
Senior Security Engineer, Incident Response Team
Posted Sep 17

Posted Sep 17
This is a fully remote position, open to applicants in Australia.
• Oversee and manage the complete incident response process for critical security events.
• Create concise executive communications throughout the duration of incidents.
• Examine intricate security incidents in cloud environments utilizing DFIR methodologies.
• Collaborate with Detection Engineering to develop and execute SIEM use cases, alerting strategies, and telemetry pipelines.
• Develop and improve automation and AI-assisted workflows for triage, investigations, and responses.
• Work alongside Threat Intelligence to provide context for threats and enhance detection capabilities.
• Perform root cause analyses and facilitate post-incident evaluations.
• Create and sustain runbooks, playbooks, and operational documentation.
• Work in partnership with Engineering, Infrastructure, Legal, Product, and Communications teams during incidents.
• Lead proactive efforts such as tabletop exercises.
• Mentor fellow engineers and enhance incident response maturity.
• Significant experience in security incident response and investigations within cloud-first environments.
• Proficiency in using or managing Git/GitLab in a security or engineering setting.
• Practical experience with SIEM, EDR, and/or detection engineering.
• Familiarity with AWS and GCP.
• Understanding of threat intelligence and adversary tactics, including MITRE ATT&CK framework.
• Experience in building or utilizing automation tools, such as Python, scripting, or SOAR platforms.
• Interest or experience in applying AI/ML or data-driven methods to detection, triage, or response workflows.
• Strong analytical and problem-solving abilities.
• Capability to function effectively during high-severity incidents.
• Exceptional written communication skills.
• Enthusiasm for creating clear, actionable documentation.
• A growth mindset with a proactive approach to identifying and addressing security risks.
• Willingness to participate in a rotating on-call schedule.
• Availability to work during the APAC time zone in a 24/7 follow-the-sun operational model.
• Comprehensive benefits to enhance your health, finances, and overall well-being.
• Flexible Paid Time Off policy.
• Access to Team Member Resource Groups.
• Equity Compensation and Employee Stock Purchase Plan.
• Growth and Development Fund opportunities.
• Parental Leave support.
• Option for remote work arrangements.
Cloudiax
Cisco
Cisco
Skylight
Get handpicked remote jobs straight to your inbox weekly.