11 hours ago
Seoul, Korea, SouthSenior
Responsibilities
- Define threat detection use cases and manage detection coverage using threat intelligence, business context, and threat frameworks.
- Analyze network, operating system, application, cloud, authentication, EDR, and other security logs to implement detection logic in SIEM environments.
- Test and validate detection rules before and after deployment, including true-positive and false-positive analysis and tuning.
- Design and implement detection and monitoring requirements for privacy, financial security, and other regulatory compliance initiatives.
- Expand detection capabilities for account takeover, insider threats, unauthorized access, and other advanced threats.
- Use AI and LLM tools to improve scenario analysis, build detection knowledge bases, and analyze large-scale log patterns.
- Collaborate with Red Team, Threat Intelligence, Incident Response, and Security Architecture teams to validate scenarios and improve detection accuracy.
- Document the creation, modification, retirement, and change history of detection rules.
- Participate in major projects such as security architecture changes and new service launches to establish security visibility.
Requirements
- At least 5 years of information security experience, including at least 2 years of detection engineering or security analysis experience.
- Technical understanding of networks, operating systems, applications, security solutions, and how threats appear in logs across infrastructure layers.
- Practical understanding of security threat trends, attack techniques, defense technologies, and malware.
- Experience writing detection queries and developing rules in SIEM environments using technologies such as SQL, Python, or SPL.
- Experience analyzing EDR, network, cloud, authentication, and other security logs.
- Practical understanding of threat modeling or detection coverage frameworks such as MITRE ATT&CK, STRIDE, or internal threat classification systems.
- Understanding of security log structures and threat models in cloud environments such as AWS.
- Ability to clearly communicate detection design intent and results through documentation and collaboration.
- Preferred experience managing detection rules as code and deploying them through CI/CD pipelines.
- Preferred experience using Python for security data analysis, detection prototyping, or automation scripts.
- Preferred experience applying AI or LLMs to security analysis, threat hunting, detection scenario development, Red Team or Purple Team exercises, insider threat detection, large-scale transaction environments, or regulatory monitoring design.
Benefits
- Full-time employment with a 12-week probationary period, which may be waived, shortened, or extended when business needs require.
- Work location is Coupang's Seoul Guui office.
- The hiring process consists of application review, two remote technical interviews, and a final selection stage.
- Veterans and people with disabilities may receive hiring preference under applicable law.
About Coupang
Coupang builds and operates a South Korea–focused e-commerce marketplace with an end-to-end logistics network (Rocket Delivery), plus food delivery, video streaming, and fintech under brands such as Coupang, Eats, and Play. Revenue comes from first-party retail, third-party marketplace services, advertising, and memberships (Rocket WOW). Founded in 2010, the company is headquartered in Seattle and is publicly listed on the NYSE (CPNG).
