Security Engineer - Incident Response

Peloton Peloton · Consumer · Headquarters, NY · Security & Risk

Peloton seeks a Security Engineer specializing in Incident Response to support their Security Program. The role involves researching intelligence data, threat hunting, identifying vulnerabilities and threats, and working with security teams to baseline user behaviors and build detections. Responsibilities include providing triage support for incidents, recommending countermeasures, developing incident response playbooks, and presenting findings to leadership.

What you'd actually do

  1. Directly support Peloton’s Security Program while conducting in-depth research and strategic analysis of intelligence data from various sources to leverage in threat hunting.
  2. Stay up to date with relevant vulnerabilities, threat actors, indicators of compromise (IOCs) tactics, techniques, and procedures (TTPs), and trends, identifying actionable areas of interest and threats.
  3. Provide intel-driven insights into existing and emerging threats, use insights to search Peloton enterprise for activity that is anomalous and/or malicious.
  4. Work with Security Engineering and the Security Operations Center to baseline user behaviors and events as well as build out new detections and response workflows.
  5. Provide triage support for incident response and investigation efforts as part of Peloton’s Security and Operations team and other internal teams.

Skills

Required

  • Cloud Workload protection
  • Cloud Native application protection platform
  • Cloud Security Posture Management
  • Threat modeling
  • OWASP top 10
  • BURP Suite
  • SAST
  • Software Composition Analysis
  • API Security
  • code reviews
  • Kubernetes Security
  • Web Application Firewall (WAF)
  • ELK Stack
  • Splunk

What the JD emphasized

  • Master’s degree (or its foreign degree equivalent) in Computer Science, Informatics, Computer and Information Technology, Engineering (any field), or a related quantitative discipline, and three (3) years of experience in the job offered or in any occupation in related field.