Sr. Psirt Responder

DocuSign DocuSign · Enterprise · Dublin, Ireland · Security

This role is for a Sr. PSIRT Responder at DocuSign, focused on leading the response to product security incidents and vulnerabilities. The responsibilities include investigating, analyzing, and coordinating the resolution of security issues, communicating with stakeholders, and developing incident response processes. The role requires experience in security incident response, application and cloud-based attacks, and familiarity with cybersecurity frameworks and scoring systems. While AI security concepts are mentioned as a preferred exposure, the core of the role is product security incident response, not AI/ML development.

What you'd actually do

  1. Drive success of the company’s security objectives by leading the response to product security incidents and vulnerabilities
  2. Investigate, analyze, and coordinate resolution of product security issues in collaboration with engineering, product, legal, and customer support teams
  3. Ensure timely, compliant, and effective incident management, from initial triage through remediation and closure
  4. Communicate professionally and responsibly with customers and stakeholders throughout the incident lifecycle
  5. Develop and maintain incident response processes, playbooks, and documentation to support continuous improvement

Skills

Required

  • 8+ years of hands-on experience in managing and responding to security incidents, including triage, analysis, containment, and remediation
  • Experience with Application and Cloud-based attacks, and frameworks like the OWASP Top 10 and OWASP Cloud Top 10
  • Experience with cybersecurity principles, incident response lifecycles, and security best practices
  • Experience with CVSS (Common Vulnerability Scoring System) for rating vulnerabilities, MITRE ATT&CK for adversary tactics and techniques, and CWE (Common Weakness Enumeration) for identifying and categorizing software weaknesses
  • Experience with customer-facing communication and bug bounty programs

Nice to have

  • Strong analytical and problem-solving skills, with a keen eye for detail
  • Excellent written and verbal communication skills, with the ability to explain technical concepts clearly
  • Ability to work effectively as part of a team and independently under pressure
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Industry certifications such as CompTIA Security+, CySA+, GCIH, GCFA, or CEH
  • Exposure to cloud security concepts (AWS, Azure, GCP)
  • Exposure to AI security concepts

What the JD emphasized

  • leading the response to product security incidents
  • investigate, contain, and remediate vulnerabilities and threats
  • customer-facing communication
  • bug bounty programs