# Senior Response Engineer - CMDC

**Company:** [Cloudflare](https://hotfix.jobs/companies/cloudflare)
**Location:** London, United Kingdom
**Role:** Security Engineering
**Experience:** 8+ years
**Skills:** BGP, Gre, TCP/IP, Udp, Icmp, Ddos Mitigation, Python, Go, Bash, AI/ML, LLM APIs, Prometheus, Grafana, Ipsec
**Posted:** 2026-09-10

> Leads advanced network security incident response for sophisticated DDoS attacks, routing anomalies, and infrastructure threats. The role requires 8+ years of relevant experience, expert BGP and GRE knowledge, detection engineering skills, and automation experience with Python, Go, Bash, or AI tooling.

## Job Description

## Responsibilities
- Act as a subject matter expert for complex network security incidents, including large-scale volumetric and protocol-based DDoS attacks.
- Lead incident response and validate network mitigation rules for stable traffic delivery through BGP and GRE mechanisms.
- Investigate DDoS vectors, BGP routing anomalies, GRE encapsulation issues, and novel network attack patterns using telemetry and flow data.
- Design, deploy, and tune network attack detection logic, security controls, alerting thresholds, and mitigation strategies.
- Implement defenses directly at the network edge for mission-critical traffic while minimizing false positives.
- Provide technical guidance to customer network teams during critical incidents and translate routing and attack-flow data into architectural recommendations.
- Design Managed Defense workflows and AI-assisted troubleshooting playbooks, particularly for BGP and GRE issues.
- Partner with Product, Engineering, and AI teams to develop automated network defenses and dynamic mitigation models.
- Mentor team members on advanced traffic analysis, incident response, and network security practices.

## Requirements
- 8+ years of hands-on experience in DDoS mitigation, network security operations, or highly technical infrastructure incident response.
- Expert knowledge of BGP, GRE reinjection, and TCP/IP, UDP, and ICMP traffic flows.
- Experience identifying network attacks and designing mitigation strategies for volumetric DDoS, TCP/UDP attacks, and protocol exhaustion.
- Expertise in detection engineering and continuous tuning of network security rules and alerts.
- Proficiency in Python, Go, or Bash for automating network security workflows.
- Experience with AI/ML models or LLM APIs for troubleshooting diagnostics or dynamic threat mitigation.
- Experience with monitoring platforms and querying large network datasets.

## Nice-to-haves
- Experience with Prometheus and Grafana.
- Cisco CCNP, CCNP Security, or CCIE certification.
- Working knowledge of CDN technology and Web Application Firewalls.
- Experience with Cloudflare Magic Transit, Magic Network Monitoring, Advanced TCP/UDP Protection, DDoS mitigation rulesets, firewall configuration, Spectrum, DNS Firewall, GRE, IPsec, and CNI.

## Compensation and Benefits
- Applicants who reach the offer stage may be asked to attend an in-person interview at a Cloudflare office or hub.
- Employment may be conditioned on access eligibility for information protected under U.S. export control laws.

## Similar jobs

- [Senior Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e6f5289c-9cb8-4a13-b321-e0ecc9a54c96) - Docker - Remote - €119k – €170k/yr
- [Security Engineer, Detection and Response](https://hotfix.jobs/jobs/02ff0cde-e8e1-4f38-9c48-d8149d22a95b) - Writer - London, United Kingdom
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Research & Engineering](https://hotfix.jobs/jobs/f9156020-d99c-45aa-8dba-fcd0035e45b4) - Trail of Bits - Remote
- [Senior Security Engineer, Security Incident Response Team - EMEA](https://hotfix.jobs/jobs/33cbe57c-bb91-44ff-8901-3cde1ac976a7) - GitLab - Remote

**Apply:** https://hotfix.jobs/jobs/43d74ebb-7119-4ca8-86b5-b7fdb30d769b
**Canonical:** https://hotfix.jobs/jobs/43d74ebb-7119-4ca8-86b5-b7fdb30d769b