Security Engineer - Incident Response
Core
Investigate security events, respond to attacks, and design alerting strategies for Squarespace's platform and corporate environment.
Role type
Senior Security Engineer (Incident Response & Threat Detection)
Builds
Threat detection alerts, incident response playbooks, and security-focused tools/services.
Domain
Cybersecurity, Cloud Security, Incident Response
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM/SOAR operations, threat hunting, malware analysis, reverse engineering, host-based forensics, network protocol security, cloud security (AWS/GCP), scripting (Python/Go/JS/Bash), red/purple team exercises
Preferred skills
OSCP/OSCE/OSWP certifications, infrastructure as code, adversary resilience techniques
Technologies
SIEM, SOAR, AWS, GCP, Python, Go, JavaScript, Bash
Responsibilities
Investigate security events via SIEM/SOAR, design alerts for anomalous behavior, respond to ongoing incidents and historical compromises, initiate threat hunting engagements, establish threat detection strategies, build operational response playbooks, mentor junior team members
Seniority
Senior, hands-on IC with mentorship duties