Senior Security Engineer, Incident Response
- Entreprise
- Databricks Switzerland GmbH
- Lieu
- Zürich
- Date
- 08.08.2026
- Référence
- 331187
Join Our Incident Response Team
Our Incident Response team is dedicated to swiftly addressing security threats and incidents, ensuring that our customers, employees, and enterprise data remain protected. We are a collaborative group of security incident responders and handlers committed to leveraging our own platform for near-real-time log analytics, alerting, and forensics.
Your Role and Responsibilities
As a valued member of our security Incident Response (IR) team, you will play a crucial role in our operations, working under the guidance of the regional IR manager. Your key responsibilities will include:
- Engaging in a distributed 24x7 operational environment and participating in an on-call schedule to respond to incidents.
- Triage and respond to security events and alerts, ensuring effective and prompt containment.
- Conducting thorough security investigations, analyzing and performing forensics across various data sources to establish timelines and assess impacts of security events.
- Developing automations, utilizing AI and agentic platforms, to enhance team efficiency and scalability in incident response.
- Communicating technical decisions clearly via design documentation and tech discussions, while also mentoring junior security responders through guidance and code reviews.
What We Seek
We are looking for individuals who possess the following qualifications:
- A Bachelor's Degree with 4+ years of experience in Incident Response or a Master's Degree with 2+ years of experience.
- A strong background in cloud security, particularly in at least one of AWS, GCP, or Azure, with familiarity in others.
- Knowledge of AI/LLM and agentic capabilities, including effective prompting and usage of MCP, agents, and related skills, with preferred experience in building and operating these systems in a security context.
- Broad expertise in various security subjects.
- Proficiency in core IR skills such as DFIR, Reverse Engineering, and Traditional Network Security.
- Experience with Enterprise Security and SaaS applications.
- A working knowledge of SIEM and SOAR tools.
- Experience in building Incident Response tools and a background in scripting languages.
Join us in our mission to enhance security and safeguard our digital landscape.