Staff Security Engineer, CSIRT
Core
Lead high-severity security incidents end-to-end for a global food delivery and quick-commerce platform, acting as an Incident Commander while building automated tooling to scale response capabilities.
Role type
Staff Security Engineer (CSIRT)
Builds
In-house security tooling, automated workflows, and scalable incident response systems.
Domain
Cybersecurity / Incident Response / FinTech / Logistics
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident Command, Security Incident Response, SIEM/EDR/SOAR/WAF, Python/Go/Rust, Cloud Security (AWS/GCP/Kubernetes), Terraform, Git/CI/CD, Regulatory Compliance (GDPR/PCI-DSS/NIS2/DORA)
Preferred skills
Digital Forensics, Malware Analysis/Reverse Engineering, Web/Mobile Security, AI/LLM integration in IR
Technologies
Python, Go, Rust, AWS, GCP, Kubernetes, Docker, Terraform, Git, GitHub, SIEM, EDR, SOAR, WAF
Responsibilities
Lead active responses for high-severity incidents, conduct blameless post-incident reviews, design automated workflows to reduce manual toil, mentor security teams, define and track operational metrics (MTTD/MTTR), facilitate tabletop exercises and purple team engagements.
Seniority
Staff, hands-on technical leader & strategic mentor