Senior Security Engineer
Core
Leading complex incident response and forensic investigations across Windows, macOS, Linux, and AWS environments while modernizing security operations through automation and AI-driven capabilities.
Role type
Senior IC security engineer (incident response & forensics)
Builds
Automated security workflows, AI-assisted playbooks, and AWS-native response capabilities
Domain
Cybersecurity, Cloud Security (AWS), Incident Response, Digital Forensics
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
AWS security expertise, threat detection, digital forensics, malware analysis, incident response, automation scripting (Python/PowerShell/Bash), AI/ML integration for security
Preferred skills
SOAR platform expertise, EDR/XDR platform experience, cloud-native security operations, AI security technologies (LLM integrations)
Technologies
AWS (GuardDuty, Security Hub, Detective, CloudTrail, IAM, VPC Flow Logs, Lambda, Step Functions, EventBridge), SentinelOne, AXIOM, F-Response, Timesketch, Volatility, Velociraptor, CrowdStrike, Microsoft Defender, Carbon Black, Amazon Bedrock, Microsoft Security Copilot, Google SecOps/Chronicle, Prowler, Trusted Advisor, CNAPP
Responsibilities
Lead high-priority incident response and forensic investigations as primary escalation point; Drive threat detection and response across multi-platform environments; Conduct malware analysis, host and cloud forensics, and threat hunting; Design and implement automated security workflows and AI-assisted playbooks; Partner with Security, IT, and DevOps teams to enhance security posture and mentor junior engineers
Seniority
Senior, hands-on IC