Security Engineer – Detection & Incident Response
Company | Scale AI |
---|---|
Location | San Francisco, CA, USA, New York, NY, USA |
Salary | $188000 – $254400 |
Type | Full-Time |
Degrees | |
Experience Level | Mid Level, Senior |
Requirements
- Proven experience as a Security Engineer with an emphasis on Detection Engineering, Incident Response, and Investigations.
- Proficiency in digital forensics tools and techniques.
- Strong understanding of modern cyber threats and attack methodologies.
- Production experience with SIEM and EDR tools.
- Hands-on experience with malware analysis and reverse engineering.
- Familiarity with threat intelligence platforms and their integration into incident response processes.
- The ability to structure complex incidents and diagnose root causes independently, providing actionable insights without requiring manager input.
- Excellent communication skills, with the ability to clearly present technical findings and their implications to both technical and non-technical stakeholders.
- Demonstrated ability to influence incident response strategies and drive improvements within a team.
Responsibilities
- Perform digital incident investigations to identify and contain potential security breaches.
- Evaluate and enhance our incident response capabilities through process improvements and detection tool implementations.
- Implement and maintain incident response playbooks and workflows.
- Perform digital forensics and malware analysis to understand attack vectors and methodologies.
- Utilize threat intelligence platforms to enhance our detection and response capabilities.
- Guide IT and security teams in implementing robust long-term solutions that improve incident prevention and response, including hunting logging or forensics gaps.
- Clearly explain the mechanics and significance of security incidents, including their potential impact and recommended remediation steps.
- Influence the incident response strategy and direction of the team, advocating for best practices and continuous improvement.
Preferred Qualifications
- Experience in a senior or lead incident response role is preferred.
- Relevant security certifications (e.g., GCFA, GCIA, GCIH, CISSP) are a plus.