About the Role
The Associate Threat Intelligence & Response Engineer will detect, investigate, and respond to internal and external security threats, combining hands-on incident response with security tooling and automation to strengthen the company’s security posture. This role involves analyzing security incidents, enhancing detection capabilities, and building scalable solutions to prevent future threats.
Responsibilities
- Investigate, triage, and respond to security incidents across cloud and on-prem environments
- Analyze security events and logs to identify anomalous or malicious activity
- Develop, tune, and maintain SIEM detections and alerting logic
- Design, build, and manage tools for detection, enrichment, and response automation
- Conduct threat analysis to determine scope, impact, and containment actions
- Collaborate with cross-functional teams to remediate systemic security issues
- Identify trends in incidents and recommend improvements to reduce risk
- Develop and maintain incident response runbooks and lead tabletop exercises
- Build deep familiarity with the company’s technology stack to identify security gaps
Requirements
- 1-2 years of experience in Security Operations, Incident Response, or a related field
- Strong experience with SIEM platforms (e.g., Splunk) and event correlation
- Hands-on experience in incident response, threat detection, and analysis
- Familiarity with enterprise security tools (EDR, IDS/IPS, vulnerability management)
- Solid understanding of networking (TCP/IP), operating systems (*nix, Windows), and cloud environments (AWS)
- Experience writing detections, enrichment logic, or response automation scripts
- Actively use AI to improve work, from accelerating analysis and detections development to thinking through problems from a different angle, with thoughtfulness about accuracy and data sensitivity
- Ability to assess threats and communicate findings clearly to technical and non-technical stakeholders
- Comfortable operating in fast-paced environments with ambiguity and competing priorities
- Strong judgment, integrity, and understanding of security ethics
Skills
- SIEM platforms
- Event correlation
- Incident response
- Threat detection
- Threat analysis
- Security tooling
- Automation
- Networking (TCP/IP)
- Operating systems (*nix, Windows)
- Cloud environments (AWS)
- Scripting (e.g., Python)
- AI tools
Location
- San Francisco
Work Type
- Hybrid
Experience Level
- Associate
Education Level
- Bachelor's degree or higher, or equivalent combination of education and experience
Salary/Compensations
- 103,000-120,000
Benefits
- Relocation assistance
- Medical, dental and vision plans for employees and their families
- 401(k) match
- Health and wellness programs
- Flexible time off policies for salaried employees
- Up to 16 weeks paid parental leave
About the Company
- Happen Bank (formerly LendingClub) is built around a simple purpose: to clear the way to help people turn intention into action, and action into financial progress.
- Offers focused products, a frictionless mobile-first experience, and clear terms with no gotchas.
- Respect and fairness is part of our DNA, shaping how we work, treat each other, and invest in employees and the community.
- Uses data, bold thinking, and a commitment to innovation to help clear the way for millions of Americans to achieve more.
Equal Opportunity
- Happen Bank is an equal opportunity employer and dedicated to diversity, equity, and inclusion in the workplace.
- Does not discriminate on the basis of race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), gender, gender identity, gender expression, sexual orientation, age, marital status, veteran status, disability status, political views or activity, or other applicable legally protected characteristics.
- Believes that a variety of perspectives will make teams and business stronger.
- Committed to providing reasonable accommodations for qualified individuals with disabilities in the job application process.
