Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Incident Commander

$180k

Uber

About the Role

As a Senior Security Technologist, Incident Command, you are accountable for leading Uber’s most critical, complex, and high-impact security incidents end-to-end - from escalation to containment, recovery, and systemic remediation.

You operate at the intersection of Fire Captain, NTSB Investigator, and hands-on technical practitioner. In the moment, you take command - setting strategy, assigning resources, and making high-consequence decisions under pressure. After the smoke clears, you drive deep technical investigation and post-incident analysis to ensure we understand not just what happened, but why it happened, and that meaningful, durable fixes are made.

This is not a passive coordination role. You are expected to be technically credible, decisive in ambiguity, and comfortable owning outcomes when there is no playbook. You will shape how Uber responds to security incidents at scale - raising the technical bar, building and modernizing tooling and workflows, and influencing teams beyond Engineering Security.

What the Candidate Will Need / Bonus Points

---- What the Candidate Will Do ----

  1. Command the highest severity and most complex security incidents across Uber and its subsidiaries, serving as the single accountable leader during active response.
  2. Participate in an on-call rotation where you are expected to make real-time decisions with incomplete information, balancing speed, risk, and impact.
  3. Act as the incident authority, not just a facilitator - forming hypotheses, setting strategy, and directing investigative focus.
  4. Transition seamlessly between executive-level incident leadership and hands-on technical investigation, including log analysis, system interrogation, and root cause validation.
  5. Serve as the primary interface to senior leadership during critical incidents, translating evolving technical realities into clear risk, impact, and decision frameworks.
  6. Build and maintain strong working relationships with global engineering, infrastructure, legal, privacy, and operations teams to enable fast, coordinated response.
  7. Conduct rigorous post-incident analysis in the spirit of an NTSB investigation - focused on systemic causes, contributing factors, and concrete prevention.
  8. Mentor and develop other responders and incident leaders, raising the organization’s ability to handle complex, time-critical security events.
  9. Lead and materially contribute to initiatives that mature Uber’s incident response program, including:
  10. High-fidelity incident simulations and technical tabletop exercises
  11. Threat-informed response planning and scenario development
  12. ‘Left of boom’ threat modeling to prevent incidents before they occur
  13. Improvements to detection, containment, and response automation
  14. Adoption of new investigative techniques and tooling, including AI-assisted workflows

---- Basic Qualifications ----

  1. 5+ years in security operations, detection, or incident response roles at scale, with demonstrated ownership of ambiguous, large, complex, high-impact incidents.
  2. Deep familiarity with modern attacker TTPs and how they manifest across logs, systems, networks, endpoints, and applications.
  3. Strong technical investigation skills - comfortable working directly with logs, telemetry, and raw system data to validate hypotheses and determine root cause.
  4. Experience briefing executives during active incidents, with the ability to clearly explain tradeoffs, risks, and recommended actions.
  5. Experience designing or running technical incident simulations (tabletops, purple team exercises, or similar) that stress real-world response capabilities.
  6. Experience building or leveraging AI-driven tooling to improve incident response posture, applying frontier technology to workflows such as triage, investigation, correlation, or decision support.

---- Preferred Qualifications ----

  1. Demonstrated experience leading other responders through direct command during incidents and longer-term technical mentorship.
  2. Strong bias for action and continuous improvement - uncomfortable with leaving with a shrug if things aren’t right.
  3. Experience responding to incidents in highly distributed, cloud-scale environments where blast radius and coordination complexity are significant.
  4. Broad security domain knowledge (infrastructure, endpoint, product, identity, data) and the ability to reason across them during incidents.
  5. Ability to script or code (Python, Go, or similar) to automate response tasks, prototype tooling, or close operational gaps.

For San Francisco, CA-based roles: The base salary range for this role is USD$180,000 per year - USD$200,000 per year.

For Seattle, WA-based roles: The base salary range for this role is USD$180,000 per year - USD$200,000 per year.

For Sunnyvale, CA-based roles: The base salary range for this role is USD$180,000 per year - USD$200,000 per year.

For all US locations, you will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits. More details can be found at the following link .

Uber's mission is to reimagine the way the world moves for the better. Here, bold ideas create real-world impact, challenges drive growth, and speed fuels progress. What moves us, moves the world - let's move it forward, together.

Uber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form .

Offices continue to be central to collaboration and Uber's cultural identity. Unless formally approved to work fully remotely, Uber expects employees to spend at least half of their work time in their assigned office. For certain roles, such as those based at green-light hubs, employees are expected to be in-office for 100% of their time. Please speak with your recruiter to better understand in-office expectations for this role.

Vacancy posted 14 days ago
Similar jobs that could be interesting for youBased on the Senior Security Incident Commander in Seattle, WA vacancy
  • A defense technology firm in Seattle is seeking a Security Operations Analyst to monitor and respond to adversarial activity. As a Senior Analyst, you will lead incident responses, conduct threat hunting, and collaborate with cross-functional teams to optimize security... 
    Senior

    Anduril Industries

    Seattle, WA
    5 days ago
  • An established industry player is seeking a skilled Security Operations Center (SOC) Analyst to join their dynamic team. This role requires...  ...skills. You will be responsible for analyzing security incidents, creating automations for security operations tools, and ensuring... 
    Senior

    TechDigital Group

    Bellevue, WA
    2 days ago
  • A leading technology firm in Seattle is seeking a Security Analyst III to perform advanced security investigations across various domains...  ...candidate will analyze security signals, respond to incidents, and improve security processes. Qualifications include a Bachelor... 
    Senior

    PowerToFly

    Seattle, WA
    2 days ago
  • A leading financial services firm is looking for a Senior Security Operations Engineer in Seattle. You will work cross-functionally to respond to security incidents and enhance Brex's security capabilities. The role demands strong skills in security incident response, familiarity... 
    Senior
    Work at office
    Remote work

    Brex Inc.

    Seattle, WA
    1 day ago
  • $168k - $280k

     ...productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital...  ...GitLab. An overview of this role We’re looking for a senior manager to lead the GitLab security incident response team (SIRT) in the Americas region. GitLab... 
    Senior
    Remote work
    Home office
    Flexible hours
    Shift work
    Night shift
    Weekend work

    GrabJobs

    Seattle, WA
    3 days ago
  • $165.2k - $337.3k

    The Challenge As the manager of the Adobe Incident Response team, you will be at the...  ...strategies, and have a significant impact on our security posture. What You Will Do Strategic...  ...Executive Leadership: Regularly update Adobe’s senior leaders on the status of major incidents... 
    Senior
    Full time
    Temporary work
    Local area
    Worldwide

    Adobe

    Seattle, WA
    21 hours ago
  • A global technology company is seeking a candidate to join its Incident Response Services team in Bellevue, WA. The successful applicant will manage tooling around incident lifecycle automation, evaluating logging stacks, and enhancing internal developer portals. Key qualifications... 
    Senior

    The Trade Desk, Inc.

    Bellevue, WA
    5 days ago
  • $229k - $314.8k

     ...Bay Area or Seattle/Bellevue. U.S. citizenship is required. Databricks is seeking an exceptional and strategic Sr. Staff Security Engineer, Incident Response to join our Incident Response team. This pivotal role will provide decisions that have a direct impact on the long... 
    Senior
    For contractors
    Remote work
    Worldwide

    Databricks

    Seattle, WA
    1 day ago
  • $100k - $130k

    OCT Consulting, LLC is seeking a Senior Security Operations Analyst to support federal clients in Washington, DC. This role focuses on security monitoring, incident response, and cybersecurity program implementation. The ideal candidate must have six years of security operations... 
    Senior

    OCT Consulting, LLC

    Seattle, WA
    5 days ago
  • A global cybersecurity consultancy is looking for a Senior Cybersecurity Analyst (SOC) to lead their SOC services. This role involves incident response, threat detection, and mentoring junior analysts within a hybrid working environment. Candidates should possess substantial... 
    Senior
    Remote job

    S-RM Intelligence and Risk Consulting

    Seattle, WA
    4 days ago
  •  ...vehicle manufacturer in Renton, WA is seeking a highly skilled Security Operations Domain Administrator to manage and optimize Microsoft...  ...and Active Directory environments. The role involves security incident response, complex infrastructure management, and mentoring team... 
    Senior

    PACCAR

    Renton, WA
    2 days ago
  • A healthcare organization is looking for a senior cybersecurity professional to manage and enhance the security of data and systems. This role requires overseeing threat monitoring, coordinating responses to incidents, and collaborating with various teams to improve security... 
    Senior

    Kaiser Permanente

    Renton, WA
    3 days ago
  • A leading cybersecurity firm is seeking a Senior Security Engineer specialized in Detection and Response to develop and implement AI-driven...  ...This role involves building detection capabilities, leading incident responses, and enhancing cloud security measures. Ideal candidates... 
    Senior
    Remote work
    Flexible hours

    HackerOne Inc.

    Seattle, WA
    2 days ago
  • $177.5k - $233k

     ...is hiring a Staff Cybersecurity Analyst to enhance operations in incident response and threat intelligence. The ideal candidate will have a Bachelor's degree in a related field and 9-12 years of security operation experience. Responsibilities include leading cybersecurity... 
    Senior

    lululemon

    Seattle, WA
    2 days ago
  • $87.7k - $164k

    Ernst & Young Oman is seeking a Cyber Triage and Forensics Incident Analyst in Seattle. This role involves investigating security incidents, performing digital forensic analyses, and supporting remediation efforts. The ideal candidate will have over 5 years of experience... 
    Senior
    Flexible hours

    Ernst & Young Oman

    Seattle, WA
    4 days ago
  •  ...'s no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment...  ...to own and drive the resolution of complex security incidents, policy questions and technical security issues. Google Cloud... 
    Senior

    Google Inc.

    Kirkland, WA
    5 days ago
  •  ...Senior Security Analyst Who we are We are an innovative performance apparel company for yoga, running, training, and other...  ...Security Operations Center (SOC) duties, which include incident response, malware analysis, and monitoring. This role will work... 
    Senior

    Procyon TS

    Seattle, WA
    1 day ago
  • $166k - $220k

     ...Senior Security Operations Analyst Seattle, Washington, United States Anduril Industries...  ...thousands of data streams into a realtime, 3D command and control center. As the world enters...  ...SecOps Analyst, you will serve as an incident commander alongside other senior... 
    Senior
    Full time
    Work experience placement

    anduril

    Seattle, WA
    3 days ago
  •  ...Senior Or Mid-Level Systems And Data Analyst Boeing Information Digital Technology & Security (IDT&S) is seeking a senior or mid-level systems and data analyst to support the...  ...troubleshooting and root cause analysis for incidents affecting applications and integrations;... 
    Senior
    Flexible hours
    Afternoon shift
    Early shift

    Boeing

    Seattle, WA
    2 days ago
  • $185k - $210k

    The Opportunity We are seeking an experienced Cloud Security Engineer to join our team. The successful candidate will be responsible...  ...security logs and investigate security alerts Respond to security incidents and develop incident response plans Ensure cloud compliance... 
    Senior

    Cacheflow

    Seattle, WA
    2 days ago
  •  ...Amsterdam. The mission of Plaid's Product Security Team is "Improve our customer's trust by...  ...the ecosystem, and preventing security incidents." The Product Security team is...  ...and non-technical audiences, including senior leadership. ~ Expertise in conducting... 
    Senior
    Work experience placement
    Local area

    Plaid

    Seattle, WA
    4 days ago
  • $40 - $100 per hour

     ...Senior Incident Management Advisor There's no pledge more important than the one we make to look after our environment, and we're committed...  ...news. Serve as a senior subject matter expert in Incident Command System (ICS) and Emergency Management, providing strategic... 
    Senior
    Part time
    Live in
    Local area
    Remote work

    GHD

    Seattle, WA
    1 day ago
  • $200k - $250k

     ...Optiv seeks a Sr. Cybersecurity Advisor to join their remote team, focusing on delivering security solutions tailored to clients in the Seattle area and beyond. The ideal candidate will promote advanced cybersecurity strategies through strong industry knowledge and collaboration... 
    Senior
    Remote work

    Optiv

    Seattle, WA
    7 days ago
  • $145k - $185k

     ...will have a direct impact in enabling commercial and national security missions from the depths of our oceans, to the surface of the moon...  .... Systems Engineer Zeno is seeking a highly motivated Senior Systems Engineer to support the engineering efforts of... 
    Senior
    Permanent employment
    Contract work
    Work experience placement
    For subcontractor
    Work at office
    Local area
    Remote work
    Relocation package
    Monday to Friday
    Flexible hours

    Zeno Power

    Seattle, WA
    4 hours ago
  • $185k - $277k

     ...internal investigations, and compliance projects. The Senior Manager of Enterprise Security is responsible for leading the strategy, execution, and...  ...withother securityareas such as security operations, incident response, threat intelligence, identity security, vulnerability... 
    Senior
    Work at office
    Remote work

    Relativity

    Seattle, WA
    2 days ago
  • $218.8k - $295.9k

     ...WWOS Tech is transforming into an AI-first security technology organization, and we're...  ...from 0.30% to 0.19% of GMS and transform incident preparedness from reactive to proactive....  ...leaders, program vertical leaders, and WWOS senior leadership. - Represent WWOS Tech in... 
    Senior
    Flexible hours

    Amazon.com Services LLC

    Seattle, WA
    4 hours ago
  • $127.35k

     ..., feeding, and growth of high-availability, scalable, cloud-based systems with a strong focus on security. You will respond to and investigate escalated security incidents. You will help to create and implement sophisticated monitoring and detection techniques. We need... 
    Senior
    Work experience placement
    Work from home

    Axon

    Seattle, WA
    5 days ago
  • $187k - $220k

     ...rewards. The Product and Application Security team builds and operates systems that help...  ...security across Robinhood! As a Senior Security Engineer, Application Security,...  ...environments that prioritize reliability, incident response, and secure software delivery... 
    Senior
    Work at office
    Flexible hours
    Shift work
    3 days per week

    Robinhood

    Bellevue, WA
    1 day ago
  • $227.76k - $267.95k

     ...About the role The Trust team at Headway is focused on security and privacy for all of Headway’s customers - therapists, patients,...  ...engineering. Assist in ongoing security operations: participate in incident response, vulnerability management, penetration testing,... 
    Senior
    Work from home
    Flexible hours

    Headway - Design & Development

    Seattle, WA
    2 days ago
  • $200k - $250k

     ...Optiv Security is seeking a Sr. Cybersecurity Advisor specialized in Identity Security, located remotely in the Pacific Northwest. This role is crucial for designing client-centric security solutions encompassing Identity Governance and Digital Access Management. The... 
    Senior
    Remote work

    Optiv

    Seattle, WA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Incident Commander. Be the first to apply!