Security Engineer - Incident Response
Core
Lead security incident response, investigations, and automation for a cloud-native AI platform.
Role type
Senior Security Engineer (Incident Response & Forensics) (via careerplan.io/jobs/de941de4-b0f2-4de8-a018-af667c67f33e-security-engineer-incident-response-at-replit)
Builds
Automated response tools, playbooks, and detection rules for cloud-native environments.
Domain
Cloud Security / Incident Response / Forensics
Required skills
Incident command, SIEM/log analysis, Python/Go/Bash scripting, Cloud architecture (GCP), Kubernetes forensics, Identity security, IR frameworks (NIST 800-61)
Preferred skills
SOAR operations, Digital forensics, Threat intelligence, Bug bounty coordination, Detection-as-code
Technologies
Python, Go, Bash, GCP, Kubernetes, SIEM, SOAR, Cloud Logging
Responsibilities
Lead incident response from detection to recovery; Investigate suspicious activity in cloud/containers; Build automation scripts for triage and containment; Develop detection rules and post-incident reviews.
Seniority
Senior, hands-on IC
