Senior Security Operations Engineer II
Core
Lead initial triaging, escalation, and incident response for security events across CoreWeave's global infrastructure.
Role type
Senior Security Operations Engineer (Incident Response & Triage)
Builds
Coordinated, real-time security incident response and detection capabilities for a global cloud infrastructure.
Domain
Cloud Security Operations / Cybersecurity
Deliverable
client delivery
Required skills
Linux system internals and forensics, MacOS system internals and forensics, Kubernetes security, SIEM query and analysis, EDR utilization, network protocol analysis, incident triage and containment, post-incident review and remediation, threat intelligence integration, automation of SOC workflows
Preferred skills
Experience at a cloud provider or hyperscaler, experience leading security analysts, familiarity with Security Operations at enterprise scale
Technologies
Linux, MacOS, Kubernetes, SIEM, EDR, IDS/IPS, firewalls
Responsibilities
Investigate security incidents including creating detections-as-code, analysis, containment, and remediation; Utilize SIEM and EDR tooling to detect and respond to suspicious activity in real-time; Conduct post-incident reviews to improve security defenses; Serve as technical lead for SOC response workflows guiding junior engineers; Collaborate with threat intelligence teams to identify emerging threats; Participate in regional on-call rotation for 24/7 global coverage
Seniority
Senior, hands-on IC with leadership responsibilities