Senior Security Engineer, Incident Response

Airbnb
United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Amazon Elastic Compute Cloud Amazon S3 Cyber Security Digital Forensics Intrusion Detection and Prevention Python (Programming Language) SQL Databases Data Logging Scripting Mitre Att&ck Pandas
+4 more
Amazon Relational Database Service Cybercrime Data Analytics Functional Programming

Job description

Experteer Overview In this Senior Security Engineer role, you will help shape Airbnb’s threat detection and incident response capabilities within the Threat Detection & Response (TDR) team. You will build and optimize security controls, lead investigations, and mentor other engineers, contributing to scalable defense across production and corporate environments. You’ll partner with cross-functional teams to reduce risk through detection, containment, and informed remediation. This is a high-impact position at a fast-growing, security-focused team that values proactive problem-solving and collaboration. Compensation / Benefits * Investigate security incidents using digital forensics and data analytics * Develop and deploy automation and detection models to identify and respond to threats at scale * Hunt for threats in corporate and production environments * Collaborate with engineering and cross-functional teams to improve visibility via logging and detection * Identify infrastructure gaps and drive visibility improvements through partner engagement Tasks * 5+ years of hands-on security operations experience (investigations, incident response, forensics, threat hunting, or detection engineering) * Proficiency in Python or another scripting language; familiarity with SQL and Pandas * Knowledge of Cyber Kill Chain and MITRE ATT&CK frameworks * Experience automating security detection and response * Ability to lead in complex, ambiguous situations through influence * Experience with AWS services (EC2, S3, Lambda, RDS) preferred * Ability to work calmly in high-stress situations and collaborate cross-functionally Key requirements * remote work eligibility * bonus possibility * equity * benefits * Employee Travel Credits * paid time off (implied by benefits)

Requirements

_ gaps and drive visibility improvements through partner engagement Tasks * 5+ years of hands-on security operations experience (investigations, incident response, forensics, threat hunting, or detection engineering) * Proficiency in Python or another scripting language; familiarity with SQL and Pandas * Knowledge of Cyber Kill Chain and MITRE ATT&CK frameworks * Experience automating security detection and response * Ability to lead in complex, ambiguous situations through influence * Experience with AWS services (EC2, S3, Lambda, RDS) preferred * Ability to work calmly in high-stress situations and collaborate cross-functionally Key requirements * remote work eligibility * bonus possibility * equity * benefits * Employee Travel Credits * paid time off (implied by benefits)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Accelerating pandas dataframes using cudf module plugins

Ankit Patel Ankit Patel · WWC 2024

3:43 min

The enduring legacy of the amazon S3 storage API

Chris Heilmann +3 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

6:58 min

Analyzing production code coverage data using pandas

Markus Harrer Markus Harrer · WWC 2021

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

Videos

See all

Related articles

See all