Skip to content

Open nowPosted 33 days ago

Senior Security Operations Analyst (Detection & Response)

Point Digital Finance, Inc.14 open roles

Pay
$151,050 – $166,950 a year
Where
San Francisco, California, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security Operations Analyst (Detection & Response)Point Digital Finance, Inc. · San Francisco, California, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Point Digital Finance, Inc.'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Point Digital Finance, Inc. postings stay open a median of 9 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 34.0%30 days
This job: posted 33 days ago

Point Digital Finance, Inc. median: 9 days open

The posting

About Point

✨ Real Impact, Real People: Our mission at Point is to make homeownership more valuable and accessible. Your work directly helps homeowners access their wealth, achieve financial flexibility, and realize life changing goals.

✨ Funding: With over $175M raised from top investors like Andreessen Horowitz, WestCap, Greylock, and Prudential, we’re scaling fast! You have the opportunity to join us at a pivotal stage.

✨ Game-changing Product: We're building a category defining company in home equity. We’ve earned a 4.7 Trustpilot rating and an A+ from the BBB, a testament to the value we provide to our 20,000+ customers.

✨ Great Place to Work: Our employees love working here! We are a Certified Great Place to Work and a Fortune Best Workplaces in the Bay Area.

✨ Remote First Culture, Genuine Connection: Work from anywhere in the U.S. while staying closely connected through virtual collaboration, team gatherings, and a people-first culture. Select roles may require onsite work at our Palo Alto office one day per week.

San Francisco Bay Area, CA with 100% Remote

While this role is remote, candidates located near our Palo Alto headquarters are preferred and will have opportunities to connect and collaborate with colleagues in person approximately once per week.

About the role

Point Digital Finance is expanding its Information Security function, and this is the team's first dedicated monitoring and response hire — a high-visibility role with immediate, measurable impact. As Senior Security Operations Analyst (Detection & Response), you will be the second half of an incident-response rotation, partnering directly with the security lead to detect, investigate, and contain threats across a regulated consumer-finance environment that protects the financial data of hundreds of thousands of homeowners. This is not an alert-watching seat: you will engineer the detections, automate the response, and harden how we see our AWS, Google Workspace, and SaaS estate. You'll help stand up a modern detection & response practice from an early-stage footing, with the autonomy to own problems end to end and the mandate to turn noisy alerts into fast, repeatable, well-documented response. If you like building as much as responding — and want your work to directly reduce risk to real people's financial lives — this role is for you.

Check out our latest Engineering Blog to learn more about why it's a great time to join Point's Engineering team!

Your responsibilities

  • Rotate on-call and lead response: share the 24/7 on-call and incident-response rotation with the security lead — triaging, investigating, and driving containment of security alerts and incidents.
  • Own response documentation: build and maintain incident-response runbooks, escalation paths, and post-incident reviews so response is consistent and repeatable.
  • Engineer detections: build, tune, and maintain SIEM detections, correlation rules, dashboards, and reporting in Coralogix across cloud and identity log sources.
  • Close coverage gaps: reduce false positives and onboard new log sources to eliminate detection blind spots.
  • Own vulnerability management: run day-to-day vulnerability management — prioritize findings, coordinate remediation with system owners, and report on risk reduction across cloud and endpoints.
  • Automate response: develop detection-as-code and lightweight automation/SOAR so common alerts self-triage and response is faster and repeatable.
  • Add operational redundancy: serve as a redundant administrative and response path so containment is never bottlenecked on a single person.
  • Report and evidence: produce recurring security metrics and reporting for leadership, and supply control evidence for audits.
  • Apply AI to the workflow: use AI/LLM tooling to accelerate investigation, correlation, and detection engineering.
  • Improve the program: contribute to continuous improvement of the security-operations program, tooling, and threat monitoring.

About you

  • 5+ years of experience in security operations, incident response, SOC, or detection engineering (mid-to-senior individual contributor).
  • Hands-on experience running or actively participating in an on-call / incident-response rotation, independently.
  • Strong SIEM skills — authoring and tuning detections, correlation rules, and dashboards (Coralogix, Splunk, Elastic, Microsoft Sentinel, or similar).
  • Practical cloud security experience in AWS and Google Workspace, including identity and log sources.
  • Demonstrated ability to investigate and contain incidents end to end — e.g., phishing/AiTM, account takeover, business email compromise, and cloud/identity threats.
  • Working knowledge of vulnerability management and coordinating remediation with engineering teams.
  • Scripting and automation ability (Python or similar) for detection-as-code and SOAR-style workflows.
  • Clear written and verbal communication — able to produce runbooks, metrics, and audit-ready documentation.
  • Comfortable operating with autonomy on a small team and owning problems end to end.
  • Authorized to work in the United States, and able to participate in an off-hours on-call rotation.

Nice to have

  • Hands-on experience using AI/LLMs for security analysis, investigation, and alert engineering (detection authoring, correlation, tuning, and automation).
  • Experience in a regulated financial-services or fintech environment (GLBA, NYDFS Part 500, SOC 2).
  • Relevant certifications (e.g., GCIA, GCIH, GCED, GIAC, CySA+, Security+, or AWS Security Specialty).
  • Experience standing up detection & response practices from an early or greenfield state.

Compensation at Point will be determined by skills, experience, and geographic location. Point has identified the expected annual base salary for this role at this level based on the market by tiers (Region | Location | Market Salary):

  • Tier 1 | San Francisco Bay Area, New York, and Seattle | $151,050 - $166,950

This does not include any other potential components of the compensation package, including equity, benefits, and perks outlined above. At the launch of each position, we benchmark compensation to the appropriate role and level utilizing competitive compensation data from various data sources as references. At the offer stage, we use the signal we received from our interviews, coupled with your experience, location, and other job-related factors, to determine final compensation.

Location Requirement: This is a remote position. However, candidates must reside in one of Point’s states of operation: AL, AR, AZ, CA, CO, CT, DC, FL, GA, IL, KS, KY, MA, MD, ME, MI, MN, MO, NC, NH, NJ, NV, NY, OH, OR, PA, SC, TN, TX, UT, VA, WA, WI.

Our benefits

  • Generous health benefits: We provide comprehensive medical, dental, and vision plans with options for flexible spending accounts (FSA) and health savings accounts (HSA).
  • Unlimited paid time off: Recharge with unlimited paid time off and 10 company holidays.
  • Flexible remote and onsite work: Our teams work from many different locations and time zones. We support fully remote work and also have an amazing in-person environment in our downtown Palo Alto, CA HQ.
  • Fully paid parental leave: Point will supplement state Paid Family Leave (PFL) so employees receive 100% of their regular base pay, plus two additional weeks of fully paid leave after state PFL ends. In states without PFL, Point offers up to 8 weeks of paid parental leave. In addition, employees also receive 4 weeks of fully paid transition time, during which you may work 2–3 days per week while receiving full base pay.
  • Equity: We offer meaningful equity because we believe in sharing the value you help create. Your contributions directly impact our growth, and your equity gives you a stake in our future success.
  • Financial wellness: We provide 401K retirement plans for employees as well as guaranteed life insurance and short- and long-term disability coverage.
  • Extra work/life benefits: We provide monthly stipends for internet, mobile plans, wellness perks, a one-time home office reimbursement, and company provided equipment including a MacBook and monitor.

Point is proud to be an equal-opportunity employer. We provide employment opportunities regardless of age, race, color, ancestry, national origin, religion, disability, sex, gender identity or expression, sexual orientation, veteran status, or any other protected class. Each individual at Point brings their own perspectives, work experiences, lifestyles, and cultures with them, and we believe that a more diverse team creates more innovative products, provides better services to customers, and helps us all grow and learn.

California Consumer Privacy Act Notice

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Point Digital Finance, Inc.'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Point Digital Finance, Inc.'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Point Digital Finance, Inc.'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.