Senior Security Engineer (Incident Response)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Security Engineer (Incident Response): Leading incident response coordination and threat monitoring across cloud-native infrastructure with an accent on detection-as-code and automation. Focus on identifying anomalous behavior in AWS/GCP, building response playbooks, and performing deep-dive security investigations.
Location: Hybrid, London, United Kingdom
Company
is a global design platform redefining how the world experiences design through accessible, powerful visual communication tools.
What you will do
- Lead incident response coordination and act as the primary escalation point for security incidents across cloud-native infrastructure.
- Monitor and investigate threats across AWS, GCP, and hybrid environments, hunting for anomalous behavior.
- Build and maintain detection rules, automation workflows, and response playbooks using detection-as-code.
- Develop custom tools for security alerting and management to prevent recurrence of incidents.
- Lead post-incident reviews, produce detailed reports, and maintain comprehensive response documentation.
- Champion security best practices across network security and secure development lifecycles.
Requirements
- Demonstrable experience in incident response, security operations, and full-cycle event coordination.
- Strong knowledge of cloud security architectures and hands-on experience with AWS, GCP, or Azure.
- Extensive experience using EDR platforms for investigations and response actions.
- Proficiency with Linux, macOS, and the ability to leverage OSINT techniques for problem-solving.
- Strong documentation and stakeholder management skills in a fast-paced environment.
- Must be based in or able to work from the London, UK office.
Nice to have
- Background in forensic acquisition, analysis, and maintaining chain of custody.
- Incident response experience within Kubernetes and containerized environments.
- Proficiency in scripting languages such as Python or Go.
- Experience with SOAR tools and detection-as-code version control workflows.
- Knowledge of the MITRE ATT&CK framework and threat intelligence platforms.
Culture & Benefits
- Equity packages to share in the company's success.
- Inclusive parental leave policy supporting all parents and carers.
- Annual Vibe & Thrive allowance for wellbeing, social connection, and office setup.
- Flexible leave options to support personal recharge and wellbeing.
- Collaborative work environment with a choice in how and where you work within the London campus.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →