Senior Security Engineer, Security Incident Response Team (sirt)

Datadog Datadog · Enterprise · New York, NY · Security

Senior Security Engineer role focused on incident response, threat hunting, and building security tools within Datadog's Security Incident Response Team (SIRT). The role involves partnering with threat intelligence and detection engineering, triaging alerts, responding to incidents, and improving security posture through post-incident reviews and exercises. Requires experience in operational security domains, cloud platforms, and building IR tools with Python or Go.

What you'd actually do

  1. Partner with our Cyber Threat Intelligence and Detection Engineering teams to identify threats to Datadog and ensure we have appropriate, accurate, high-signal detections for those threats.
  2. Triage escalated alerts to determine whether a security incident is occurring or may occur imminently.
  3. Respond to security incidents, whether as an incident commander or as an incident responder
  4. Make us more efficient through building tools and automations that eliminate repetitive processes
  5. Help us improve our overall security posture through post-incident reviews, tabletop and purple team exercises, and process/runbook improvements.

Skills

Required

  • security incident response
  • threat hunting
  • security operations
  • cloud security
  • AWS, GCP, or Azure
  • Kubernetes, Docker, or Terraform
  • cloud-native threat actor TTPs
  • Python
  • Go

Nice to have

  • forensic use cases

What the JD emphasized

  • at least 5 years of experience in security incident response, threat hunting, security operations, cloud security, or other operational security domains
  • experience building and supporting tools for incident response and forensic use cases using Python, Go, or similar programming languages