Source Job

Brazil

  • Lead the complete response lifecycle for Level 2 and Level 3 security incidents, from analysis to containment and eradication.
  • Coordinate with MSSPs, 24/7 SOC, and cross-functional teams (Legal, DPO, Communications) during critical incidents.
  • Develop and refine IR playbooks, perform DFIR investigations, and integrate automation with SOAR.

Incident Response Digital Forensics Threat Hunting Cloud Security SOAR

20 jobs similar to Senior Security Engineer - CSIRT

Jobs ranked by similarity.

India

  • Act as a senior member of the SOC, independently managing and resolving security incidents end-to-end.
  • Lead incident investigations, perform root cause analysis, and drive lessons learned.
  • Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.

Netrix Global provides the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. The company is consistently ranked in the CRN VAR500 as a top system integrator and fosters a culture of ownership, teamwork, and respect.

$105,000–$115,000/yr
US Unlimited PTO

  • Lead end-to-end incident response for complex security events targeting executives and high-profile individuals.
  • Investigate compromised accounts, mobile threats, and financial fraud across Windows, macOS, iOS, Android, and Linux.
  • Mentor responders, map attacks against the kill chain, and provide white-glove client support during crises.

BlackCloak protects corporate executives and high-profile individuals in their personal lives, mitigating risks to families, companies, reputation, and finances. It is an extremely fast-growing company with a validated product and an impressive Fortune 500 client base across all industries.

Brazil 0w PTO

  • Perform troubleshooting across security and network environments to identify root causes of issues or confirm the absence of errors and security blocks.
  • Work with security technologies including NG Firewalls, WAF, ZTNA, VPN, IPS, SIEM, EDR, network routing, and cloud-provider security tools.
  • Monitor security environments and respond effectively to security incidents, supporting investigation, containment, and resolution.

US

  • Perform investigations of security incidents using digital forensics and data analytics.
  • Apply coding, data analytics, and investigative skills to hunt, detect, and respond to threats.
  • Build automation and detection models to identify anomalous activity and support response efforts at scale.

Maleda Tech is a technology staffing and consulting firm that provides security engineering services. They are hiring for a contract role supporting a major technology organization.

Global 12w maternity 12w paternity

  • Lead incident response across platforms and applications, from triage to recovery.
  • Hunt proactively for threats using system logs, user behavior, and threat intelligence.
  • Build and automate incident response workflows and strengthen detection with MITRE ATT&CK.

Xplor provides cloud-based technology solutions that help small and medium-sized businesses manage operations and get paid securely. With over 130,000 businesses in 72+ countries processing $47B annually, the company fosters a culture of simplicity, purpose, and community.

Mexico

  • Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
  • Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
  • Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.

Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.

$145,000–$155,000/yr
US

  • Participate in all Incident Response activities with deep expertise in Forensic Analysis, including malware detection and reverse engineering.
  • Manage digital evidence chain of custody and perform forensic analysis across networks, hosts, and cloud environments.
  • Collaborate with security leadership to convert forensic insights into detection rules and support threat hunting operations.

Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. Named one of the fastest growing privately held companies and a Best Place to Work, Valiant fosters an employee-centric culture with great benefits and career development opportunities.

Canada

  • Develop processes, tooling and automation to scale incident management response and mitigate risks.
  • Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
  • Maintain security logging platform and stay updated on threats to improve detection mechanisms.

ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.

United States

  • Independently triage security alerts and incident reports.
  • Investigate incidents using forensic and threat hunting skills.
  • Drive incidents to closure and enhance response platforms.

LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. The company is committed to a culture built on trust, care, inclusion, and fun, offering transformational opportunities for employees.

US

  • Lead and manage digital forensic and incident response engagements for clients across diverse industries.
  • Conduct advanced forensic analysis including malware analysis and reverse engineering to identify security incident scope.
  • Mentor and provide career development for a forensic team of junior consultants.

Surefire Cyber is a cybersecurity firm specializing in incident response for ransomware, email compromise, and other threats, delivering a client-centric approach designed by industry veterans. The company prioritizes efficiency, predictability, and transparency with a remote workforce and a focus on employee growth.

$192,000–$278,000/yr
Canada

  • Lead, develop, and support a team of security incident responders, setting clear expectations and driving career development.
  • Define and drive the security incident response roadmap, including automation and AI-assisted tooling.
  • Oversee detection, triage, containment, remediation, and post-incident learning for complex high-severity security events.

The company provides password management services to individuals and businesses. It fosters a collaborative, inclusive culture focused on transparency, psychological safety, and continuous learning.

Brazil

  • Maintain stability, reliability, and performance of cloud and core platform environments supporting enterprise customers.
  • Investigate complex technical issues across infrastructure, APIs, integrations, and distributed services.
  • Act as a technical bridge between customers, technical account teams, and Engineering to turn findings into actionable solutions.

Jobgether uses an AI-powered matching process to streamline job applications. It is an inclusive equal-opportunity workplace that processes applications quickly and fairly.

Canada US

  • Lead complex, high-severity security incident responses as incident commander.
  • Design and build AI-assisted automation for security operations.
  • Own readiness programs, threat hunting, and insider risk capabilities.

1Password is a cybersecurity company that provides enterprise password management and unified access management, trusted by over 180,000 businesses. They are a remote-first company with a fast-paced, collaborative culture, and have surpassed $400M in ARR.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

$192,000–$278,000/yr
US Canada

  • Build and lead a team of incident responders, engineering automation and tooling to make response faster and more scalable.
  • Guide program maturity through AI-assisted workflows, operational excellence, and cross-functional partnerships.
  • Serve as incident manager during complex, high-severity events, balancing strategic priorities with team development.

1Password is a cybersecurity company that builds enterprise password management and unified access management solutions, trusted by over 180,000 businesses. With over $400M in ARR and a spot on the Forbes Cloud 100 for four years, the company fosters a human-centric, collaborative culture that values innovation and speed.

Singapore

  • Support complex, high-impact investigations and security incidents across OT environments, ensuring thorough resolution and post-incident analysis.
  • Drive continuous improvement of incident response processes, implement best practices, and integrate lessons learned into standard operating procedures.
  • Collaborate with industry experts and stakeholders to enhance incident response frameworks and guide customers through critical decision points.

Dragos is a global leader in OT cybersecurity, protecting critical infrastructure with technology, threat intelligence, and expert services. It is a remote-first, mission-driven team across multiple regions, built on authenticity, transparency, and trust.

$133,000–$209,000/yr
US

  • Design and continuously improve detection and alerting controls to reduce noise and enable rapid response.
  • Build, test, and automate incident response playbooks to increase efficiency across the incident lifecycle.
  • Drive prioritization of alerts using a data-driven triage framework aligned with business impact and threat context.

Sword builds AI to heal billions, pioneering AI Care for healthcare delivery across physical therapy, women’s health, and more. With over 700,000 members and 1,000+ enterprise clients, they have raised $500 million and emphasize a culture of proactive security and AI proficiency.

US Unlimited PTO

  • Lead the most complex and high-severity DFIR engagements, providing technical oversight and quality assurance.
  • Mentor and develop junior and senior staff, shaping investigation methodologies and tools.
  • Act as a trusted senior advisor to clients, supporting pre-sales and representing the practice externally.

GuidePoint Security provides trusted cybersecurity expertise, solutions, and services that help organizations make better decisions and minimize risk. The company is a rapidly growing, profitable, privately-held value added reseller with over 1,300 employees and a focus exclusively on Information Security.

UK Ireland

  • Lead complex incident response investigations end-to-end with minimal supervision.
  • Perform alert triage, phishing investigations, endpoint forensics, and data exfiltration analysis.
  • Mentor junior analysts and drive improvements to security processes.

Version 1 is a technology and transformation solutions provider trusted by global brands. With over 3,300 employees and €350m revenue, it has been recognized as a Great Place to Work for over a decade.

Australia 12w maternity 12w paternity

  • Triage and investigate intrusions, analyze logs and forensic artifacts to determine root causes.
  • Perform dynamic malware analysis and refine detection capabilities to address emerging threats.
  • Collaborate with product and engineering teams to evolve human-led agentic workflows.

Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, making enterprise-grade security accessible to businesses of all sizes. They secure over 5 million endpoints and 14 million identities worldwide with a remote-first team and a 24/7 human-led Security Operations Center.