Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Engineer, Incident Response

$153k - $214k

1Password

1Password is growing. We've surpassed $400M in ARR and we're continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing.

About 1Password

At 1Password, we're building the foundation for a safe, productive digital future. Our mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application sign-in is secure, and every device is trusted. We innovated the market-leading enterprise password manager and pioneered Unified Access Management, a new cybersecurity category built for the way people and AI agents work today. As one of the most loved brands in cybersecurity, we take a human-centric approach in everything from product strategy to user experience. Over 180,000 businesses, from Fortune 100 leaders to the world's most innovative AI companies, trust 1Password to help their teams securely adopt the SaaS and AI tools they need to do their best work.

If you're excited about the opportunity to contribute to the digital safety of millions, to work alongside a team of curious, driven individuals, and to solve hard problems in a fast-paced, dynamic environment, then we want to hear from you. Come join us and help shape a safer, simpler digital future.

At 1Password, security isn't just a feature - it's our foundation. The Security Operations team's mission is to protect the business by securing the systems, tools, and processes that power how we work. Our mission is to keep 1Password productive, resilient, and safe through proactive monitoring, rapid response, and continuous improvement of preventative and detective controls.

As a Senior Security Engineer on the Incident Response team, you will lead complex security investigations while also building the systems and automation that make response faster, more reliable, and more scalable.

This role blends deep investigative expertise, hands-on engineering, and structured incident coordination. You will drive incidents end-to-end, build automation and workflows that reduce response friction, and contribute to a culture of learning and psychological safety during high-pressure situations.

This is a high-impact role with meaningful ownership across both incident execution and operational engineering.

This role reports to the Manager of Security Incident Response.

How we're using AI today

Our Engineering, Product, and Design teams are thoughtfully integrating AI across the full software and product development lifecycle to move faster without sacrificing quality or security. In practice, that looks like engineers using AI-assisted coding tools to accelerate reviews and catch bugs earlier, product managers synthesizing user research at scale, and designers rapidly prototyping and iterating with AI-generated mockups. We approach AI the same way we approach security: with clear principles, human accountability at every consequential decision point, and rigorous evaluation before anything ships to customers.

What You'll Do
  • Lead and execute security incidents end-to-end, from initial signal through containment, recovery, and post-incident review
  • Assess severity, declare incidents, and drive structured coordination and decision-making during active response
  • Perform hands-on investigations and threat hunting to determine root cause, attacker behavior, scope, and impact
  • Design and build automation to reduce triage, investigation, and response time
  • Develop scalable systems and workflows that improve incident response and incident management
  • Identify recurring pain points and detection/response gaps, and implement durable engineering solutions
  • Improve incident response playbooks, case management, and orchestration tooling
  • Apply AI-assisted tooling to enhance triage, enrichment, and investigative workflows while maintaining accuracy
Who You Are
  • An experienced incident lead who can independently drive complex investigations and coordinate diverse stakeholders.
  • A builder who enjoys improving systems, automation, and workflows - not just responding to alerts.
  • Calm and decisive under pressure, with strong judgment in ambiguous or high-severity situations.
  • Structured and organized, with strong project management skills to own complex projects
  • A clear communicator who can translate technical findings into actionable guidance for both technical and non-technical audiences.
  • A collaborative teammate who values blameless learning and psychological safety
What You Bring
  • 5+ years of experience in security incident response roles, with 3+ years focused on security engineering and automation.
  • Proven experience leading complex security incidents in cloud-native or SaaS environments.
  • Experience building automation or internal tooling to improve security operations.
  • Proficiency in scripting or programming (e.g., Python, Go, Bash) and working with APIs or orchestration platforms.
  • Familiarity with applying AI/ML-assisted workflows to operational security use cases.
  • Strong understanding of modern attacker techniques and incident response methodologies.
  • Strong written and verbal communication skills, including executive-facing summaries.

USA-based roles only: The annual base salary for this role is between $153,000 USD and $214,000 USD plus immediate participation in 1Password's benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

Canada-based roles only: The annual base salary for this role is between $144,000 CAD and $202,000 CAD plus immediate participation in 1Password's generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

At 1Password, we approach each individual's compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.

Our culture

At 1Password, we prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with our core values: keep it simple, lead with honesty, and put people first.

You'll be part of a team that challenges the status quo, and is excited to experiment and iterate in search of the best solution. That said, 1Password is not for everyone. Our work is demanding, we strive for excellence, and the pace is fast. We need people who are keen to take on challenging problems, who seek feedback to grow, and who are driven to make an impact. If you're looking for a place where you can settle into a comfortable routine, this might not be the right fit for you. We're looking for individuals who are proven experts in their fields, as well as those who are highly adaptable, can thrive in ambiguity and through change, are curious, and above all deliver results.

We are committed to leveraging cutting-edge technology-including AI-to achieve our mission. We also understand that thinking critically about AI in its current forms will help us create better solutions for our customers and ourselves with its future forms, which will help us continue to close the gap between security and privacy and achieve our mission. We want team members at all levels to take the approach of actively learning AI best practices, identifying opportunities to apply AI in meaningful ways, and driving innovative solutions in their daily work. Embracing the future of AI isn't just encouraged at 1Password-it's an essential part of how we will be successful at 1Password.

Our approach to remote work

We believe in the power of remote work, but recognize that in-person connection is important to help us achieve our mission. While we are a remote-first company, travel for in-person engagement is a part of almost all roles, and we require our employees to be ready and willing to take part. Frequency will depend on role and responsibilities, and may include, but is not limited to: annual department-wide offsites, team meetings, and customer/industry events.

What we offer

We believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer:

Health and wellbeing

Maternity and parental leave top-up programs

Generous PTO policy

Four company-wide wellness days

Growth and future

Company equity for all full-time employees

Retirement matching program

Free 1Password account

Community

Paid volunteer days

Employee-led inclusion and belonging programs and ERGs

Peer-to-peer recognition through Bonusly

You belong here.

1Password is proud to be an equal opportunity employer. We are committed to fostering an inclusive, diverse and equitable workplace that is built on trust, support and respect. We welcome all individuals and do not discriminate on the basis of gender identity and expression, race, ethnicity, disability, sexual orientation, colour, religion, creed, gender, national origin, age, marital status, pregnancy, sex, citizenship, education, languages spoken or veteran status. Be yourself, find your people and share the things you love.

Accommodation is available upon request at any point during our recruitment process. If you require an accommodation, please speak to your talent acquisition partner or email us at View email address on click.appcast.io and we'll work to meet your needs.

Remote work is a part of our DNA. Given that our company was founded remotely in 2005, we can safely say we're experts at building remote culture. That said, remote work at 1Password does mean working from your home country. If you've got questions or concerns about this, your talent partner would be happy to address them with you.

Successful applicants will be required to complete a background check that may consist of prior employment verification, reference checks, education confirmation, criminal background, publicly available social media, credit history, or other information, as permitted by local law.

1Password uses artificial intelligence (AI) and machine learning (ML) technologies, including natural language processing and predictive analytics, to assist in the initial screening of employment applications and improve our recruitment process. See here for the latest third party bias audit information. If you prefer not to have your application assessed using AI/ML features, you may opt out by completing this form. For additional information see our Candidate Privacy Notice.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Security Engineer, Incident Response in United States vacancy
  • $139.2k - $218.4k

     ...productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital...  ...of GitLab. An overview of this role As a Senior Security Engineer on GitLab's Security Incident Response Team (SIRT), you will play a critical role in defending... 
    Senior
    Full time
    Remote work
    Flexible hours

    GitLab

    United States
    17 hours ago
  •  ...Ascend Learning is looking for a Senior Security Engineer to lead SOC operations and provide technical security leadership. The role involves...  ...should have a strong cybersecurity background, incident response certification, and experience in managing SOC operations... 
    Senior
    Work from home
    Flexible hours

    Ascend Learning

    Leawood, KS
    4 days ago
  •  ...A leading data and AI company is looking for a Sr. Staff Security Engineer, Incident Response to join its team. This critical role requires extensive experience in incident response as well as cloud security expertise. The individual will lead investigations and establish... 
    Senior
    Remote work

    Databricks

    San Francisco, CA
    4 days ago
  • The Post Oak in Houston, Texas is seeking an Information Security professional to support enterprise security operations,...  ...in information security, and strong hands-on skills in incident response and SIEM engineering. The role includes several benefits and opportunities... 
    Senior

    The Post Oak

    Houston, TX
    2 days ago
  • A travel and technology company seeks a Senior Security Operations Engineer to enhance security operations and incident response processes. This role requires deep expertise in AWS, GCP, and SIEM tools, along with a proactive mindset for continuous improvement. The candidate... 
    Senior
    Flexible hours

    TripAdvisor

    New York, NY
    2 days ago
  • $105k - $151k

    Iconectiv, Llc. is looking for a Senior Security Engineer in Bridgewater, NJ, offering a competitive salary range between $105,000 to $15...  ...,000 annually. The role focuses on security monitoring, incident response, and developing security policies. Candidates should have... 
    Senior
    Work experience placement
    Work at office

    Iconectiv,-Llc.

    Bridgewater, NJ
    1 day ago
  • Airwallex is seeking a Staff Corporate Security Engineer to defend enterprise systems against threats like malware and phishing. You will work on digital forensics, incident response, and security tool development to enhance corporate IT protection. The ideal candidate... 
    Senior

    Airwallex-

    San Francisco, CA
    3 days ago
  • A leading digital content provider in Cleveland, OH, is looking for a Security Engineer to enhance SIEM detection and response. Responsibilities include investigating alerts, leading incident response, and building SIEM dashboards. Candidates should have over 5 years of... 
    Senior
    Remote work

    OverDrive - Rakuten Group

    Cleveland, OH
    1 day ago
  •  ...financial services firm is looking for a Senior Security Operations Engineer in Seattle. You will work cross-functionally to respond to security incidents and enhance Brex's security...  ...strong skills in security incident response, familiarity with CI/CD systems, and... 
    Senior
    Work at office
    Remote work

    Brex Inc.

    Seattle, WA
    4 days ago
  •  ...Akumin is looking for a Security Engineer III to secure its IT infrastructure and manage incident response. The role involves designing and implementing advanced security solutions, conducting vulnerability assessments, and ensuring compliance with regulatory standards... 
    Senior

    Akumin

    Richmond, VA
    2 days ago
  • Akumin in Daytona Beach, Florida is seeking a Security Engineer III to enhance the organization's security posture through advanced security...  ...'s degree, and certifications such as CISSP or CEH. Responsibilities encompass monitoring, vulnerability management, and collaboration... 
    Senior

    Akumin

    Austin, TX
    5 days ago
  • $105k - $151k

    A leading technology firm is seeking a Senior Security Engineer to oversee security monitoring and analytics. Responsibilities include conducting security assessments, implementing measures to protect against threats, and managing security policies. The position requires... 
    Senior
    Work at office

    Csfcorp

    Bridgewater, MA
    1 day ago
  • $229k - $314.8k

     ...Area or Seattle/Bellevue. U.S. citizenship is required. Databricks is seeking an exceptional and strategic Sr. Staff Security Engineer, Incident Response to join our Incident Response team. This pivotal role will provide decisions that have a direct impact on the long-... 
    Senior
    For contractors
    Remote work
    Worldwide

    Databricks

    Mountain View, CA
    4 days ago
  • Emory University seeks a Senior Cyber Defense Engineer in Atlanta, Georgia. This role focuses on incident response and security operations in both cloud and on-premise environments. Candidates must possess a Bachelor's degree and minimum six years of relevant IT experience... 
    Senior
    Remote job

    Emory University

    Atlanta, GA
    2 days ago
  • $225k - $338k

     ...ready to seize the endless opportunities and leave your mark, come join us. THE ROLE The Senior Manager, Security Operations – Detection Engineering & Incident Response will lead and evolve Pure’s Security Operations (SecOps) function across Detection Engineering,... 
    Senior
    Full time
    Work at office
    Flexible hours

    Pure Storage Inc.

    Remote
    1 day ago
  • $159.3k - $202.4k

     ...Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the...  ...experience for our customers. Key job responsibilities - You will query and collate...  ...and data. - You will work alongside incident responders and support the investigation... 
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    5 days ago
  • $136k - $184k

     ...AWS Security Incident Response is looking for a Security Engineer who investigates with urgency, communicates with clarity, and turns every investigation into an...  ...during investigations, and propose improvements to senior engineers - Use AI-powered tools (including agentic... 
    Internship
    Immediate start
    Flexible hours

    Amazon

    Seattle, WA
    2 days ago
  • A global law firm in Los Angeles is seeking a Senior Security Engineer to manage cybersecurity tools, respond to incidents, and develop security documentation. The ideal candidate will have over 5 years of relevant experience, strong Azure skills, and relevant security... 
    Senior

    SourcePro Search

    Los Angeles, CA
    3 days ago
  •  ...United States is seeking an experienced security engineer to join their infrastructure security...  ...This role focuses on threat detection and response, collaborating with engineering teams...  ...over 8 years of experience in security incident detection, along with expertise in telemetry... 
    Senior

    Confluent

    New York, NY
    2 days ago
  •  ...Monarch Money is seeking a Senior Security Engineer to enhance our security team. This fully remote...  ...focuses on developing detection and response capabilities, integrating AI workflows...  ...automation, and responding to security incidents. The ideal candidate should have 5+... 
    Senior
    Remote work

    Monarch Money

    New York, NY
    1 day ago
  • $141.6k - $212.4k

     ...Senior Security Engineer – Detection and Response Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R)...  ...deployment of ML models, and efficient querying during incidents. Develop high-fidelity rule-based and/or ML-based... 
    Senior

    Venturefizz Product Management Community

    United States
    6 days ago
  •  ...Job Description A Fortune 100 transportation company headquartered in Memphis, TN is looking for a Senior Cyber Security Incident Response Analyst. The Cyber Incident Response Analyst will report to the Manger of Incident Response and will be responsible for handling Teir... 
    Senior
    Remote work

    Insight Global

    Memphis, TN
    2 days ago
  •  ...Senior Security Engineer II – Threat Detection & Response Client is seeking a Senior Security Engineer- Detection & Response (Threat-Informed Defense) to...  ...Testing & Training: Design and lead cross-functional Incident Response simulations and tabletop exercises. Use... 
    Senior
    Immediate start

    WinMax

    New York, NY
    1 day ago
  •  ...Senior Security Engineer - Detect & Response - EU/UK Remote, UK We are seeking a UK-based Senior Security Engineer to join our Security Operations...  ...role, you will investigate and respond to security incidents across Marqeta's environment, proactively monitor for... 
    Senior
    Work at office
    Remote work

    Marqueta Referrals

    United States
    15 hours ago
  •  ...money, together. The Role: Monarch is hiring a Senior Security Engineer, Detection and Response to join our Security team within Foundations - the...  ...detections and build alerting pipelines that feed triage and incident response Investigate and respond to security... 
    Senior
    Work at office
    Remote work
    Work from home
    Weekend work

    Monarch Money

    United States
    17 hours ago
  • $167.5k - $235k

     ...Senior Security Engineer (Detection & Response) New York, New York Apply Who We Are At Justworks, you’ll enjoy a welcoming and casual environment...  ...continuous improvements across our detection and incident handling workflows. You’ll collaborate closely with IT... 
    Senior
    Casual work
    Local area

    Justworks

    New York, NY
    1 day ago
  •  ...Senior Cyber Incident Response Analyst Location: Sweden Salary: Negotiable / DOE Integrity360...  ...Caribbean, and Canada, supported by six Security Operations Centres (SOCs) located in...  ...– host and network, malware reverse engineering, Digital forensics and Cyber Threat... 
    Senior
    Work at office
    Remote work
    Flexible hours

    Integrity360

    United States
    11 hours ago
  • $150k - $201.6k

     ...Orrick currently has an excellent opportunity for a Senior IT Security Engineer, Threat Response . This position could be based in any of our U.S. offices...  ...closely with our Security Operations Center (SOC), incident response teams, and other IT stakeholders to stay... 
    Senior
    Temporary work
    Remote work
    Flexible hours

    Orrick

    Washington DC
    4 days ago
  •  ...The Role We are seeking a seasoned Security Engineer with a specialization in detection and response to join our team. As a strategic partner, you will be responsible...  ...Security Expertise : Experience running incidents. Knows how to run and optimize SIEMs for optimal... 
    Senior

    Cape

    New York, NY
    2 days ago
  • $141.6k - $212.4k

     ...their own destiny. Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team. This is a hands-on technical role...  ...deployment of ML models, and efficient querying during incidents. Develop high-fidelity rule-based and/or ML-... 
    Senior

    Klaviyo

    Boston, MA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Engineer, Incident Response. Be the first to apply!