This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are a global team of innovators and pioneers dedicated to shaping the future of observability. At New Relic, we build an intelligent platform that empowers companies to thrive in an AI-first world by giving them unparalleled insight into their complex systems. As we continue to expand our global footprint, we're looking for passionate people to join our mission. If you're ready to help the world's best companies optimize their digital applications, we invite you to explore a career with us! New Relic’s Information Security Team is searching for a Senior Security Incident Response Engineer! If you enjoy a work environment where you're part of a successful distributed team that collaborates to achieve successful outcomes, we would love to talk to you! In this role, you will use your background and deep understanding of how attackers gain access to systems and apply it to respond to cyber security incidents covering all phases including identification, containment and eradication.As an engineer of our growing Security Incident Response team, you will collaborate with teams throughout the organization, providing security insight, mitigation strategies, and preventive measures from detections.You will help develop our security program through collaboration,investigation, documentation, and engineering practices.
Job Responsibility:
Support and maintain response strategy and tooling to severe incidents and key attack scenarios
Support the SoC alert life cycle: triage security risk, investigate alerts, develop runbooks, policies and procedures to help the company respond, and run retrospectives to coordinate effort across the company to prevent future incidents
Maintain healthy working relationships with our managed security service providers and respond to incident escalations
Maintain coordination and communication streams horizontally and vertically as part of major cyber related incident handling
Know the latest APT tactics and techniques and use engineering practices to detect and respond
Provide technical expertise to engineering teams on standard methodologies, tools and frameworks
Work with product managers, senior management, and end users to drive security maturity across the business
Requirements:
Willingness to work in rotational shifts including Morning, Evening and Night shifts
Willingness to work in weekend shifts and support on call
At least five years of recent experience working in a threat hunting, threat intelligence, incident response, or security engineering role
Experience configuring security incident and event management tools, including creating event filtering, correlation rules, and reports
Strong understanding of the MITRE ATT&CK Framework
Experience performing risk assessment, threat tracking, or vulnerability management and success in evaluating and communicating severity, impact, and likelihood of a risk to a wide audience
Familiarity with digital forensic tools and techniques for hands-on response during incidents
Nice to have:
Experience building a successful SOC or developing incident response plans or run books
Software engineering experience, primarily in Python or other high-level programming language
Experience in cloud detections (AWS, Azure, GCP)
Experience with DevOps CI/CD pipelines including Terraform, Atlantis, Ansible, Kubernetes, and Argo
Experience with enterprise Kubernetes deployments, including EKS