Staff Security Engineer, Incident Response
Core
Respond to security threats, incidents, and investigations using near-real-time log analytics, alerting, and forensics on the Databricks platform.
Role type
Staff Security Engineer (Incident Response)
Builds
Autonomous incident response capabilities using AI and agentic platforms
Domain
Cloud Security / AI Security / Incident Response
Deliverable
production ML models | product features
Required skills
Incident Response (IR), Cloud Security (AWS/GCP/Azure), AI/LLM and agentic capabilities, Digital Forensics and Incident Response (DFIR), Reverse Engineering, Network Security, Storage and access security, Sandboxing, Compute security, SIEM/SOAR, Scripting
Preferred skills
Building and operating agentic systems in security settings, Enterprise Security, SaaS applications, Incident Response Tooling, AI coding tools
Technologies
AWS, GCP, Azure, SIEM, SOAR, AI/LLM frameworks
Responsibilities
Triage and respond to security events and alerts, conduct analysis and forensics across data sources, provide technical leadership and influence team direction, develop autonomous solutions leveraging AI, mentor junior responders, communicate technical decisions via design docs and tech talks
Seniority
Staff, individual contributor with technical leadership
