coverage, quality, and scale. You'll work closely with Engineering, Red Team, Incident Response, Fraud, and Trust & Safety to ensure our detections reflect real-world adversary behavior; not just signatures.

We operate with a detection-as-code mindset: everything we build is versioned, tested, and deployed through repeatable pipelines. We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and continuously evolving our coverage as the threat landscape shifts.

If you're energized by hard forensic problems, enjoy translating attacker TTPs into durable detection logic, and want to help shape the future of a growing security function, this role is for you.

About the job

  • Develop, tune, document, and maintain detection logic across multiple log sources including endpoint, cloud, container, and SaaS products.
  • Assist in cyber forensic investigations across a variety of log sources
  • Optimize log ingestion pipelines and telemetry collection to ensure high-quality, actionable security data while managing volume and cost
  • Design and build SOAR playbooks and automation workflows to streamline detection triage, enrichment, and response actions
  • Mentor junior security analysts and detection engineers on threat hunting methodologies, detection logic development, and investigation techniques

About You

Minimum qualifications

  • 6+ years of experience in a detection engineering, incident response, or offensive security role.
  • Experience with 1 or more public cloud platforms (AWS, Azure, GCP)
  • Deep understanding of attacker TTPs across modern zero trust environments, including identity compromise, token theft, and abuse of trust boundaries
  • Proficient understanding of macOS internals and telemetry available to identify macOS specific threats
  • Experience implementing detection-as-code workflows including version control, peer review processes, automated testing, and CI/CD deployment pipelines
  • Basic proficiency with Python, Golang, or other programming languages
  • Relevant certifications: GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar

Preferred qualifications

  • Background in offensive security or red teaming
  • Knowledge of machine learning for threat detection

#LI-Remote

Instacart provides highly market-competitive compensation and benefits in each location where our employees work. This role is remote and the base pay range for a successful candidate is dependent on their permanent work location. Please review our Flex First remote work policy here . Currently, we are only hiring in the following provinces: Ontario, Alberta, British Columbia, and Nova Scotia.

Offers may vary based on many factors, such as candidate experience and skills required for the role. Additionally, this role is eligible for a new hire equity grant as well as annual refresh grants. Please read more about our benefits offerings here .

For Canadian based candidates, the base pay ranges for a successful candidate are listed below.

CAN

$196,000 — $207,000 USD

Company context

Working remotely at Instacart

Instacart is the North American leader in online grocery delivery.

Headquarters
United States and Canada
Team size
5000+
Founded
2012
Application process

Review current openings on Instacart's official careers page before applying.

Android SDKRuby on RailsBootstrapJavaScriptPythonHTML5CSS 3RubyObjective-CR Language
Research Instacart
Remote Senior Detection Engineer II at Instacart | WFH.team