Senior Security Engineer, Security Incident Response Team (SIRT)

2 weeks, 1 day ago
Full-time
Senior
Cybersecurity
GitLab

GitLab

GitLab: The comprehensive DevOps platform revolutionizing software development with automation, AI workflows, and essential tools for efficient collaboration.

Internet Software & Services
1K-5K
Founded 2014

Description

  • Lead and coordinate end-to-end incident response for high-severity security events in a 24/7 global on-call model.
  • Investigate complex security incidents across cloud environments using Digital Forensics and Incident Response methodologies.
  • Prepare clear executive communications to keep stakeholders informed during incidents.
  • Partner with Signals Engineering to design and implement detection capabilities, including SIEM use cases, alerting strategies, and telemetry pipelines.
  • Build and enhance automation and AI-assisted workflows to improve triage, investigation speed, and response consistency.
  • Partner with Threat Intelligence to contextualize threats and improve detection coverage.
  • Conduct root cause analysis and lead post-incident reviews to drive continuous improvement and risk reduction.
  • Develop and maintain runbooks, playbooks, and operational documentation.
  • Collaborate cross-functionally with Engineering, Infrastructure, Legal, Product, and Communications during incidents and proactive exercises.
  • Mentor other engineers and help improve the team’s incident response maturity.

Requirements

  • Strong experience in security incident response and investigations in cloud-first environments.
  • Experience using or administering Git/GitLab in a security or engineering context.
  • Hands-on experience with SIEM, EDR, and/or detection engineering.
  • Experience with cloud platforms such as AWS and GCP.
  • Familiarity with threat intelligence and adversary tactics such as MITRE ATT&CK.
  • Experience building or working with automation tools such as Python, scripting, or SOAR platforms.
  • Interest or experience applying AI/ML or data-driven techniques to detection, triage, or response workflows.
  • Strong analytical and problem-solving skills, with the ability to operate effectively during high-severity incidents.
  • Excellent written communication skills and a commitment to clear, actionable documentation.
  • United States citizenship is required due to government requirements.
  • Residency within the United States is required, and the role supports GitLab’s FedRAMP environment.

Benefits

  • Base salary range of $139,200 to $218,400 USD for the listed level.
  • Benefits to support health, finances, and well-being.
  • Flexible Paid Time Off.
  • Equity compensation and an Employee Stock Purchase Plan.
  • Growth and Development Fund.
  • Parental leave.
  • Home office support.
  • Team Member Resource Groups.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Information Systems Security Manager

REE Medical 51-250 Health Care Providers & Services

REE Medical is hiring an IT Security Manager to lead cybersecurity governance, risk management, and incident response efforts that protect sensitive data and IT systems while supporting regulatory compliance.

AWS Azure Cybersecurity DevSecOps Encryption GCP Network Security Salesforce SIEM
1 hour, 2 minutes ago

Security Engineer (Remote First)

Zensurance 51-250 Insurance

Zensurance is hiring a remote-first Security Engineer in Toronto to support its company-wide information security program and strengthen risk, incident, and security operations across the business.

Agile AWS CrowdStrike Cybersecurity
2 hours, 30 minutes ago

Senior Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Security Technician to install, program, troubleshoot, and maintain access control and IP camera systems at client sites.

3 hours, 39 minutes ago

Sr. Information Systems Security Engineer III (6588)

MetroStar 251-1K IT Services

MetroStar is hiring a Sr. Information Systems Security Engineer to protect its digital assets by designing, implementing, and maintaining cybersecurity controls across networks, systems, cloud environments, and compliance-driven solutions.

Cybersecurity Encryption Splunk
5 hours, 58 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers