Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Security Engineer - Incident Response

$182.2k - $273.2k
Full-time

F5

At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.

Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.

Position Summary

We are seeking a Principal Incident Response Lead to serve as the dedicated incident command and response program lead within F5’s Office of the CISO. This role coordinates cross-functional response efforts, maintains incident command structure during active events, and ensures consistent communication, documentation, and resolution tracking across F5’s infrastructure, applications, products, and customer-facing environments.

The ideal candidate thrives in fast-paced environments, brings structure to and learning to ambiguity, has exceptional communication skills, and can effectively drive complex incidents from detection through post-incident review. This role will serve as a central driver for security incident response, ensuring effective management of day-to-day incidents as well as large-scale, high-impact cybersecurity events. The Principal Incident Response Lead is a senior individual contributor in F5’s Office of the CISO responsible for advancing incident response strategy, execution, and operational maturity across corporate, cloud, product, and customer-facing environments. This role strengthens cyber resilience for F5 BIG-IP, NGINX, Distributed Cloud, WAAP, API security, DDoS, bot defense, hybrid multicloud, and emerging AI-enabled services.

The role leads high-severity cyber and product security incident response, end-to-end cyber crisis management, response workstream coordination, executive communications, and post-incident improvement. The successful candidate will influence security, product engineering, SRE, cloud operations, legal, privacy, communications, customer support, and business stakeholders to drive timely, coordinated response outcomes.

Key Responsibilities

Incident Response Program Leadership

  • Own F5’s incident response, roadmap, governance, standards, playbooks, severity model, metrics, and executive reporting.
  • Lead end-to-end response for cyber and product security incidents, including preparation, detection, containment, recovery, customer impact assessment, and post-incident learning.
  • Manage cyber crises end to end by defining workstreams, driving decisions, coordinating cross-company stakeholders, and maintaining executive visibility through resolution.

AI Security and Incident Response

  • Build incident response capabilities for AI-enabled applications, models, agents, inference traffic, AI gateways, APIs, and runtime data paths secured or delivered through F5 technologies.
  • Partner with AI engineering, product security, security research, and governance teams on AI incident classification, response procedures, customer notification inputs, and recovery frameworks.
  • Advance AI-assisted security operations, observability, automated triage, and responsible response automation across F5 environments.

Strategic Security Leadership

  • Influence F5 security strategy across incident response, product security, threat intelligence, application security, detection engineering, and resilience.
  • Coordinate security, engineering, SRE, product, legal, compliance, privacy, communications, customer support, and business teams during readiness and response activities.
  • Represent incident response in executive reviews, audits, customer escalations, partner discussions, and board-level conversations.

Operational Excellence

  • Define KPIs and KRIs for response effectiveness, vulnerability readiness, customer-impact reduction, and product security resilience.
  • Lead tabletop exercises, cyber simulations, product security drills, and customer-impact response assessments.
  • Improve MTTD, MTTC, MTTR, observability, fleet visibility, automation, and response orchestration across F5 environments.

Technical Leadership

  • Provide expert guidance on cloud, identity, endpoint, application, API, Kubernetes, WAAP, DDoS, bot defense, AI security, threat hunting, vulnerability response, and digital investigations.
  • Mentor and help guide learning for responders and security engineers through technical leadership, influence, and practical operating guidance.

Qualifications

  • 10+ years of cybersecurity experience, including deep expertise in incident response, security operations, product security, threat hunting, vulnerability response, or investigations.
  • Proven ability to lead enterprise-scale incident response programs in SaaS, cloud, hybrid, multicloud, and customer-facing technology environments.
  • Strong knowledge of modern attack techniques, incident management, executive communications, cross-functional crisis coordination, workstream management, and stakeholder orchestration.
  • Understanding of application delivery and security architectures, including load balancing, reverse proxy, WAF, API security, DDoS protection, bot defense, Kubernetes ingress, and public cloud security.
  • Experience using the following log sources or familiarity, CrowdStrike, Model invocation logs , identity and access, API gateway and application, agent/tool execution, data access and retrieval, cloud and infrastructure, security telemetry, CrowdStrike endpoint detections, EDR process/network events, SIEM alerts, WAF/WAAP events, DLP alerts, vulnerability signals, threat intelligence matches, and network/edge logs.
  • Experience influencing strategy across large organizations without direct authority through partnership; familiarity with NIST, ISO, SOC, PCI, and GDPR requirements preferred.
  • Ability to support global incident response operations from US, including collaboration across EMEA/LATAM / Americas time zones.
  • FedRAMP eligible

Success Measures

Success in the first 12–18 months will be measured by improved response maturity, faster detection, containment, and recovery; stronger product and AI incident readiness; reduced manual effort through automation; improved customer-impact analysis; and clear executive visibility through meaningful metrics and reporting.

Role Details: Principal Individual Contributor; F5 Office of the CISO; focused on incident response, end-to-end cyber crisis management, workstream leadership, AI security response, application/API security, hybrid multicloud resilience, customer trust, and executive engagement.

The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.

The annual base pay for this position is: $182,200.00 - $273,200.00

F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5’s differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.

You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5’s benefits can be found at the following link: . F5 reserves the right to change or terminate any benefit plan without notice.

Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com) .

Equal Employment Opportunity

It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting View email address on aiapply.co.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Principal Security Engineer - Incident Response in Seattle, WA vacancy
  • $175.1k - $236.9k

    AWS Security Incident Response is looking for a Security Manager who combines deep technical expertise in security operations with the leadership...  ...operational excellence for a regional team of security engineers, engage directly with customer security executives during... 
    Suggested
    Flexible hours
    Shift work

    AmazonWebServices

    Seattle, WA
    17 hours ago
  • $175.1k - $236.9k

     ...looking for an experienced security leader to join the Cloud Security...  ...and managing a team of incident managers and technical...  ...will be expected to drive engineering teams to take the right actions...  ...accountability is a must.Key job responsibilities- Build and lead a high-... 
    Suggested
    Remote work
    Flexible hours
    Shift work
    Night shift

    Amazon

    Seattle, WA
    1 day ago
  • $159.3k - $202.4k

    Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers respond to security events, conduct analysis of threats... 
    Suggested
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    17 hours ago
  • $176k - $253k

     ...to execute a function, but to help redefine the future of how work gets done.We are hiring a Senior Security Engineer, dedicated to Product Security Incident Response. In this role, you will lead and architect Snowflake's product-integrated Incident Response strategy,... 
    Suggested

    Snowflake

    Bellevue, WA
    3 days ago
  • $159.3k - $202.4k

    Do you want to work on planetary scale incident response solutions in the cloud? Are you skilled at performing Security Incident Response activities and helping customers...  ...scale.We are looking for an experienced security engineer with an ability to scale security and make... 
    Suggested
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    1 day ago
  • $168.2k - $310.1k

     ...seeking a highly skilled and experienced Staff Cyber Incident Responder. This senior role is pivotal in our incident response efforts, providing skilled forensic analysis...  ..., MacOS, and Windows operating systems. Cloud Security: Extensive experience in administering,... 
    Full time
    Temporary work
    Local area
    Worldwide

    Adobe Systems

    Seattle, WA
    3 days ago
  • $168.75k - $270k

     ...you matter.Job Description - Principal Security Operations EngineerOur...  ...PrincipalSecurity Operations Engineer, you will play a key role in...  ...security and infrastructure incidents, driving root cause...  ...systems and lead technical response to high-impact security, infrastructure... 
    Work experience placement
    Work at office

    Axon

    Seattle, WA
    1 day ago
  • $122.5k - $165k

     ...everyone is a stakeholder.What you’ll be responsible for:The Circle Security Team works to protect Circle; our...  ...occasional night time and weekend incident. We would also like someone with a...  ...detection, response, or security engineering.Experience working security incidents... 
    Work experience placement
    Flexible hours
    Shift work
    Night shift

    Circle

    Seattle, WA
    4 days ago
  • As a Principal Security Engineer at JPMorganChase within the Cybersecurity and Technology Controls organization, you lead at least one technical...  ...distributed organization of approximately 20 engineers responsible for building and operating security platforms at enterprise... 

    JP Morgan Chase

    Seattle, WA
    2 days ago
  • $159.3k - $202.4k

    The AWS Cloud Security Response team operates on the ‘AWS’ side of the Shared...  ...of AWS Cloud services. Our engineers independently investigate...  ..., software security, and incident response. - Communicate...  ...IAM policies, roles, service principals, and access control mechanisms... 
    Internship
    Flexible hours
    Shift work

    Amazon

    Seattle, WA
    1 day ago
  • $139k - $204k

     ...infrastructure — and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our most critical incidents, hunt adversaries before they surface, and...  ...to stay left of boom Work alongside security partners who hold a high bar and expect you to... 
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Bellevue, WA
    12 days ago
  • $143.3k

     ...Sr. Security Engineer, AWS Cloud Security Response Join to apply for the Sr. Security Engineer, AWS Cloud Security Response role at Amazon Web Services...  ..., software security, security operations, incident response, and emergent security intelligence. possess... 
    Full time
    Flexible hours
    Shift work
    Day shift

    Amazon Web Services (AWS)

    Seattle, WA
    22 hours ago
  • $143.7k - $194.4k

     ...obsession is part of our company DNA. Our Software Development Engineers (SDEs) use industry-leading technology to solve complex...  ...and get to see the impact of their work first-hand.Key job responsibilities• Collaborate with experienced cross-disciplinary Amazonians... 
    Internship
    Flexible hours

    AmazonWebServices

    Seattle, WA
    2 days ago
  • $175.1k - $236.9k

    At Amazon Healthcare Security (HealthSec), we are on a mission to make...  ...Manager to lead a security engineering team. As a Security Engineering Manager, your responsibility is to lead a team that...  ...modeling, secure design, and incident response for large-scale distributed... 
    Temporary work
    Flexible hours

    Amazon

    Seattle, WA
    2 days ago
  • $143.7k - $194.4k

    Join us in developing and scaling security solutions that protect Amazon's global operations...  .... As a Security Software Development Engineer, you'll create innovative automations...  ...of AWS and for our customers.Key job responsibilities• Drive operational excellence by designing... 
    Internship
    Worldwide
    Flexible hours

    Amazon

    Seattle, WA
    17 hours ago
  • Fox Rothschild in Seattle is seeking a Senior Analyst for their Cybersecurity Operations & Response program. The successful candidate will support security operations and incident response activities, ensuring systems and data protection from cyber threats. This role... 

    Fox Rothschild

    Seattle, WA
    2 days ago
  • $184.5k - $289.05k

     ...cybersecurity, including 5+ years in principal or lead architecture roles. We need strong expertise in cloud security architecture, particularly across AWS...  ...concepts clearly to both executives and engineers. Responsibilities: We will rely on you to define and... 
    Full time
    Work at office
    Local area
    Work from home
    Flexible hours

    Atlassian Inc.

    Seattle, WA
    7 days ago
  • $136k - $184k

     ...globe’s largest AWS deployment.As a Security Engineer, you will collaborate with software development...  ..., have fun, and make history!Key job responsibilities- Creating, updating, and maintaining...  ...code reviews, security testing, incident response, or security... 
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $178.4k - $226.7k

    The Ads Security organization at Amazon is dedicated to creating innovative technical solutions...  ...are seeking a talented Senior Security Engineer to join our team, where you will have...  ...system design, vulnerability analysis, incident response, and defensive architecture. You... 
    Flexible hours

    Amazon

    Bellevue, WA
    1 day ago
  • $159.3k - $202.4k

    We're looking for a Security Engineer to join the team that secures the foundational compute...  ...up as the industry transforms.Key job responsibilities- Design, build, and maintain...  ...on-call rotations to support security incidents- Leverage AI tools and techniques to... 
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $136k - $184k

    As a Product Security Engineer at Amazon Payments Security, you'll be at the forefront of protecting...  ...to ensure appropriate coverage and response capability.* Evaluate impact of current...  ...frameworks, identity and access controls, incident response, mobile security, cloud... 
    Temporary work
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $159.3k - $202.4k

    Amazon Healthcare Security's (HealthSec) Detections & Monitoring team is hiring a Security Engineer II to design, build, and operate detection...  ...automated investigation and response workflows, and extending...  ...teams, peer security teams, and incident responders, you will ensure... 
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $159.3k - $202.4k

     ...about delivering innovative security solutions and protecting millions...  ...and results-driven Security Engineer to help shape how Amazon...  ...security at Amazon.Key job responsibilities• Design, build, and maintain...  ...identity and access controls, incident response, mobile security,... 
    Flexible hours

    Amazon

    Seattle, WA
    1 day ago
  • $200k - $260k

     ...We are looking for a seasoned Engineering Manager to lead Aircall's Security Engineering organisation. This is...  ...Infrastructure Security, Detection & Response, and Governance, Risk & Compliance...  ...and investigation workflows. Own incident response: develop and test the IR... 
    Worldwide

    Aircall.io, Inc.

    Seattle, WA
    7 days ago
  • $134.5k - $265.1k

     ...confidence, and proactively manage to secure success.Recruiting for this...  .../31/2026.Work you'll doAs an Engineering Manager II on the Deloitte Cyber team, you will be responsible for:Leading the design and...  ...access-related issues and incidents efficiently.Integrate... 
    Local area
    Visa sponsorship

    Deloitte

    Seattle, WA
    1 day ago
  • $160k - $200k

    Principal Cybersecurity Engineer & Security AuditorLocation: Lynnwood, WA -mainly remote. We are open to hiring...  ...compliance and risk management responsibilities driving security architecture, executing...  ...exercises.Investigate security incidents and lead forensic analysis and... 
    Remote work

    CyberCoders

    Seattle, WA
    1 day ago
  • $208.3k - $281.8k

    We are looking for a Sr. Security Engineering Manager to lead a team of security engineers, developers, and technical program managers. Successful...  ...will improve healthcare outcomes for customers. Key job responsibilities- Own the security architecture for products that will... 
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $125.5k

     ...Security Engineer, Customer Logistics Security Join to apply for the Security Engineer, Customer...  .... In this role, you will be responsible for performing security reviews and assessments...  ...00 21 hours ago Security Engineer, Incident Response , CorpSec Seattle, WA $125... 
    Full time
    Currently hiring
    Worldwide
    Flexible hours

    Amazon

    Seattle, WA
    22 hours ago
  • $177.69k - $341.73k

    Senior Security Engineer - Application/Product Security Get AI-powered advice on this job and more exclusive features. Responsibilities Team Introduction: The team is missioned to build infrastructures...  ...new threat scenarios, support incident response, forensics, remediation... 
    Full time
    Temporary work
    Local area

    Tik Tok

    Seattle, WA
    2 days ago
  • $168k - $210k

     ...sending money globally, providing secure, simple, and reliable ways to...  ...About the Role As a Security Engineer on Remitly's Corporate...  ...Partnering with IT, Detection & Response, Infrastructure Security and...  ...integrations before they become incidents.Drive operational... 
    Full time
    Work at office
    Worldwide
    3 days per week

    Remitly

    Seattle, WA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Security Engineer - Incident Response. Be the first to apply!