Remote Senior Security Engineer, Incident Response
$153k - $214k1Password
- Remote job
1Password is growing. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing.
About 1Password
At 1Password, we’re building the foundation for a safe, productive digital future. Our mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application sign-in is secure, and every device is trusted. We innovated the market-leading enterprise password manager and pioneered Unified Access Management, a new cybersecurity category built for the way people and AI agents work today. As one of the most loved brands in cybersecurity, we take a human-centric approach in everything from product strategy to user experience. Over 180,000 businesses, from Fortune 100 leaders to the world’s most innovative AI companies, trust 1Password to help their teams securely adopt the SaaS and AI tools they need to do their best work.
If you’re excited about the opportunity to contribute to the digital safety of millions, to work alongside a team of curious, driven individuals, and to solve hard problems in a fast-paced, dynamic environment, then we want to hear from you. Come join us and help shape a safer, simpler digital future.
At 1Password, security isn’t just a feature – it’s our foundation. The Security Operations team’s mission is to protect the business by securing the systems, tools, and processes that power how we work. Our mission is to keep 1Password productive, resilient, and safe through proactive monitoring, rapid response, and continuous improvement of preventative and detective controls.
As a Senior Security Engineer on the Incident Response team, you will lead complex security investigations while also building the systems and automation that make response faster, more reliable, and more scalable.
This role blends deep investigative expertise, hands-on engineering, and structured incident coordination. You will drive incidents end-to-end, build automation and workflows that reduce response friction, and contribute to a culture of learning and psychological safety during high-pressure situations.
This is a high-impact role with meaningful ownership across both incident execution and operational engineering.
This role reports to the Manager of Security Incident Response.
How we’re using AI today
Our Engineering, Product, and Design teams are thoughtfully integrating AI across the full software and product development lifecycle to move faster without sacrificing quality or security. In practice, that looks like engineers using AI-assisted coding tools to accelerate reviews and catch bugs earlier, product managers synthesizing user research at scale, and designers rapidly prototyping and iterating with AI-generated mockups. We approach AI the same way we approach security: with clear principles, human accountability at every consequential decision point, and rigorous evaluation before anything ships to customers.
This is a remote opportunity within Canada and the US.
What we’re looking for:
-
An experienced incident lead who can independently drive complex investigations and coordinate diverse stakeholders.
-
A builder who enjoys improving systems, automation, and workflows – not just responding to alerts.
-
Calm and decisive under pressure, with strong judgment in ambiguous or high-severity situations.
-
Structured and organized, with strong project management skills to own complex projects
-
A clear communicator who can translate technical findings into actionable guidance for both technical and non-technical audiences.
-
A collaborative teammate who values blameless learning and psychological safety
-
5+ years of experience in security incident response roles, with 3+ years focused on security engineering and automation.
-
Proven experience leading complex security incidents in cloud-native or SaaS environments.
-
Experience building automation or internal tooling to improve security operations.
-
Proficiency in scripting or programming (e.g., Python, Go, Bash) and working with APIs or orchestration platforms.
-
Familiarity with applying AI/ML-assisted workflows to operational security use cases.
-
Strong understanding of modern attacker techniques and incident response methodologies.
-
Strong written and verbal communication skills, including executive-facing summaries.
What you can expect:
-
Lead and execute security incidents end-to-end, from initial signal through containment, recovery, and post-incident review
-
Assess severity, declare incidents, and drive structured coordination and decision-making during active response
-
Perform hands-on investigations and threat hunting to determine root cause, attacker behavior, scope, and impact
-
Design and build automation to reduce triage, investigation, and response time
-
Develop scalable systems and workflows that improve incident response and incident management
-
Identify recurring pain points and detection/response gaps, and implement durable engineering solutions
-
Improve incident response playbooks, case management, and orchestration tooling
-
Apply AI-assisted tooling to enhance triage, enrichment, and investigative workflows while maintaining accuracy
USA-based roles only: The annual base salary for this role is between $153,000 USD and $214,000 USD plus immediate participation in 1Password’s benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.
Canada-based roles only: The annual base salary for this role is between $144,000 CAD and $202,000 CAD plus immediate participation in 1Password’s generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.
At 1Password, we approach each individual’s compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.
Our culture
At 1Password, we prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with our core values: keep it simple, lead with honesty, and put people first.
You’ll be part of a team that challenges the status quo, and is excited to experiment and iterate in search of the best solution. That said, 1Password is not for everyone . Our work is demanding, we strive for excellence, and the pace is fast. We need people who are keen to take on challenging problems, who seek feedback to grow, and who are driven to make an impact. If you’re looking for a place where you can settle into a comfortable routine, this might not be the right fit for you. We’re looking for individuals who are proven experts in their fields, as well as those who are highly adaptable, can thrive in ambiguity and through change, are curious, and above all deliver results.
How we work with AI
We are committed to leveraging cutting-edge technology—including AI—to achieve our mission. We also understand that thinking critically about AI in its current forms will help us create better solutions for our customers and ourselves with its future forms, which will help us continue to close the gap between security and privacy and achieve our mission. We want team members at all levels to take the approach of actively learning AI best practices, identifying opportunities to apply AI in meaningful ways, and driving innovative solutions in their daily work. Embracing the future of AI isn’t just encouraged—it’s an essential part of how we will be successful at 1Password.
This approach extends to our hiring process—candidates are welcome to use AI tools responsibly and thoughtfully during the application process. To us, this means we do ask that you join live interviews without using AI tools so we can get to know how you communicate, solve problems, and collaborate with others.
Our approach to remote work
We believe in the power of remote work, but recognize that in-person connection is important to help us achieve our mission. While we are a remote-first company, travel for in-person engagement is a part of almost all roles, and we require our employees to be ready and willing to take part. Frequency will depend on role and responsibilities, and may include, but is not limited to: annual department-wide offsites, team meetings, and customer/industry events.
What we offer
We believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer:
Health and wellbeing
Maternity and parental leave top-up programs
Generous PTO policy
Four company-wide wellness days
Growth and future
Company equity for all full-time employees
Retirement matching program
Free 1Password account
Community
Paid volunteer days
Employee-led inclusion and belonging programs and ERGs
Peer-to-peer recognition through Bonusly
You belong here.
1Password is proud to be an equal opportunity employer. We are committed to fostering an inclusive, diverse and equitable workplace that is built on trust, support and respect. We welcome all individuals and do not discriminate on the basis of gender identity and expression, race, ethnicity, disability, sexual orientation, colour, religion, creed, gender, national origin, age, marital status, pregnancy, sex, citizenship, education, languages spoken or veteran status. Be yourself, find your people and share the things you love.
Accommodation is available upon request at any point during our recruitment process. If you require an accommodation, please speak to your talent acquisition partner or email us at View email address on jobicy.com and we’ll work to meet your needs.
Remote work is a part of our DNA. Given that our company was founded remotely in 2005, we can safely say we’re experts at building remote culture. That said, remote work at 1Password does mean working from your home country. If you’ve got questions or concerns about this, your talent partner would be happy to address them with you.
Successful applicants will be required to complete a background check that may consist of prior employment verification, reference checks, education confirmation, criminal background, publicly available social media, credit history, or other information, as permitted by local law.
1Password uses artificial intelligence (AI) and machine learning (ML) technologies, including natural language processing and predictive analytics, to assist in the initial screening of employment applications and improve our recruitment process. See here for the latest third party bias audit information. If you prefer not to have your application assessed using AI/ML features, you may opt out by completing this form . For additional information see our Candidate Privacy Notice .
Jobicy JobID: 153700- ...personalized customer experiences. Our dedication to remote-first work , and strong culture of connection and global... ...See yourself at Twilio Join the team as Twilio’s next Senior Security Engineer, Incident Response About the job The Security Incident Response Team (...Remote workSeniorFull timeWorldwide
- ...operational efficiency, reduce security and compliance risk, and accelerate... ...overview of this role As a Senior Security Engineer on GitLab’s Security Incident Response Team (SIRT), you will play a... ...the world. All of our roles are remote, however some roles may carry...Remote workSeniorFull time
- ...next steps. Our partner is looking for an Intermediate Security Engineer, Security Incident Response Team (SIRT) based in Australia. This role places... ...across geographically distributed teams. Benefits: Remote work opportunity in Australia. Compressed four-day...Remote workFull timeFlexible hoursShift work
- ...the world’s largest community of security researchers to continuously... ...respect, and accountability. Senior Security Engineer, Detection and Response Remote Location: Austin TX, Seattle,... ...-signal detections and leading incident response when it matters most....Remote workSeniorFull timeApprenticeshipLocal areaFlexible hoursShift work
$192k - $278k
...steps. Our partner is looking for a Staff Security Engineer, Security Incident Response based in United States. This is a senior individual contributor role with organization... ...organizational resilience. This remote opportunity is designed for an experienced...Remote workFull timeImmediate start- ...productivity without compromising security by ensuring every identity is... ...future. As a Staff Security Engineer on Security Incident Response, you'll serve as a senior technical leader and builder for... ...ships to customers. This is a remote opportunity within Canada and the...Remote workFull timeImmediate start
- ...have you on board! Position Overview As our IT/OT Security Engineer & Incident Response Lead, you'll be a hands-on security engineer who also... ...tracking SLAs. OT Security (key focus): Own secure remote vendor/OEM access and jump-box environments, maintain OT...Remote workFull time
- ...Managing Security Information and Event Management (SIEM) systems, the full-time Senior Cybersecurity Incident Response Administrator will deploy, install, and monitor infrastructure while... ..., with the flexibility to work remotely or onsite in Virginia. Key Responsibilities...Remote workSeniorFull time
$140k - $188k
Overview This is a remote role that may be hired in several markets across the United States. As a Senior Incident Response Analyst, you'll be a member of the bank's Cyber Incident Response... ...in malware analysis, network/endpoint security to respond to and contain incidents....Remote jobSenior- TeleTech Holdings, Inc. is seeking an Incident Response Manager to lead our security operations from a remote location in the United States. You will oversee detection, containment, and remediation of cybersecurity threats while guiding a skilled team of analysts. You’ll...Remote workSenior
$225k - $281k
...opportunities and leave your mark, come join us. THE ROLE As the Senior Manager of Security Operations, you will lead and scale Everpure's global Detection Engineering and Cloud Incident Detection & Response (CIDR) teams. You will own the mission of transforming SecOps...SeniorWork at officeFlexible hours- BlueVoyant is seeking a Senior Director, Digital Forensics & Incident Response to spearhead cyber investigations in a client-facing leadership role. This position requires managing complex security incidents while advising executives and legal teams. The ideal candidate...Remote jobSenior
- ...First Citizens Bank is seeking a Senior Incident Response Analyst to join its Cyber Incident Response team in a remote role across the United States. You will detect and respond to threats, interact with business stakeholders, and help restore operations. This is a...Remote jobSenior
- First Citizens Bank is seeking a Senior Incident Response Analyst for a remote role that can be hired in multiple U.S. markets. You will join the Cyber Incident Response team, detecting and responding to threats, interacting with business stakeholders, and restoring operations...Remote jobSenior
- ...Job Description Job Description Senior Digital Forensics & Incident Response Consultant Location: Remote Duration: 1–2 Weeks with potential extension Position... ...-level technical guidance throughout active security incidents. Forensic & Incident...Remote workSenior
$87.32k
...Empower AI Senior Cybersecurity Incident Response Administrator Empower AI gives federal... ...Administrator manages Security Information and Event Management... ...of threats. This is a remote-eligible position. Local... ...response and SIEM engineering expertise, strong DoD cybersecurity...Remote workSeniorFor contractorsLocal area$120k - $135k
...Senior Incident Response Analyst Tetrad Digital Integrity (TDI) is a cybersecurity... ...program. As part of the Security Operations Center, you will... ...are eligible to work fully remote. Responsibilities:... ...degree in Computer Science, Engineering, Information Technology, Cybersecurity...Remote workSeniorPermanent employmentContract work2 days per week- ...Senior Consultant, Digital Forensic and Incident Response (DFIR) (Remote) Remote, USA / Exempt Surefire Cyber is redefining... ...identifying, analyzing, and mitigating security incidents, demonstrating a... ...malware analysis and reverse engineering when necessary. Lead the...Remote workSeniorFull timeLocal areaFlexible hoursWeekend work
- ...just to execute a function, but to help redefine the future of how work gets done. We are hiring a Senior Security Engineer, dedicated to Product Security Incident Response. In this role, you will lead and architect Snowflake's product-integrated Incident Response...SeniorFull time
- ...other inquiries won't receive a response).Regular or Temporary:... ...description:The Cyber Hunt & Respond Senior Engineer is a senior-level... ...advanced threat hunting and incident response activities. This role... ...engineer collaborates with security, technology, and business partners...SeniorPermanent employmentFull timePart timeH1bWork at officeWork visaShift workNight shiftDay shift
- Senior Digital Forensic Analyst job at Triskele Labs. Los Angeles... ...boutiques to run a 24x7x365 Security Operations Team completely... ...Labs Digital Forensics and Incident Response (DFIR) team assists clients... ...responded both in person and remotely to incidents across Australia...Remote jobSeniorWork at office
$55k - $65k
...the role: We are seeking a skilled Incident Response Cybersecurity Engineer to join our dynamic team. The ideal... ...clients' operations This is not a Security Operations Center role Why Dataprise... ...Programs Onsite, hybrid and remote work options (may vary by role) 10...Remote workTemporary workLocal areaImmediate startFlexible hours- ...Focused on enhancing security capabilities, the full-time Senior Security Engineer II will design, build, and operate... ...'s security posture in a remote environment. Key responsibilities Designing and operating... ...security capabilities Leading incident response efforts,...Remote workSeniorFull time
- ...seeking a highly skilled Senior Network Security Engineer to secure, optimize, and... ...security enhancements. Key Responsibilities Firewall & Network... ...on-premises, cloud, and remote sites. Design,... .... Threat Protection & Incident Response Implement and...Remote workSenior
$80k - $92k
...Senior Network Security Engineer NPO Torino is a specialized Digital Transformation... ...$92K. Work is partially remote with occasional travel to... ...The professional will be responsible for the design, implementation... ...Conduct log analysis, incident management, and system hardening...Remote workSeniorLocal area- ...Network Security Engineer 7+ years of experience in Network Security... ...security level of the firm. Responsible to identify threats,... ...Experience of supporting clients remotely and face to face, along... ...oriented organizations involving incident, change, problem and...Remote workSenior
- ...healthcare client is looking for a Senior Network Security Engineer to sit fully remote. This person is going to be... ...WAN. This engineer is going to be responsible for the designing, implementing... ...transformation initiatives • Strong incident response, root cause analysis,...Remote workSenior
- ...The Position As our first dedicated Senior Security Engineer, you will join a remote, global health‑tech team that works at the intersection of genomics... ...Set up and run security monitoring, alerting, and incident response, with practical playbooks and runbooks the team...Remote workSenior
- ...then we invite you to apply to our Senior Cyber Incident Response Attorney position. While the position... ...located elsewhere. This is a fully remote position. The Position This is... ...privacy lawsuits Drafting privacy and security policies and procedures pursuant to...Remote workSeniorWork at officeFlexible hours
- ...Senior Security Engineer Role The role of a Senior Security Engineer in 2026 has evolved from a... ...Overview A Senior Security Engineer is responsible for designing, building, and... ...baked in" rather than "bolted on." Incident Leadership: Serving as the technical...Remote workSenior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Remote Senior Security Engineer, Incident Response. Be the first to apply!
- security engineering manager Remote
- physical security engineer Remote
- senior security operations engineer Remote
- information system security engineer Remote
- staff security engineer Remote
- offensive security engineer Remote
- security software engineer Remote
- network security engineer Remote
- sr information security engineer Remote
- cloud security engineer Remote




