Senior Security Engineer, Incident Response

1Password
United States
Workplace: RemoteFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Collaboration","Problem-solving","Teamwork","Mentoring"]

Senior Security Engineer focused on detection, incident response, and security automation. You’ll design and refine threat detections, lead incident response, apply threat intel, and collaborate across Security, Infrastructure, and IT to scale detection capabilities and improve security operations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
1Password
1Password
8 months ago

Senior Security Engineer, Incident Response

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live

Job Summary

Senior Security Engineer focused on detection, incident response, and security automation. You’ll design and refine threat detections, lead incident response, apply threat intel, and collaborate across Security, Infrastructure, and IT to scale detection capabilities and improve security operations.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Sr. Manager level

Key Responsibilities

  • •Design, build, and continuously improve threat detections across infrastructure, products, internal tools, and corporate environments.
  • •Lead and support security incident response activities, including investigation, containment, remediation, and post-incident learning.
  • •Apply threat intelligence and knowledge of attacker TTPs to detection development, threat hunting, alert triage, and response prioritization.
  • •Collaborate with Security, Infrastructure, and IT teams to improve security visibility, logging quality, and response readiness.
  • •Use automation, scripting, and Detection-as-Code practices to scale detection and response workflows and improve reliability.

Pay and Benefits

Perks:Health InsuranceRemote WorkRsusRetirement Matching

Key Requirements

  • •5+ years of experience in security technical engineering roles, with 3+ years focused on security operations, detection engineering or incident response.
  • •Hands-on experience with detection engineering and automation, including SIEMs, SOAR platforms, behavior analytics, and Detection-as-Code workflows.
  • •Strong understanding of modern attacker techniques and how they apply to cloud-native, SaaS, and identity-centric environments.
  • •Experience with endpoint, runtime, and forensic tools across multiple operating systems.
  • •Knowledge of cloud environments (e.g., AWS, GCP) and security best practices for cloud-native systems.
  • •Proficiency with scripting and infrastructure tools (e.g., Python, Bash, Terraform, CI/CD pipelines) to support automation and internal tooling.
  • •Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences.
Experience:5+ yearsCybersecuritySaaSCloud security
Skills:CommunicationCollaborationProblem-solvingTeamworkMentoring
Tech Stack:PythonBashTerraformCI/CDSIEMSOAR

Company Brief

1Password
1Password (AgileBits Inc.) provides a password manager and identity-security platform for individuals and businesses, offering secure credential storage, sharing, and access management across devices and AI agents.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 250M to 500M
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series C
Headquarters: Toronto, Canada
Founded: 2005
Glassdoor
Glassdoor: 3.3
WebsiteLinkedInGlassdoor