about 4 hours ago
Remote, United States
Senior
Base Salary
$139k - $218k/yr
Responsibilities
- Lead and coordinate end-to-end incident response for high-severity security events.
- Prepare clear executive communications to keep stakeholders informed during incidents.
- Investigate complex security incidents across cloud environments using DFIR methodologies.
- Design and implement detection capabilities in collaboration with Signals Engineering.
- Build and enhance automation and AI-assisted workflows for improved response.
- Partner with Threat Intelligence to contextualize threats and improve detection coverage.
- Conduct root cause analysis and lead post-incident reviews for continuous improvement.
- Develop and maintain operational documentation, including runbooks and playbooks.
- Collaborate cross-functionally during incidents and lead proactive initiatives.
- Mentor other engineers to elevate the team's incident response maturity.
Requirements
- Strong experience in security incident response in cloud-first environments.
- Experience using or administering Git/GitLab in a security context.
- Hands-on experience with SIEM, EDR, and detection engineering.
- Experience with cloud platforms such as AWS and GCP.
- Familiarity with threat intelligence and adversary tactics like MITRE ATT&CK.
- Experience building or working with automation using Python or scripting.
- Interest in applying AI/ML techniques to detection and response workflows.
- Strong analytical and problem-solving skills for high-severity incidents.
- Excellent written communication skills for clear documentation.
- Growth mindset with a proactive approach to security risk mitigation.
Benefits
- Benefits to support health, finances, and well-being.
- Flexible Paid Time Off.
- Team Member Resource Groups for community support.
- Equity Compensation and Employee Stock Purchase Plan.
- Growth and Development Fund for professional development.
- Parental leave for family support.
- Home office support for remote work.
Tech Stack
AWSGoogle Cloud PlatformPython
Categories
Security