# Senior Security Engineer, Security Incident Response Team - EMEA

**Company:** [GitLab](https://hotfix.jobs/companies/gitlab)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 5+ years
**Skills:** Digital Forensics And Incident Response, SIEM, Edr, Detection Engineering, AWS, GCP, Mitre Att&Ck, Python, Soar, Threat Intelligence, GitLab, AI/ML, Security Automation, Telemetry Pipelines
**Posted:** 2026-08-26

> Leads high-severity security investigations and end-to-end incident response for GitLab’s cloud and corporate environments. The role focuses on DFIR, detection engineering, automation, AI-assisted workflows, executive communication, and improving operational maturity within a global 24/7 team.

## Job Description

## Responsibilities
- Lead and coordinate end-to-end incident response for high-severity security events within a 24/7 global on-call model during EMEA business hours.
- Prepare clear executive communications during incidents.
- Investigate complex security incidents across cloud environments using Digital Forensics and Incident Response (DFIR) methodologies.
- Partner with Signals Engineering to design and implement detection capabilities, including SIEM use cases, alerting strategies, and telemetry pipelines.
- Build and enhance automation and AI-assisted workflows to improve triage, investigation speed, and response consistency.
- Partner with Threat Intelligence to contextualize threats and improve detection coverage.
- Conduct root cause analysis and lead post-incident reviews to drive continuous improvement and risk reduction.
- Develop and maintain runbooks, playbooks, and operational documentation.
- Collaborate with Engineering, Infrastructure, Legal, Product, and Communications during incidents.
- Lead proactive initiatives such as tabletop exercises.
- Mentor other engineers and help improve the team’s incident response maturity.

## Requirements
- Strong experience in security incident response and investigations in cloud-first environments.
- Experience using or administering Git or GitLab in a security or engineering context.
- Hands-on experience with SIEM, EDR, and/or detection engineering.
- Experience with AWS and Google Cloud.
- Familiarity with threat intelligence and adversary tactics, including MITRE ATT&CK.
- Experience building or working with automation, such as Python, scripting, or SOAR platforms.
- Interest or experience applying AI/ML or data-driven techniques to detection, triage, or response workflows.
- Strong analytical and problem-solving skills, with the ability to operate effectively during high-severity incidents.
- Excellent written communication skills and a commitment to clear, actionable documentation.
- Growth mindset and a proactive approach to identifying and mitigating security risks.

## Compensation and Benefits
- Benefits supporting health, finances, and well-being.
- Flexible paid time off.
- Team member resource groups.
- Equity compensation and employee stock purchase plan.
- Growth and development fund.
- Parental leave.

## Similar jobs

- [Senior Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e6f5289c-9cb8-4a13-b321-e0ecc9a54c96) - Docker - Remote - €119k – €170k/yr
- [Senior Information Security Manager](https://hotfix.jobs/jobs/ccc96673-5cad-40d0-a14b-bc1844e083a6) - Viz.ai - Tel Aviv, Israel
- [Security Engineer, Detection and Response](https://hotfix.jobs/jobs/02ff0cde-e8e1-4f38-9c48-d8149d22a95b) - Writer - London, United Kingdom
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Research & Engineering](https://hotfix.jobs/jobs/f9156020-d99c-45aa-8dba-fcd0035e45b4) - Trail of Bits - Remote

**Apply:** https://hotfix.jobs/jobs/33cbe57c-bb91-44ff-8901-3cde1ac976a7
**Canonical:** https://hotfix.jobs/jobs/33cbe57c-bb91-44ff-8901-3cde1ac976a7