Principal Incident Responder
$270k - $370kFluidstack
Principal Incident Responder
Fluidstack operates the compute infrastructure powering frontier AI. The work running on it is among the most consequential being done today, and the adversaries interested in it are among the most sophisticated, persistent, and well-resourced anywhere. We are building Detection & Response Engineering from the ground up: engineering-led, agent-first, and built to scale across IT, OT, and physical surfaces. As the Principal Incident Responder, you are the most senior incident commander in the program. You define what material-incident response looks like at Fluidstack, set the runbook standard the rest of the IR function operates inside, and lead the room when those systems come under attack.
Responsibilities include:
- Running material incidents as incident commander, coordinating across detection, response, physical security, data center operations, legal, communications, and customers.
- Building the IR program: runbook standards, severity definitions, materiality methodology, evidence contracts, and post-incident review cadence.
- Defining the agent-human contract for response: escalation criteria, evidence packages required from agents, and human verdict feedback into agent quality.
- Designing and operating the senior-IR on-call rotation (ack SLAs, escalation chain, fan-out logic) and remaining an active senior IC inside it.
- Analyzing incident trends and patterns to surface systemic risks and recurring root causes, and turning the learnings into runbook, detection, or program improvements.
- Driving cross-functional follow-through after every significant incident, tracking remediation and systemic fixes to completion across detection, response, infrastructure, and other teams.
- Defining and tracking the IR program's KPIs and reporting on them to security and engineering leadership.
- Setting the tabletop and exercise cadence for IR readiness, executive crisis-comms, and audit-readiness drills.
- Carrying the external face of IR for regulatory and customer disclosure obligations, and audit responses.
Qualifications include:
- Running material incidents at companies with sophisticated threat models, as the most senior commander on the call.
- Making disclosure-grade calls under regulatory and customer reporting clocks.
- Writing runbooks that other engineers followed under pressure, and rewriting them after they did not work.
- Building operational processes from the ground up in environments where structure did not previously exist.
- Reading the agent-first thesis as one of the most interesting design choices in incident response today.
- Having well-founded opinions on what makes a runbook actually used or an incident response process actually effective.
- Moving fluently between technical containment and executive, legal, or customer-facing conversations during a declared incident.
- Seeing what is needed, scoping it yourself, and running with it.
Strong candidates may also have:
- Experience running incidents that bridge cyber, physical, and OT or ICS surfaces.
- Experience at critical-infrastructure operators, data centers, or industrial environments.
- Experience designing or operating agent-augmented incident response, including triage, investigation, or response automation.
- Experience tuning LLM-based IR systems against measured precision and recall.
Salary & Benefits:
- Competitive total compensation package (salary + equity)
- Retirement or pension plan, in line with local norms
- Health, dental, and vision insurance
- Generous PTO policy, in line with local norms
The base salary range for this position is $270,000 - $370,000 per year, depending on experience, skills, qualifications, and location. This range represents our good faith estimate of the compensation for this role at the time of posting. Total compensation may also include equity in the form of stock options.
We are committed to pay equity and transparency.
Fluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
You will receive a confirmation email once your application has successfully been accepted. If there is an error with your submission and you did not receive a confirmation email, please email View email address on click.appcast.io with your resume/CV, the role you've applied for, and the date you submitted your application-- someone from our recruiting team will be in touch.
- ...About the Position We're looking for an experienced incident responder and forensic investigator to join our Cybersecurity team. The ideal candidate would have real-world experience responding to externally driven cyber incidents, as well as investigating potential...SuggestedFlexible hours
- ...5 Overview This is a leadership role to create and grow Cyber Incident Response (CIR) in the Americas, specifically: To be an exceptional... ...panel channels to market. Actively promote as a trusted cyber responder and enhance our broader credentials as a strategic advisor on...Principal
- ...Principal Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote About Surefire Cyber Surefire Cyber is redefining the incident response... ...provides clients the confidence needed to prepare, respond, and recover from cyber incidents – and fortify their...PrincipalFull timeLocal areaRemote workFlexible hoursWeekend work
$80 - $100 per hour
...A cybersecurity firm is seeking an Incident Response Consultant to join its team. The role requires experience in incident response, a strong understanding of various operating systems, and the ability to investigate cloud-native threats. This position provides flexible...SuggestedFull timeFlexible hours$86.4k
...investigator in the Cyber Fusion Center, capable of working any kind of incident, leading investigations, and ensuring incidents are properly... ...of security strategy for the team. The Senior Cyber Incident Responder interfaces with other internal teams to determine scope of...SuggestedFor contractorsWork at officeLocal areaRemote work$168k - $270k
...An Overview Of The Role The Cybersecurity Incident Manager (Incident Commander) leads and coordinates critical security incident response... ...SaaS services, and GitLab customers on SaaS offerings. The Principal Security Incident Commander works as part of the Security...PrincipalFull timeRemote workHome officeFlexible hours- ...A leading fintech company in the United Kingdom seeks a security operations expert to enhance incident response and vulnerability management. The role involves responding to security incidents, automating processes, and collaborating with engineering teams to foster a...
$100k - $130k
...seeking a proactive Security Analyst to join their team in the United States. This role involves monitoring security alerts, responding to incidents, and developing threat detection capabilities. The ideal candidate will have 4-6 years of experience in cybersecurity and...Remote work- ...cybersecurity firm seeks an experienced L3 SOC Analyst to join their remote team. In this role, you'll own complex security incidents, analyze and respond to high-severity events, and optimize SOC processes. Strong technical expertise in SIEM platforms and incident...Remote work
$100k - $160k
...information, please visit . The Senior/Principal Federal Security Engineer reports into Federal... ...and system requirements to successfully respond to potential audits as well as prior... ...refine automated response playbooks for Incident Response (IR) and orchestration (SOAR)...PrincipalLocal areaFlexible hours- A health services company is looking for a Senior Cyber Incident Responder to lead investigations within the Cyber Fusion Center. The role requires expertise in malware analysis and incident handling, with responsibilities including providing support to cyber defense technicians...Remote job
- ...Description A global law firm is seeking a Principal Security Engineer to join their team.... ...threat lifecycle, analyzing and responding to security events escalated by the Security... ...support in the areas of security engineering, incident response, and risk management. Duties...PrincipalRemote work
- ...ManTech is looking for a visionary Senior Principal Cyber Security Engineer to join their Enterprise Cyber Security Team. You will be... ...Responsibilities include designing security frameworks, automating incident responses, and overseeing security in cloud environments like...Principal
- 25-26 Middle School Assistant Principal of Culture and Student Support job at Launch Expeditionary Learning Charter Schools... ...Tier 2 and Tier 3 interventions. Serve as the lead responder for behavioral incidents, ensuring that student dignity is preserved and that consequences...PrincipalDay shift
$130k - $165k
...Surefire Cyber is redefining the incident response model by delivering a swifter, stronger... ...the confidence needed to prepare, respond, and recover from cyber incidents – and... ...predictability, and transparency. Job Title: Principal Engagement Lead- Digital Forensic and Incident...PrincipalFull timeWork experience placementLocal areaImmediate startRemote workFlexible hoursWeekend work- ...Overview A leading global consulting firm is seeking an a Principal/Digital Forensics, Incident Response & Cybersecurity (Forensic Services practice).... ...by assisting them and their counsel in independently responding to allegations of fraud, waste, abuse, misconduct, and...PrincipalLocal area
- ...A cybersecurity firm is seeking a Principal Consultant specializing in Digital Forensics and Incident Response to provide expert guidance during cyber incidents. This remote role requires a seasoned professional with a strong background in forensic analysis and incident...PrincipalRemote work
$155k - $186k
...environments. You'll set standards for our Analyst Team, developing incident response playbooks for complex security situations that span... ...automation scripts to enhance efficiency in detecting and responding to security threats in all environments. Design and maintain comprehensive...PrincipalRemote work$159k - $199k
...Principal Investigations Analyst Manhattan, New York, United States At Rockstar Games, we create world-class entertainment... .... WHAT WE DO The Rockstar Security Operations team responds to security incidents across the global company landscape. We strive to...PrincipalFull timeWork at officeShift work- ...A security consulting firm in the United States is seeking a Senior Incident Response Consultant to join its Digital Forensics & Incident Response Practice. The role focuses on solving complex problems through investigative work and effective communication. Candidates...
$168k - $195k
...Principal Lead Analyst of DART At Corebridge Financial, we believe action is everything... ...technical authority for cyber defense and incident response. This is a high-impact... ...program, and mentor the next generation of responders. You are responsible for ensuring that the...PrincipalWork at officeLocal areaImmediate startRemote workShift work$118.8k - $177.1k
...Position Summary The Principal Network Engineer will support the Enterprise Network... ...change review/implementation, and advanced incident management support. Additional... ...work flexible hours and be available to respond on short-notice Able to maintain a professional...PrincipalTemporary workWork experience placementWork at officeImmediate startRemote workFlexible hoursNight shift- Senior Incident Responder Lead cradle-to-grave incident response actions for declared incidents impacting the OT and IT environments ensuring a structured orchestration following the cyber technical incident response plan. Collaborate with system and application owners...
- ...GuidePoint Security, LLC is seeking a Principal Consultant to provide technical leadership on DFIR engagements. Responsibilities include... ...has over 8 years of DFIR experience and expertise in incident response and forensic investigations. Join a team recognized for...
- ...for a Senior DFIR Consultant to join their remote team across the U.S. The role involves participating as a technical resource in incident response investigations, authoring detailed engagement deliverables, and utilizing automation to enhance efficiency. Candidates must...Remote work
- ...A cybersecurity consulting firm in the United States is looking for an Incident Response Consultant to join their expanding IR team. In this role, you will handle threat investigations, support clients during critical incidents, and shape the company's digital forensics...
$108.9k - $161.16k
...Senior Incident Response Engineer Manhattan, New York, United States At Rockstar Games, we create world-class entertainment experiences... .... What We Do The Rockstar Security Operations team responds to security incidents across the global company landscape....Full timeWork at officeShift work- ...The Impact you will have in this role: The Principal Architect - Systems Engineer (Linux OS Operations,... ...maintenance, and capacity planning. Act as a key responder for Critical and Major production incidents, driving end-to-end restoration, root cause analysis...PrincipalRemote workFlexible hours
$123k - $175k
...A leading cloud storage company in the United States is seeking a Strategic Ops Engineer III to manage the incident management lifecycle and drive continuous improvement in operational processes. Responsibilities include optimizing incident resolution via AI-driven solutions...$150k - $200k
3Pillar Global is looking for senior and principal-level Client Partners who will become a trusted advisor to our clients. In this role,... ...objectives deeply enough to proactively recommend solutions, not just respond to requests. Work with solution architects and delivery...PrincipalFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Incident Responder. Be the first to apply!
- principal New York, NY
- senior principal cloud computing engineer New York, NY
- principal solutions consultant New York, NY
- principal scientist New York, NY
- principal designer New York, NY
- principal architect New York, NY
- epic principal trainer New York, NY
- associate principal New York, NY
- principal solution architect New York, NY
- principal data scientist New York, NY

