Remote job
Senior Security Operations Engineer
Job details
About this role
Role overview Join a global Security Operations team to lead incident response, insider threat investigations, and digital forensics for a connected operations platform serving physical industries. The role blends hands-on technical analysis with incident command responsibilities and cross-functional collaboration across Engineering, Legal, Compliance, and Employee Relations.
Responsibilities - Monitor security events, triage alerts, and provide technical analysis on potential incidents. - Serve as Incident Commander during security events and employee investigations, owning strategy, execution, and stakeholder updates through closure. - Lead digital forensic investigations in support of Employee Relations, Legal, Compliance, and Information Security cases. - Build and maintain runbooks, scripts, automated workflows, and integrated services that improve operations and insider threat capabilities. - Mentor and train other security operations engineers on data collection, analysis, and reporting.
Requirements - 5+ years of experience in security incident response. - Demonstrated ability to lead incidents end-to-end, coordinating across teams and triaging alerts. - Proficiency in Python, with the ability to build scripts and tools that support investigations. - Strong communication skills for conveying findings and strategies to technical staff, executive leadership, and legal stakeholders. - Practical experience acting as the lead during incident response and insider threat work.
Benefits and work setup - Open to candidates residing in the US Pacific Time Zone. - Flexible working model with office-based, hybrid, and remote options depending on role needs. - Professional development stipend, comprehensive health coverage, and parental leave plans.