Incident Response Engineer
Cloudflare
about 1 month ago
Remote, Worldwide
Entry Level / Mid Level
H1B Sponsor
Responsibilities
- Oversee security event triage, validation, and response workflows.
- Collaborate with detection engineers and threat intelligence teams.
- Maintain incident management processes and ensure proper documentation.
- Perform continuous operational improvements in security processes.
- Conduct security gap analysis and recommend enhancements.
- Lead forensic investigations into security incidents.
- Perform log analysis and anomaly detection across various telemetry.
- Optimize SIEM queries and improve threat visibility.
- Develop playbooks to streamline investigations.
- Perform disk, memory, and network forensics.
Requirements
- 1+ years of experience in incident response and security operations.
- Willingness to lead crisis situations and make data-driven decisions.
- Knowledge of incident management and forensic investigation methodologies.
- Hands-on experience with SIEM, SOAR, and EDR tools.
- Understanding of OKR methodologies and Agile workflows.
- Familiarity with threat intelligence and attacker tactics.
Tech Stack
AWSAzureDockerGoogle Cloud PlatformKubernetesPythonSQL
Categories
Security