Remote job
Staff Security Engineer, Incident Response
Job details
About this role
Role overview Join a dedicated Incident Response team focused on safeguarding enterprise infrastructure and customer data from sophisticated threats. This staff-level role combines round-the-clock hands-on incident handling with continuous improvements to detection, triage, and forensic capabilities.
Responsibilities - Operate on a 24/7 incident response rotation, addressing active security events as they emerge - Triage alerts from detection systems to assess severity, scope, and appropriate response actions - Conduct forensic analysis across endpoints, logs, network telemetry, and cloud data sources - Strengthen response playbooks and post-incident learnings to improve future handling - Apply AI/LLM-based and agentic tooling to accelerate detection and investigation workflows
Requirements - Bachelor's degree with 7+ years of incident response experience, or Master's degree with 5+ years - Hands-on cloud security expertise in at least one major provider (AWS, GCP, or Azure) - Practical proficiency with AI/LLM tooling and agentic automation - Strong analytical and investigative skills for complex incidents under time pressure