# Security Engineer, Incident Response

**Company:** [Twilio](https://hotfix.jobs/companies/twilio)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 3+ years
**Skills:** Incident Response, Cloud Security, AWS, GCP, SIEM, Soar, Security Automation, Service-Oriented Architecture, Generative AI, LLMs, Threat Intelligence, Malware Analysis
**Posted:** 2026-08-13

> Leads technical response to security events across cloud infrastructure, services, and applications, covering triage, containment, remediation, automation, and post-incident improvements. Requires 3+ years of cloud security incident response experience and expertise with SIEM, SOAR, and major cloud platforms.

## Job Description

## Responsibilities
- Lead and support responses to security events and incidents across global infrastructure, services, and applications.
- Document incidents and projects; create runbooks and standard operating procedures.
- Collaborate across teams to address threats and security challenges.
- Drive improvements identified from security events and incidents.
- Own the security incident lifecycle, participate in on-call rotations, and conduct root-cause analyses.
- Build relationships with internal customers to facilitate solutions and increase team impact.
- Provide mentorship and support that enable team development and success.

## Requirements
- 3+ years of security incident response experience in a production cloud environment.
- Subject-matter expertise in security issues and technologies.
- Ability to use AI for complex security incident response and high-fidelity detections.
- Advanced knowledge of service-oriented architectures and cloud security tools and technologies.
- Experience addressing difficult security challenges across a technology stack.
- Experience with SIEM platforms and extending their functionality.
- Experience with SOAR tools and automating manual security processes.
- Experience with AWS, Google Cloud, or another large cloud platform.
- Excellent written and verbal communication skills.
- Ability to influence and build effective relationships across organizational levels.

## Nice to haves
- AI model security and posture management, including safeguards against prompt injection, model evasion, and data poisoning.
- AI-driven threat response using generative AI and large language models.
- Artifact and evidence triage, including malware, trojan, and source-code analysis.
- Threat intelligence integration and analysis.

## Compensation and benefits
- Competitive pay.
- Generous time off.
- Parental and wellness leave.
- Healthcare.
- Retirement savings program.
- Benefits vary by location.

Occasional travel may be required for project or team meetings.

## Similar jobs

- [Security Engineer, Application Security](https://hotfix.jobs/jobs/8c8a3f77-9f1b-45b4-b825-819dd30e2fb0) - Writer - London, United Kingdom
- [Abuse Investigator](https://hotfix.jobs/jobs/067a3725-8094-47e5-a3a6-ac821e7253c6) - Stripe - Dublin, Ireland
- [Abuse Investigator](https://hotfix.jobs/jobs/ba670c7e-d48c-495b-8f3e-648393a93ed7) - Stripe - Seattle, WA
- [Platform Security Engineer](https://hotfix.jobs/jobs/e556dd76-0f95-4dfa-9d3d-e476f24057c0) - Supabase - Remote
- [Threat Intelligence Specialist – EMEA](https://hotfix.jobs/jobs/ba41592f-9f18-4e57-a7c7-144744386565) - Kodex - Remote

**Apply:** https://hotfix.jobs/jobs/83eb71b2-95d7-4319-85af-294442d49213
**Canonical:** https://hotfix.jobs/jobs/83eb71b2-95d7-4319-85af-294442d49213