Senior Security Engineer, Security Incident Response Team (SIRT)

3 weeks, 4 days ago
Full-time
Senior
Cybersecurity
GitLab

GitLab

GitLab: The comprehensive DevOps platform revolutionizing software development with automation, AI workflows, and essential tools for efficient collaboration.

Internet Software & Services
1K-5K
Founded 2014

Description

  • Lead and coordinate end-to-end incident response for high-severity security events in a 24/7 global on-call model.
  • Investigate complex security incidents across cloud environments using Digital Forensics and Incident Response methodologies.
  • Prepare clear executive communications to keep stakeholders informed during incidents.
  • Partner with Signals Engineering to design and implement detection capabilities, including SIEM use cases, alerting strategies, and telemetry pipelines.
  • Build and enhance automation and AI-assisted workflows to improve triage, investigation speed, and response consistency.
  • Partner with Threat Intelligence to contextualize threats and improve detection coverage.
  • Conduct root cause analysis and lead post-incident reviews to drive continuous improvement and risk reduction.
  • Develop and maintain runbooks, playbooks, and operational documentation.
  • Collaborate cross-functionally with Engineering, Infrastructure, Legal, Product, and Communications during incidents and proactive exercises.
  • Mentor other engineers and help improve the team’s incident response maturity.

Requirements

  • Strong experience in security incident response and investigations in cloud-first environments.
  • Experience using or administering Git/GitLab in a security or engineering context.
  • Hands-on experience with SIEM, EDR, and/or detection engineering.
  • Experience with cloud platforms such as AWS and GCP.
  • Familiarity with threat intelligence and adversary tactics such as MITRE ATT&CK.
  • Experience building or working with automation tools such as Python, scripting, or SOAR platforms.
  • Interest or experience applying AI/ML or data-driven techniques to detection, triage, or response workflows.
  • Strong analytical and problem-solving skills, with the ability to operate effectively during high-severity incidents.
  • Excellent written communication skills and a commitment to clear, actionable documentation.
  • United States citizenship is required due to government requirements.
  • Residency within the United States is required, and the role supports GitLab’s FedRAMP environment.

Benefits

  • Base salary range of $139,200 to $218,400 USD for the listed level.
  • Benefits to support health, finances, and well-being.
  • Flexible Paid Time Off.
  • Equity compensation and an Employee Stock Purchase Plan.
  • Growth and Development Fund.
  • Parental leave.
  • Home office support.
  • Team Member Resource Groups.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Communications Systems Architect

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Communications Systems Architect to lead the architecture and operation of national radio, voice, intercom, emergency call, and mass notification systems supporting its global security environment.

SIEM TLS
1 hour, 34 minutes ago

Security Engineer

Voltus 251-1K Electric Utilities

Voltus is hiring a remote Security Engineer to strengthen the security foundation of its clean-energy software platform and support both infrastructure protection and compliance work.

AWS CI/CD Datadog Docker Go HIPAA Prometheus Python Terraform
2 hours, 3 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter security.

AWS Azure Cloudflare CrowdStrike GCP OAuth Secrets Management Terraform Vercel
6 hours, 57 minutes ago

Mid-Senior IT Professional (Multiple Opportunities)

Hire Resolve US Internet Software & Services

Hire Resolve is assisting Australian IT organisations in hiring mid- to senior-level IT professionals for multi-disciplinary roles supporting infrastructure, cloud, cybersecurity, enterprise systems, and service delivery.

Active Directory AWS Azure Bash Cybersecurity DHCP DNS GCP PowerShell Python SIEM Terraform
7 hours, 7 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers