203 incident response engineer jobs at 142 companies in Berkeley, CA
1mo
Save
Mark Applied
Hide
1mo
Partner 20, Senior Incident Response Engineer
San Francisco, California, United States
$243k-$284k/yrHybridFull Time
Andreessen Horowitz: Provides venture capital and support to technology startups.
5+ YOE5+ years incident response across AWS and GCP; lead live incidents; write detections; Python scripting; SIEM/detection frameworks; AI/SOC workflows.
Sigma, KQL, SIEM, EDR, SOAR, Python, MITRE ATT&CK, AI agents
AdobeNASDAQ: ADBE: Provides software for digital media creation and marketing analytics
7+ YOE7+ years incident response experience; host/network forensics, Windows analysis, EDR and SIEM expertise; cloud (AWS/Azure/GCP), container (Kubernetes, Docker) experience; bash and interpreted language (Python/Ruby); leadership and on-call participation.
San Francisco or Scottsdale or Chicago or New York
$130k-$162k/yrHybridFull Time
Early Warning Services: Operates payment and risk solutions for the financial industry.
4+ YOE4+ years in information security; BS or 2-year degree in CS/Engineering/Math/Physical Science; experience with incident response and malware analysis.
NavanNasdaq: NAVN: Integrated platform for corporate travel and expense management.
5+ YOE5+ years in incident response/SOC/security engineering, proven incident containment leadership, familiarity with MITRE ATT&CK, CrowdStrike/Falcon and SIEM, experience with Tines and Cyberhaven DLP, on-call participation.
Harvey: AI platform for legal research and document analysis.
4+ YOE4+ years in Security, Software Engineering, Site Reliability Engineering, or related disciplines; offensive security experience; incident response; strong networking, OS, and cryptographic knowledge.
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
8+ YOE8+ years in detection/response, security data engineering, incident response; experience building streaming ETL pipelines; proficiency with SIEM/EDR/NDR/SOAR and languages like C, Golang, or Java.
New York or San Francisco or Seattle or Washington
$238k-$297k/yrOnsiteFull Time
Scale AI: Provides data and infrastructure for training artificial intelligence models.
5+ YOE5+ years in detection engineering, incident response, or security operations; production-quality coding (Python or Go); SIEM/EDR/SOAR and cloud (AWS/GCP/Azure) experience; digital forensics and malware analysis; strong communication.
Zapier: Connects web applications to automate repetitive workflows without coding.
Operate and maintain incident tooling, build AI-powered automations and workflows, troubleshoot integrations and dashboards, and enable incident response across the organization.
1X: Manufacturing safe, general-purpose humanoid robots for home and work.
5+ YOE5+ years in detection engineering/incident response; experience with SIEM, EDR, logging pipelines, cloud monitoring (AWS/GCP/Azure); strong scripting in Python/Go/Bash; Bachelor's in a technical field required.
Serval: AI platform for automating IT and enterprise service workflows.
10+ YOE10+ years in cybersecurity with deep expertise in detection engineering, incident response, security operations, observability, and team leadership; experience with SIEM/EDR/cloud telemetry and driving detection strategies.
SIEM, data lakes, EDR, observability stacks, cloud telemetry, logging
San Francisco or Vancouver or Phoenix or Los Angeles or Seattle or Austin or Portland or California or United States or Canada
$123k-$165k/yrRemoteFull Time
CircleNYSE: CRCL: Digital currency issuer and blockchain financial infrastructure provider.
2+ YOE2+ years in detection/response or security engineering; experience with incident response, AWS + EKS, AI tooling, MacOS internals, and programming in Python or Golang; familiarity with Slack and GSuite; able to take on-call shifts.
Slack, Apple MacOS, GSuite, SIEM, Orchestration platforms, AWS, EKS, AI tooling, Python, Golang
Notion: Provides a unified workspace for notes, documents, and project management.
6+ YOE6+ years in detection engineering/security operations/incident response; built and operated production detections; fluent in detection languages (Sigma, KQL, SPL, YARA-L, EQL, Panther); cloud security (AWS/GCP/Azure); hands-on with SIEM, EDR, SOAR; on-call experience.