Role Overview

The Security Operations Engineer is a senior individual contributor responsible for detecting, investigating, and responding to security threats across Apollo’s cloud-native and SaaS environments. This role requires strong technical depth, independent judgment, and ownership of complex security investigations from intake through resolution.

This role operates in a fully remote environment and emphasizes clear written communication, operational rigor, and effective collaboration.

Key Responsibilities

Incident Detection, Investigation & Response

  • Monitor, triage, and investigate security alerts and events across cloud infrastructure, SaaS applications, and corporate systems.
  • Conduct end-to-end security investigations, including scoping, containment, eradication, recovery, and documentation.
  • Own investigations independently while collaborating effectively during high-severity incidents.

SIEM, Detection & Workflow Engineering

  • Configure and maintain SIEM detections in Panther, including use cases, correlation rules, alert logic, and tuning.
  • Onboard, validate, and maintain log sources to ensure visibility, accuracy, and reliability.
  • Design and improve investigation and response workflows to streamline triage, escalation, and resolution.
  • Leverage AI-assisted tools to accelerate alert analysis, enrichment, and investigation efficiency.

Threat Hunting & Proactive Security

  • Perform proactive threat-hunting activities to identify malicious or anomalous behavior not surfaced by existing detections.
  • Investigate abuse, fraud, account compromise, and automation misuse scenarios in close collaboration with Fraud teams.
  • Identify detection gaps and propose, implement, and validate improvements.

Automation, Coding & Tooling

  • Build scripts, automations, and tools to reduce manual work and improve response speed and consistency.
  • Use Python extensively for analysis, automation, and internal tooling; Ruby experience is a plus.
  • Contribute to internal detection frameworks, tooling, and shared libraries.

Documentation & Continuous Improvement

  • Produce clear, high-quality documentation for incidents, investigations, and post-incident reviews.
  • Contribute to runbooks, playbooks, and operational standards.
  • Share knowledge, review peer work, and mentor other engineers.

  • Base salary + 8-12% yearly bonus + equity
  • Contract of employment (Polish UoP)
  • 100% remote work (we don’t have offices and we don’t plan to have them) - no hybrid, no forcing people to get back to the offices
  • Allianz Medical Package and Warta Life Insurance covered by Apollo
  • 1200 USD educational budget per year
  • 300 USD Work From Home Stipend
  • 4 additional PTO days for Engineering (Rest Days)
  • 100% remote work and flexible working hours

Benefits

  • private medical care
  • sharing the costs of professional training & courses
  • life insurance
  • remote work opportunities
  • flexible working time
  • integration events
  • dental care
  • extra leave

Development opportunities we offer

  • development budget
  • industry-specific e-learning platforms
  • intracompany training
  • technical knowledge exchange within the company

We are AI Native

Apollo.io is an AI-native company built on a culture of continuous improvement. We’re on the front lines of driving productivity for our customers—and we expect the same mindset from our team. If you're energized by finding smarter, faster ways to get things done using AI and automation, you'll thrive here.

What You’ll Love About Apollo

Besides the great compensation package and culture that thrives in openness and excellence, we invest tremendous effort into developing our remote employees’ careers. The team embraces that we have a sole purpose: to help customers maximize their full revenue potential on the Apollo platform. This mindset opens us up to a lot of creative approaches to making customers successful at scale. You’ll be a significant part of a lean, remote team, empowered to really own your role as a proactive educator. We’re very collaborative at Apollo, so you’ll be able to lean on your teammates, even in adjacent departments, to help you achieve lofty goals. You’ll be supported and encouraged to experiment and take educated risks that lead to big wins. And, you’ll have a whole team remotely by your side to help you do it!

Required Skills & Experience
  • 5+ years of experience in Security Operations, Incident Response, or Security Engineering.
  • Hands-on experience with SIEM platforms (experience with Panther is highly valued), log analysis, and detection engineering.
  • Experience investigating security incidents in cloud-native environments (GCP preferred; AWS and Azure also relevant) and SaaS applications.
  • Experience automating security workflows and investigations.
  • Proficiency in Python; familiarity with Ruby preferred.
  • Ability to operate independently, prioritize effectively, and make sound technical decisions under pressure.
Preferred Qualifications
  • Experience using AI or ML-powered security tools for detection, investigation, or response.
  • Familiarity with vulnerability management concepts and remediation workflows.
  • Relevant certifications such as GCIA, GCIH, GCED, AWS / GCP Security certifications, or Security+.
  • Prior experience working in fully remote, distributed teams.

Have you heard of, or maybe even used Apollo.io?

We're top 20 best sales software products for 2025: https://www.g2.com/best-software-companies/top-sales

One of the fastest growing companies in SaaS, raising approximately $250 million to date and valued at $1.6 billion.

Apollo.io provides with a B2B E2E Sales Platform with an easy access to verified contact data for over 210 million B2B contacts and 35 million companies worldwide. Designed to search, engage, and convert potential leads to clients.

Mission: help all companies reach their full growth potential 🚀

We have been monetizing since 2022. Our ARR 2024 = 133 MLN USD.

Celebrating a $100M Series D Funding Round raised in Aug 2023 🦄

Having 700 people all round the world (270 in Engineering) we decided to start building our presence in Poland. 50 folks in PL already!

We are hiring globally 🌎

#100% remote company 🌴

Join our team in Poland 🤍❤️

Our values:

  1. Be Customer Obsessed 💛
  2. Take Extreme Ownership 💪🏼
  3. Move with Focus and Urgency 🧗‍♂️
  4. Learn Voraciously 🎓
  5. Speak and Act Courageously 🦁
  6. Be “All For One” ⚔️

PS We’re language agnostic, you don’t need any previous Ruby experience for the backend positions. Any of those programming languages - Java, Python, Scala, Go, Elixir, C++ will be great as you'll learn Ruby during the onboarding.