Incident Response Security Engineer

ClickHouse ClickHouse · Data AI · Security

This role focuses on developing processes, tooling, and automation for incident management response and risk mitigation within a security team. It involves collaborating with various functions to identify detection use cases, applying threat modeling, maintaining a security logging platform, and staying updated on threats. The role requires experience in product security, red teaming, penetration testing, threat modeling, and incident detection/response, with strong cloud infrastructure and automation skills (Golang, Python).

What you'd actually do

  1. Develop processes, tooling and automation to scale incident management response and mitigate risks to the business
  2. Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation
  3. Apply a threat modeling centric approach to incident detection and response
  4. Maintain security logging platform
  5. Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management
  6. Handle information security events and incidents across the ClickHouse products and services

Skills

Required

  • product security
  • red teaming
  • penetration testing
  • threat modeling
  • incident detection and response
  • cloud service providers (AWS, GCP, Azure)
  • development and automation
  • Golang
  • Python

Nice to have

  • BS, MS, or PhD in Computer Science or related field
  • Previous contributions to open source projects
  • Security or cloud related certifications (AWS, GCP, Azure)

What the JD emphasized

  • incident management response
  • detection use cases
  • threat modeling
  • incident detection and response
  • security logging platform
  • latest threats
  • attack vectors
  • information security events and incidents