About the job
The Incident Response team at Databricks is dedicated to swiftly addressing security threats, incidents, and investigations to safeguard our customers, staff, and enterprise data in a standardized and efficient manner. Our close-knit team of security incident responders operates 'Security for Databricks on Databricks', leveraging our own platform to enable near-real-time log analytics, alerting, and forensics.
As a Senior Security Engineer within the Incident Response (IR) team, you will report directly to the Head of Incident Response and serve as a key individual contributor. Your role will involve leading incident investigations and security initiatives derived from postmortems. You will act as a security multiplier, enhancing the scalability of security incident response practices at Databricks.
Key Contributions:
- Identify and communicate issues resulting from ambiguous requirements early in the process to facilitate timely adjustments.
- Document technical decisions through design documents and tech talks, while mentoring junior security responders with guidance, design reviews, and code reviews.
- Triage and respond to security events and alerts by analyzing existing logs and correlating data from multiple sources during investigations.
- Participate in a distributed 24/7 operations and on-call schedule to respond to new incidents.
- Develop automation tools to enhance security incident response and alert triaging processes.

