Senior Security Engineer, Incident Response Team
New
G
GitLabDevSecOps
Remote, Australia, 24/7 follow the sun model, APAC windowFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSPythonGCP
Requirements
- Strong experience in security incident response and investigations in cloud-first environments.
- Hands-on experience using or administering Git or GitLab in a security or engineering context.
- Proven experience with SIEM, EDR, and/or detection engineering.
- Proficiency with cloud platforms, specifically AWS and GCP.
- Familiarity with threat intelligence and adversary tactics, such as MITRE ATT&CK.
- Experience building or working with automation tools, such as Python or SOAR platforms.
- Interest or experience in applying AI/ML or data-driven techniques to detection and response.
- Strong analytical and problem-solving skills for high-severity incident environments.
- Excellent written communication skills with experience in actionable documentation.
Responsibilities
- Lead and coordinate end-to-end incident response for high-severity security events.
- Investigate complex security incidents across cloud environments using DFIR methodologies.
- Partner with Detection Engineering to design and implement SIEM use cases, alerting strategies, and telemetry pipelines.
- Build and enhance automation and AI-assisted workflows to improve triage and investigation speed.
- Conduct root cause analysis and lead post-incident reviews to drive continuous improvement.
- Develop and maintain runbooks, playbooks, and operational documentation.
- Collaborate cross-functionally across Engineering, Infrastructure, Legal, and Product teams.
- Mentor other engineers to elevate the team’s overall incident response maturity.
View Full Description & ApplyYou'll be redirected to the employer's site