{"schemaVersion":"jobsearcher.job.v1","id":"0e1c876f89a17e1527c5c29f","url":"https://jobsearcher.com/jobs/0e1c876f89a17e1527c5c29f","canonicalUrl":"https://jobsearcher.com/jobs/0e1c876f89a17e1527c5c29f","title":"Senior Datadog Security & Observability Engineer","description":"Description\nKeeper is hiring a talented Senior DataDog Engineer to join our DevOps team. This can be a 100% remote position from select locations with an opportunity to work a hybrid schedule for candidates based in the El Dorado Hills, CA or Chicago, IL metro area.\nKeeper’s cybersecurity software is trusted by millions of people and thousands of organizations globally. Keeper is published in 23 languages and sold in over 150 countries. Join one of the fastest-growing cybersecurity companies and help scale the Datadog platform that supports Keeper’s security visibility, detection maturity and operational readiness.\nAbout Keeper\nKeeper Security is one of the fastest-growing cybersecurity software companies that protects thousands of organizations and millions of people in over 150 countries. Keeper is a pioneer of zero-knowledge and zero-trust security built for any IT environment. Its core offering, KeeperPAM®, is an AI-enabled, cloud-native platform that protects all users, devices and infrastructure from cyber attacks. Recognized for its innovation in the Gartner Magic Quadrant for Privileged Access Management (PAM), Keeper secures passwords and passkeys, infrastructure secrets, remote connections and endpoints with role-based enforcement policies, least privilege and just-in-time access. Learn why Keeper is trusted by leading organizations to defend against modern adversaries at KeeperSecurity.com.\nAbout the Job\nThis is a Datadog-first security engineering role focused on detection engineering, SIEM operations and security observability across Keeper’s production and corporate environments. The ideal candidate has deep, hands-on experience administering and scaling Datadog, including Cloud SIEM, log management, security monitoring, dashboards, monitors and telemetry pipelines. Reporting to the Director of IT and Security, this role will partner closely with Security Operations, Infrastructure, SRE and Engineering teams to ensure logs, metrics, traces and endpoint signals are actionable, scalable and aligned to real-world threat scenarios. General SIEM experience without substantial production experience in Datadog will not be sufficient for this role.\nResponsibilities\nOwn and continuously improve Datadog Cloud SIEM, security monitoring and observability capabilities across production and corporate environments\nDesign, build and maintain detection and telemetry capabilities across Datadog, SentinelOne, Wiz and related security platforms\nDevelop, test and tune high-fidelity Datadog detection rules aligned to real-world attack scenarios and adversary behaviors\nImprove alert quality by reducing false positives, eliminating noise and increasing detection accuracy\nDesign and maintain Datadog log pipelines, processors, parsing rules, facets, indexes, archives and retention strategies\nImplement and mature detection-as-code practices for scalable, version-controlled and testable rule management\nDefine and enforce logging, telemetry and instrumentation standards across cloud infrastructure, applications, endpoints and identity systems\nBuild and optimize log ingestion, parsing, normalization, enrichment and routing workflows\nAutomate onboarding of new telemetry sources and improve visibility across production and corporate environments\nCorrelate signals across Datadog, EDR, cloud, identity and security platforms to improve detection depth and investigation quality\nPartner with Security Operations to improve triage workflows, incident response readiness and escalation quality\nBuild Datadog dashboards, monitors, analytics and reporting that support operational decision-making across Security, SRE and Engineering\nMap and maintain detection coverage against MITRE ATT&CK and identify telemetry and detection gaps\nPerform detection gap assessments and evolve use cases based on threat intelligence, threat hunting and emerging risks\nCollaborate with cloud, infrastructure, product and compliance teams to strengthen secure logging and observability patterns throughout the software development lifecycle\nUse AI-assisted tools such as Claude, ChatGPT or similar platforms to support query development, detection engineering, investigations, automation and technical documentation\nRequirements\n4+ years of Datadog experience in detection engineering, SIEM engineering, security engineering, and security observability.\nDeep, hands-on production experience administering and engineering Datadog in complex cloud environments\nStrong experience with Datadog Cloud SIEM, Log Management, Security Monitoring, dashboards, monitors and alerting\nExperience designing and maintaining Datadog log pipelines, processors, parsing rules, facets, indexes and retention strategies\nExperience building, testing and tuning detection rules, correlation logic and investigation workflows in Datadog\nStrong understanding of security telemetry across cloud, endpoint, identity and application environments\nExperience with log parsing, normalization, enrichment and pipeline management\nStrong knowledge of AWS and cloud-native infrastructure\nProficiency with scripting or automation using Python, PowerShell or similar languages\nExperience using Datadog APIs, Terraform or similar infrastructure-as-code tools to automate configuration and platform management\nSolid understanding of modern detection strategies, attacker behaviors and the MITRE ATT&CK framework\nAbility to troubleshoot complex issues across logs, metrics, traces, infrastructure and application telemetry\nStrong communication skills and the ability to collaborate across Security Operations, Engineering, Infrastructure and SRE teams\nAbility and willingness to use AI-assisted tools effectively to improve query development, detection analysis, troubleshooting, automation and documentation\nPreferred Qualifications\nExperience with SentinelOne, Wiz or related cloud and endpoint security platforms\nExperience with Datadog Application Performance Monitoring, Infrastructure Monitoring, distributed tracing or synthetic monitoring\nExperience optimizing Datadog ingestion volume, indexing, retention and platform cost\nExperience with SOAR, workflow automation or response orchestration\nFamiliarity with Sigma or other detection-as-code frameworks\nExperience operating Datadog across large-scale, multi-account or multi-region AWS environments\nExperience in high-scale SaaS, cloud-native or security product environments\nFamiliarity with zero-trust architectures, identity-centric security and privileged access management\nBachelor’s degree in Computer Science, Engineering, or related field\nBenefits\nMedical, Dental & Vision (inclusive of domestic partnerships)\nEmployer Paid Life Insurance & Employee/Spouse/Child Supplemental life\nVoluntary Short/Long Term Disability Insurance\n401K (Roth/Traditional)\nA generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)\nAbove market annual bonuses\nKeeper Security, Inc. is an equal opportunity employer and participant in the U.S. Federal E-Verify program. We celebrate diversity and are committed to creating an inclusive environment for all employees.\nClassification: Exempt\n\nKeeper Candidate Privacy Notice\nThis notice explains how Keeper Security processes your personal data during recruitment. Depending on the role and location, the Controller of personal data (the organization responsible for determining why and how personal data is processed) will be Keeper Security Inc. (US), Keeper Security EMEA Ltd. (Ireland), or Keeper Security APAC K.K (Japan).\n1. Data We Collect\nInformation You provide:\nContact details, CV/resume, cover letter\nEmployment history, qualifications, work eligibility\nApplication responses and uploaded documents\nInformation We generate:\nInterview notes, assessments, communications\nScheduling information\nInformation From Others:\nRecruiter/referral information who submit your profile\nReferences (with your consent, before final offer)\nPublic professional profiles\nBackground verification (post offer)\nVoluntary Diversity and Equal Opportunity Information\nWe may ask you to voluntarily provide diversity information including race/ethnicity, gender, disability status and veteran status (US). Providing this information is optional and Keeper collects this data in order to comply with EEOC and similar requirements\n2. How We Use Your Data\nAssess your application and suitability\nManage interviews and recruitment workflow\nConsider you for other/future roles (we may seek your consent to keep your information on our systems beyond the retention period specified)\nComply with employment law obligations\n3. Legal Basis\nLegitimate Interests (recruitment management, security and integrity of the hiring process)\nContracting steps (for progressed candidates)\nLegal and regulatory compliance obligations; explicit consent where required\n4. Who We Share Information With\nInternal:\nHR, hiring managers, interviewers*, IT support for system administration\nNote - diversity and equal opportunity data is not shared with hiring managers.\nThird Parties:\nService providers who assist with:\nApplicant tracking, recruitment systems and assessment providers\nBackground verification vendors (post offer)\nRecruitment agencies (where applicable)\nTools to support communication, collaboration and to securely store your data\nKeeper ensures that all our third parties are contractually bound to protect your personal data with adequate safeguards in place.\n5. International Transfers\nYour data may be accessed by Keeper entities globally as needed for the purposes of hiring and decision making. We protect any such data transfer between Keeper entities using appropriate safeguards under applicable data protection laws.\n6. Security\nWe implement appropriate technical and organizational measures to protect your data, consistent with our industry leading security standards.\n7. Retention\nWe keep your data for 24 months from your last application activity, then delete or anonymize it.\nExceptions:\nYou opt into our talent database for further retention by providing consent (extended retention)\nYou're hired (transfers to employee records)\n8. Your Rights\nYou have the following rights and can contact us at the email below to exercise them:\nAccess, correct, or delete your data, subject to applicable law and retention requirements\nObject to or restrict processing\nWithdraw consent (where applicable)\nRequest data portability\nLodge a complaint with your data protection authority\nIf you become an employee, your rights regarding your employee record are governed by our internal Employee Privacy Notice and certain data will be retained as required under relevant laws such as employment or tax law.\nWhen you request access to your personal data, some information may be redacted if it includes the personal data of other individuals or information that we must protect in order to preserve their privacy rights.\n9. Automated Decisions\nKeeper does not make hiring decisions using solely automated processing.\n10. Contact - Candidates can send privacy questions to: privacy@keepersecurity.com","company":"Keepersecurityinc","rawCompany":"keepersecurityinc","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-06T16:57:58.236Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior Datadog Security & Observability Engineer","description":"Description\nKeeper is hiring a talented Senior DataDog Engineer to join our DevOps team. This can be a 100% remote position from select locations with an opportunity to work a hybrid schedule for candidates based in the El Dorado Hills, CA or Chicago, IL metro area.\nKeeper’s cybersecurity software is trusted by millions of people and thousands of organizations globally. Keeper is published in 23 languages and sold in over 150 countries. Join one of the fastest-growing cybersecurity companies and help scale the Datadog platform that supports Keeper’s security visibility, detection maturity and operational readiness.\nAbout Keeper\nKeeper Security is one of the fastest-growing cybersecurity software companies that protects thousands of organizations and millions of people in over 150 countries. Keeper is a pioneer of zero-knowledge and zero-trust security built for any IT environment. Its core offering, KeeperPAM®, is an AI-enabled, cloud-native platform that protects all users, devices and infrastructure from cyber attacks. Recognized for its innovation in the Gartner Magic Quadrant for Privileged Access Management (PAM), Keeper secures passwords and passkeys, infrastructure secrets, remote connections and endpoints with role-based enforcement policies, least privilege and just-in-time access. Learn why Keeper is trusted by leading organizations to defend against modern adversaries at KeeperSecurity.com.\nAbout the Job\nThis is a Datadog-first security engineering role focused on detection engineering, SIEM operations and security observability across Keeper’s production and corporate environments. The ideal candidate has deep, hands-on experience administering and scaling Datadog, including Cloud SIEM, log management, security monitoring, dashboards, monitors and telemetry pipelines. Reporting to the Director of IT and Security, this role will partner closely with Security Operations, Infrastructure, SRE and Engineering teams to ensure logs, metrics, traces and endpoint signals are actionable, scalable and aligned to real-world threat scenarios. General SIEM experience without substantial production experience in Datadog will not be sufficient for this role.\nResponsibilities\nOwn and continuously improve Datadog Cloud SIEM, security monitoring and observability capabilities across production and corporate environments\nDesign, build and maintain detection and telemetry capabilities across Datadog, SentinelOne, Wiz and related security platforms\nDevelop, test and tune high-fidelity Datadog detection rules aligned to real-world attack scenarios and adversary behaviors\nImprove alert quality by reducing false positives, eliminating noise and increasing detection accuracy\nDesign and maintain Datadog log pipelines, processors, parsing rules, facets, indexes, archives and retention strategies\nImplement and mature detection-as-code practices for scalable, version-controlled and testable rule management\nDefine and enforce logging, telemetry and instrumentation standards across cloud infrastructure, applications, endpoints and identity systems\nBuild and optimize log ingestion, parsing, normalization, enrichment and routing workflows\nAutomate onboarding of new telemetry sources and improve visibility across production and corporate environments\nCorrelate signals across Datadog, EDR, cloud, identity and security platforms to improve detection depth and investigation quality\nPartner with Security Operations to improve triage workflows, incident response readiness and escalation quality\nBuild Datadog dashboards, monitors, analytics and reporting that support operational decision-making across Security, SRE and Engineering\nMap and maintain detection coverage against MITRE ATT&CK and identify telemetry and detection gaps\nPerform detection gap assessments and evolve use cases based on threat intelligence, threat hunting and emerging risks\nCollaborate with cloud, infrastructure, product and compliance teams to strengthen secure logging and observability patterns throughout the software development lifecycle\nUse AI-assisted tools such as Claude, ChatGPT or similar platforms to support query development, detection engineering, investigations, automation and technical documentation\nRequirements\n4+ years of Datadog experience in detection engineering, SIEM engineering, security engineering, and security observability.\nDeep, hands-on production experience administering and engineering Datadog in complex cloud environments\nStrong experience with Datadog Cloud SIEM, Log Management, Security Monitoring, dashboards, monitors and alerting\nExperience designing and maintaining Datadog log pipelines, processors, parsing rules, facets, indexes and retention strategies\nExperience building, testing and tuning detection rules, correlation logic and investigation workflows in Datadog\nStrong understanding of security telemetry across cloud, endpoint, identity and application environments\nExperience with log parsing, normalization, enrichment and pipeline management\nStrong knowledge of AWS and cloud-native infrastructure\nProficiency with scripting or automation using Python, PowerShell or similar languages\nExperience using Datadog APIs, Terraform or similar infrastructure-as-code tools to automate configuration and platform management\nSolid understanding of modern detection strategies, attacker behaviors and the MITRE ATT&CK framework\nAbility to troubleshoot complex issues across logs, metrics, traces, infrastructure and application telemetry\nStrong communication skills and the ability to collaborate across Security Operations, Engineering, Infrastructure and SRE teams\nAbility and willingness to use AI-assisted tools effectively to improve query development, detection analysis, troubleshooting, automation and documentation\nPreferred Qualifications\nExperience with SentinelOne, Wiz or related cloud and endpoint security platforms\nExperience with Datadog Application Performance Monitoring, Infrastructure Monitoring, distributed tracing or synthetic monitoring\nExperience optimizing Datadog ingestion volume, indexing, retention and platform cost\nExperience with SOAR, workflow automation or response orchestration\nFamiliarity with Sigma or other detection-as-code frameworks\nExperience operating Datadog across large-scale, multi-account or multi-region AWS environments\nExperience in high-scale SaaS, cloud-native or security product environments\nFamiliarity with zero-trust architectures, identity-centric security and privileged access management\nBachelor’s degree in Computer Science, Engineering, or related field\nBenefits\nMedical, Dental & Vision (inclusive of domestic partnerships)\nEmployer Paid Life Insurance & Employee/Spouse/Child Supplemental life\nVoluntary Short/Long Term Disability Insurance\n401K (Roth/Traditional)\nA generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)\nAbove market annual bonuses\nKeeper Security, Inc. is an equal opportunity employer and participant in the U.S. Federal E-Verify program. We celebrate diversity and are committed to creating an inclusive environment for all employees.\nClassification: Exempt\n\nKeeper Candidate Privacy Notice\nThis notice explains how Keeper Security processes your personal data during recruitment. Depending on the role and location, the Controller of personal data (the organization responsible for determining why and how personal data is processed) will be Keeper Security Inc. (US), Keeper Security EMEA Ltd. (Ireland), or Keeper Security APAC K.K (Japan).\n1. Data We Collect\nInformation You provide:\nContact details, CV/resume, cover letter\nEmployment history, qualifications, work eligibility\nApplication responses and uploaded documents\nInformation We generate:\nInterview notes, assessments, communications\nScheduling information\nInformation From Others:\nRecruiter/referral information who submit your profile\nReferences (with your consent, before final offer)\nPublic professional profiles\nBackground verification (post offer)\nVoluntary Diversity and Equal Opportunity Information\nWe may ask you to voluntarily provide diversity information including race/ethnicity, gender, disability status and veteran status (US). Providing this information is optional and Keeper collects this data in order to comply with EEOC and similar requirements\n2. How We Use Your Data\nAssess your application and suitability\nManage interviews and recruitment workflow\nConsider you for other/future roles (we may seek your consent to keep your information on our systems beyond the retention period specified)\nComply with employment law obligations\n3. Legal Basis\nLegitimate Interests (recruitment management, security and integrity of the hiring process)\nContracting steps (for progressed candidates)\nLegal and regulatory compliance obligations; explicit consent where required\n4. Who We Share Information With\nInternal:\nHR, hiring managers, interviewers*, IT support for system administration\nNote - diversity and equal opportunity data is not shared with hiring managers.\nThird Parties:\nService providers who assist with:\nApplicant tracking, recruitment systems and assessment providers\nBackground verification vendors (post offer)\nRecruitment agencies (where applicable)\nTools to support communication, collaboration and to securely store your data\nKeeper ensures that all our third parties are contractually bound to protect your personal data with adequate safeguards in place.\n5. International Transfers\nYour data may be accessed by Keeper entities globally as needed for the purposes of hiring and decision making. We protect any such data transfer between Keeper entities using appropriate safeguards under applicable data protection laws.\n6. Security\nWe implement appropriate technical and organizational measures to protect your data, consistent with our industry leading security standards.\n7. Retention\nWe keep your data for 24 months from your last application activity, then delete or anonymize it.\nExceptions:\nYou opt into our talent database for further retention by providing consent (extended retention)\nYou're hired (transfers to employee records)\n8. Your Rights\nYou have the following rights and can contact us at the email below to exercise them:\nAccess, correct, or delete your data, subject to applicable law and retention requirements\nObject to or restrict processing\nWithdraw consent (where applicable)\nRequest data portability\nLodge a complaint with your data protection authority\nIf you become an employee, your rights regarding your employee record are governed by our internal Employee Privacy Notice and certain data will be retained as required under relevant laws such as employment or tax law.\nWhen you request access to your personal data, some information may be redacted if it includes the personal data of other individuals or information that we must protect in order to preserve their privacy rights.\n9. Automated Decisions\nKeeper does not make hiring decisions using solely automated processing.\n10. Contact - Candidates can send privacy questions to: privacy@keepersecurity.com","datePosted":"2026-08-06T16:57:58.236Z","dateModified":"2026-08-06T16:57:58.236Z","hiringOrganization":{"@type":"Organization","name":"Keepersecurityinc","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"0e1c876f89a17e1527c5c29f"},"url":"https://jobsearcher.com/jobs/0e1c876f89a17e1527c5c29f"}}