Senior Security Engineer, Incident Response Team

New
G
GitLabDevSecOps
Remote, Australia, 24/7 follow the sun model, APAC windowFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Required Skills
AWSPythonGCP

Requirements

  • Strong experience in security incident response and investigations in cloud-first environments.
  • Hands-on experience using or administering Git or GitLab in a security or engineering context.
  • Proven experience with SIEM, EDR, and/or detection engineering.
  • Proficiency with cloud platforms, specifically AWS and GCP.
  • Familiarity with threat intelligence and adversary tactics, such as MITRE ATT&CK.
  • Experience building or working with automation tools, such as Python or SOAR platforms.
  • Interest or experience in applying AI/ML or data-driven techniques to detection and response.
  • Strong analytical and problem-solving skills for high-severity incident environments.
  • Excellent written communication skills with experience in actionable documentation.

Responsibilities

  • Lead and coordinate end-to-end incident response for high-severity security events.
  • Investigate complex security incidents across cloud environments using DFIR methodologies.
  • Partner with Detection Engineering to design and implement SIEM use cases, alerting strategies, and telemetry pipelines.
  • Build and enhance automation and AI-assisted workflows to improve triage and investigation speed.
  • Conduct root cause analysis and lead post-incident reviews to drive continuous improvement.
  • Develop and maintain runbooks, playbooks, and operational documentation.
  • Collaborate cross-functionally across Engineering, Infrastructure, Legal, and Product teams.
  • Mentor other engineers to elevate the team’s overall incident response maturity.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now