Senior Security Engineer, Incident Response
Twilio- Compensation
- $142k–$208k Published range
- Location
- Remote - US (not eligible in CA, CT, NJ, NY, PA, WA) Remote eligibility
- Employment
- Full-time Senior
About the job
About the role
Twilio's Security Incident Response Team (SIRT) is seeking a Senior Security Engineer to lead technical response to security events and incidents across Twilio's global infrastructure, services, and applications. The role involves triage, containment, remediation, and post-incident improvements, working with R&D Engineering and Business teams to develop scalable processes and technical solutions.
Responsibilities
- Lead and support response to all security events and incidents across Twilio's complex global infrastructure, services, and applications.
- Document incidents and projects, crafting best practices as runbooks and standard operating procedures.
- Work cross-collaboratively to understand and solve challenges related to a broad spectrum of threat actors and activity.
- Improve Twilio's security and reliability posture by driving identified betterments from security events and incidents.
- Rapidly acquire new technical skills and knowledge in a fast-paced, highly disruptive industry environment.
- Own the security incident lifecycle, respond to incidents, participate in on-call rotation, and participate in RCAs for security incidents.
- Build and maintain positive relationships with internal customers to identify and facilitate solutions.
- Provide mentorship, support, and care for the team to enable long-term career development and success.
Qualifications
Required
- 5+ years of security incident response in a production-cloud environment.
- Subject-matter expert on security issues and technologies.
- Ability to utilize AI for comprehensive, complex security incident response activities delivering high fidelity detections.
- Advanced knowledge of service-oriented architectures and experience with security tools and technologies fit for a cloud environment.
- Experience working across a technology stack on difficult security challenges and initiatives.
- Experience with SIEM platforms and the ability to extend their functionality.
- Experience with SOAR tools and automating manual security processes.
- Experience in either AWS, GCP, or other large cloud platform.
- Excellent written and verbal communication skills.
- Ability to influence and build effective working relationships with every level of the organization.
Desired
- AI Model Security & Posture Management: Support implementation of controls and safeguards to prevent AI vulnerabilities, such as prompt injections, model evasion, and data poisoning.
- AI-Driven Threat Response: Utilize GenAI and LLM-based security use cases to rapidly interpret alerts, reduce false positives, and contextualize threat data.
- Artifact & Evidence Triage: Collect intrusion artifacts and forensically sound images to analyze malware, trojans, and source code.
- Threat Intelligence Integration: Monitor external vendor data and threat intelligence to analyze trends and proactively defend against emerging risks.
Compensation & Benefits
Estimated pay ranges for candidates in certain locations: $141,520 - $176,900 for Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont, or Washington D.C.; $149,840 - $187,300 for New York, New Jersey, Washington State, or California (outside SF Bay Area); $166,400 - $208,000 for San Francisco Bay Area, California. This role may be eligible for Twilio's equity plan and corporate bonus plan. All roles generally eligible for health care insurance, 401(k) retirement account, paid sick time, paid personal time off, and paid parental leave.
Application Instructions
Apply via the provided Greenhouse link. Applications intended to be accepted until 30th of Sept, but may change based on business needs.
Skills & tags
Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.