Senior Security Engineer- Incident Response
3 days ago
Sigma is seeking a Senior Security Engineer to join our growing Cyber Security team. As a Senior Security Engineer, you will advance Sigma's Security strategy by shaping and evolving security architecture in alignment with business objectives. As a Senior Engineer, you will be focused on our Cloud/SaaS Security, designing, building, and maturing Sigma incident detection and response program. You will be responsible for creating and implementing strategies to identify, analyze, contain, eradicate, and recover from security incidents effectively. This role requires a blend of hands-on technical expertise, strategic program development, and strong cross-functional collaboration.
We are looking for a builder and defender—someone who thrives in complex cloud-native environments, embraces automation ("let the robots do the work"), and has the strong vision to scale cloud security and incident response for a fast-moving SaaS company. If you are passionate about staying ahead of attackers, crafting innovative detections, and building resilient cloud defenses, we want to hear from you.
What You'll Do- Build, mature, and operate a robust incident detection and response program, encompassing people, processes, and technology.
- Provide expertise and guidance during critical security events, acting as a technical SME and primary point of contact to senior management.
- Develop and implement advanced detection methodologies, rules, and alerts to identify sophisticated threats rapidly.
- Manage the full lifecycle of security incidents, from initial detection and triage to containment, eradication, recovery, and thorough post-incident review.
- Architect and implement security automation solutions to streamline incident response workflows, enrich alerts, and facilitate faster remediation.
- Work with cross functional teams internal stakeholders like Legal, VP Security, Executive teams and External IR retainer in case of high severity Incidents impacting customers.
- Collaborate closely with engineering, operations, and product teams to integrate security best practices, enhance logging, and ensure swift remediation of vulnerabilities identified during incidents.
- Document incident findings, lessons learned, and contribute to the development of actionable intelligence to prevent future occurrences.
- Drive advance threat hunting and forensics uncover malicious activity through proactive hunts, network forensics, and cloud/host-based investigations.
- Design, implement, and continuously improve Sigma Cloud Security in all environments - AWS, GCP, Azure.
- Enhance Vulnerability management – identify, prioritize, and guide remediation of risks across cloud infrastructure and applications.
- Advance Cloud and network security – build standards and protections to defend workloads, identities, Sigma services and data.
- Develop and mature IR runbooks, playbooks, and automations to scale security response across environments.
- Use AI securely and effectively to make the team efficient and scale Security Practices.
- Stay ahead of evolving threats – leverage intelligence, attack simulation, and red/blue team learnings to refine defenses.
- Bachelor's or Master Degree in Computer Science, Cyber Security or related fields.
- Relevant certifications such as GCIH, GCFA, GNFA, CISSP, CCSP, or AWS Security Specialty.
- Proven ability to produce high-quality results in a fast-paced SaaS environment or similar large scale environment.
- 6+ years of hands-on experience in Security Engineering, Cloud Security, Incident Response with a strong focus on Cloud Security & Incident Response – including host/cloud forensics, threat hunting, detection engineering in SaaS or Cloud first Organizations.
- Strong proficiency in scripting languages (e.g., Python, Go, PowerShell) for automation, data analysis, and security tooling development.
- Demonstrated experience building, maturing, and scaling incident response programs, including detection engineering, playbook development, and conducting incident post-mortems in large scale environments.
- Strong experience working as Incident Responder and Manager to address critical business and customer security Incidents.
- Good understanding and proven knowledge of AWS, GCP, or Azure environments; Kubernetes, Terraform, or other IaC.
- Deep Hands-on knowledge on security tooling across SIEM, EDR, CNAAP, WAF, CASB,DSPM, CSPM.
- Solid understanding of threat intelligence frameworks, attacker techniques (MITRE ATT&CK), and detection use cases.
At Sigma, security is at the core of our mission. We power insights and innovation for our customers, and protecting their data is our highest priority. As a Senior Security Engineer, you will have the autonomy to shape our Cyber Security strategy, access to cutting-edge technologies, and the opportunity to solve real problems at scale.
Join us and be part of a security team that values collaboration, innovation, and resilience—while giving you the room to grow, lead, and leave your mark on Sigma's security journey.
About us:Sigma is the only cloud analytics and business intelligence tool empowering business teams to break free from the confines of the dashboard, explore data for themselves, and make better, faster decisions. The award-winning software was built to capitalize on the performance power of cloud data warehouses to combine data sources and analyze billions of rows of data instantly via an intuitive, spreadsheet-like interface – no coding required.
Since launching with its unique interface, Sigma Computing has added features such as collaboration tools and embedded analytics capabilities. The most recent product launch included a set of AI tools such as forecasting capabilities, an AI copilot and a notebook interface for users who prefer a code-first environment.
Sigma announced its $200M in Series D financing in May 2024, to continue transforming BI through its innovations in AI infrastructure, data application development, enterprise-wide collaboration, and business user adoption. Spark Capital and Avenir Growth Capital co-led the Series D funding round, with additional participation from a group of past investors including Snowflake Ventures and Sutter Hill Ventures.The Series D funding, raised at a valuation 60% higher than the company's Series C round three years ago, promises to further accelerate Sigma's growth.
Come join us
Benefits For Our Full-Time Employees:- Equity
- Generous health benefits
- Flexible time off policy. Take the time off you need
- Paid bonding time for all new parents
- Traditional and Roth 401k
- Commuter and FSA benefits
- Lunch Program
- Dog friendly office
Sigma Computing is an equal opportunity employer. We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. We look forward to learning how your experience can enable all of us to grow.
Note: We have an in-office work environment in all our offices in SF, NYC, and London.
-
Incident Response Manager
5 days ago
New York, New York, United States The Metropolitan Museum of Art Full timeAbout the Metropolitan Museum of ArtThe Met presents over 5,000 years of art from around the world for everyone to experience and enjoy. The Museum lives in two iconic sites in New York City—The Met Fifth Avenue and The Met Cloisters. Millions of people also take part in The Met experience online.Since its founding in 1870, The Met has always aspired to be...
-
Cybersecurity Analyst – Incident Response
5 days ago
New York, New York, United States InterSources Inc Full time $80,000 - $120,000 per yearJob Title: Cybersecurity Analyst – Incident Response & Digital ForensicsLocation:NYC, NYDuration:12 MonthsWork Type:OnsiteWorking Hours:37.5 Hours/WeekJob Description:Client is seeking ahighly skilled Cybersecurity Analystspecializing inIncident Response and Digital Forensicsto join theIT Threat Intelligenceteam within theCyber Security Operations Center...
-
Partner - Cyber Incident Response, Americas
5 days ago
New York, New York, United States Control Risks Full time $250,000 - $400,000 per yearThis role may be based in New York City or Washington DC.This is a leadership role to create and grow Cyber Incident Response (CIR) in the Americas, specifically:To be an exceptional leader with the ambition, ability and commercial acumen to build a market leading CIR capability in the United States.To win a significant increase in retained and panel work,...
-
Senior Cyber Security Engineer, Operations
4 days ago
New York, New York, United States Endeavor Full time $138,750 - $185,000 per yearEndeavor is seeking a Senior Security Engineer to lead the selection, design, implementation, and operation of security solutions for our technology environment. Reporting to the SVP of Cybersecurity, this role will integrate security controls into business processes to ensure data security, compliance, integrity, and availability. You will drive the...
-
New York, New York, United States Google Full time $108,000 - $155,000Minimum qualifications:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.3 years of experience working end-to-end incident response investigations, analysis, or containment actions.3 years of investigative experience with network forensics, malware triage analysis, cloud...
-
Senior Incident Responder
5 days ago
New York, New York, United States LSEG (London Stock Exchange Group) Full time $105,000 - $176,500 per yearRole PurposeThe Senior Incident Response role is part of a global Incident Response team that sits within the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC.LSEG GSOC is a central function employing people, process and technology...
-
Senior Manager, Security Engineering
3 days ago
New York, New York, United States GenuineXs LLC Full time $120,000 - $200,000 per yearSenior Manager, Security Engineering & Operations Work Setup: Hybrid – 4 days a month in the officeCompensation: Base + Bonus + EquityEmployment Type: Full-timePosition OverviewAs the Senior Manager of Security Engineering and Operations, you will build and manage a team of direct, indirect, and outsourced resources for the delivery of enterprise security...
-
Senior Manager, Security Engineering
3 days ago
New York, New York, United States GenuineXs - Cybersecurity Experts Full time $120,000 - $200,000 per yearPosition OverviewAs the Senior Manager of Security Engineering and Operations, you will build and manage a team of direct, indirect, and outsourced resources for the delivery of enterprise security operations services. You will provide operational leadership in the delivery of security services and the ability to adjust priorities based on changing...
-
Senior Application Security Engineer
5 days ago
New York, New York, United States Uniswap Labs Full time $230,000 - $255,000We're looking for a Senior Application Security Engineer to help shape the security of Uniswap's products and infrastructure. You'll play a leading role in protecting one of the most widely used protocols in DeFi and will work across teams to embed security into everything we build, mentor other engineers, and strengthen our overall security posture.What...
-
New York, New York, United States Google Full time $166,000 - $244,000 per yearMinimum qualifications:Bachelor's degree or equivalent practical experience.5 years of experience in Access Management.5 years of experience with security engineering, computer and network security and security protocols.5 years of coding experience in one or more general purpose languages.Preferred qualifications:8 years of experience with security...