Jobs

Sr. Staff Security Engineer, Incident Response
Bellevue, Washington; Mountain View, California; San Francisco, California; Seattle, Washington; United States
·
On-site
·
Full-time
·
2w ago
Compensation
$229,000 - $314,800
Benefits & Perks
•Healthcare
•401(k)
•Equity
•Unlimited PTO
•Paid Parental Leave
•Gym
•Learning Budget
•Mental Health
•Healthcare
•401k
•Equity
•Unlimited Pto
•Gym
•Learning
•Mental Health
Required Skills
Incident Response
Cloud Security
Digital Forensics
SIEM
SOAR
EDR
Threat Intelligence
AWS
Azure
GCP
Malware Analysis
Network Forensics
Log Analysis
Leadership
Mentoring
RDQ127R264
This role is open to remote candidates within the U.S., with a preference for those based in the San Francisco/ Bay Area or Seattle/Bellevue. U.S. citizenship is required.
Databricks is seeking an exceptional and strategic Sr. Staff Security Engineer, Incident Response to join our Incident Response team. This pivotal role will provide decisions that have a direct impact on the long-term success of Databricks' security posture, creating solutions that enable potential future opportunities without a known path. You will play a key role in developing multi-year technology strategy for complete and critical areas of the business, encompassing multiple systems and teams, consistently delivering large-scale projects that meet company goals.
The Incident Response team's mission is to rapidly, efficiently, and standardly respond to security threats, incidents, and investigations to protect our customers, employees, and enterprise data. We leverage Databricks' own platform for near-real-time log analytics, alerting, and forensics, embracing a "Security for Databricks on Databricks" philosophy. As an Sr. Staff Security Engineer, you will tackle the most technical SIRTs, drive complex, open-ended problems with no obvious path to success, act as a multiplier by enabling systems, authoring tools, or introducing policies that elevate the entire organization's productivity.
The impact you will have:
-
Strategic Impact & Technical Vision: Drive or influence the organization’s direction and roadmap, leading internal conversations about major technology areas and inspiring adoption. Provide decisions with direct, long-term impact on Databricks' success.
-
Incident Leadership & Crisis Management: Lead complex investigations and impact analysis, performing crisis management using the Incident Management System (IMS). Engage with various stakeholders and communicate findings to executive leadership, ensuring successful navigation of major security incidents with minimal business impact.
-
Advanced Threat Management: Exhibit expert knowledge in all cloud vendors used by Databricks (AWS, Azure, GCP), deeply understanding the entire architecture of major business components and articulating their security and risk limits. Drive the establishment of a cutting-edge threat detection and response program, significantly reducing Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) to security incidents.
-
Technical Innovation & Automation: Architect scalable and organized frameworks for security automation and orchestration, including pre-investigation analysis and triage of alerts. Understand trends and directions of the security industry within your domain and architect large-scale designs consistent with organizational and company goals.
-
Problem Solving: Demonstrate the ability to fix difficult and company-impactful problems wherever they lie, even if outside your comfort zone. Possess a full understanding of what malicious activity looks like in each cloud layer (network, storage, compute), understanding existing logs and correlating from multiple sources during an investigation.
-
Cross-Functional Collaboration & Mentorship: Serve as a role model and mentor to every technical member of the team. Identify areas where Databricks can share effectively with the outside world, guiding content creation and communication via presentations and blogs. Work across departments, integrating security practices into various aspects of the organization and product development lifecycle.
What we look for:
-
Experience: Typically 12+ years of experience in security, with a strong focus on incident response, detection, and/or threat intelligence, or an advanced degree with 8+ years of experience. This includes deep expertise in Incident Management and Incident Response tool development.
-
Cloud Security Expertise: Demonstrates knowledge of Azure and AWS cloud concepts, showing expertise in analyzing logs, correlating available log sources to conclude an attack scenario, and identifying logging gaps to suggest best configurations for IR needs. You can function as an architect of cloud deployment and map cloud environment fundamentals to other major providers.
-
Digital Forensics: Highly skilled in multiple areas of digital forensics (e.g., Network, Application/Log Analysis, Host/Disk, Memory Forensics/Malware Analysis, Cloud Forensics, Endpoint Forensics), able to speak confidently on advanced concepts like virtualized networking, advanced network anomalies, and container forensics.
-
Enterprise Security: Has a detailed understanding of enterprise security incidents and in-depth knowledge of malware on endpoints. Possesses expert understanding of MacOS security posture and architecture.
-
Technical Depth: Proficient with SIEM and SOAR platforms, EDR solutions, and forensic analysis tools. Skilled in leveraging AI and automation technologies to enhance security operations and threat detection capabilities.
-
Leadership & Communication: Exceptional ability to engage in difficult conversations, handle them appropriately, and exhibit empathy and emotional intelligence. Proven capability to build, mentor, and lead high-performing cybersecurity teams, fostering a culture of excellence and continuous improvement. Strong communication of technical decisions through design docs and tech talks.
-
Bias for Action & Collaboration: A history of proactively identifying and solving issues that impact the team and company. Demonstrates a strong desire to help peers and collaborate effectively.
-
Customer/Stakeholder Obsessed: Able to push back or say no to unreasonable stakeholder requests in a professional and constructive manner.
U.S. Citizenship Requirement
This role will involve services that are covered by and must comply with the U.S. Government information security and federal contractor regulations, including, without limiation, Department of Defense Cloud Computing Security Requirements for Impact Level 6 Cloud Service Provider personnel, FedRAMP High baseline, and requirements of certain federal contracts. Therefore, this role is open to United States citizens on United States Soil only.
Pay Range Transparency:
Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here.
Zone 1 Pay Range**$229,000—$314,800 USD**
Pay Range Transparency:
Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here.
Zone 2 Pay Range**$206,100—$283,350 USD**
Pay Range Transparency:
Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here.
Zone 3 Pay Range**$194,600—$267,650 USD**
Pay Range Transparency:
Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here.
Zone 4 Pay Range**$183,200—$251,900 USD**
About Databricks
Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook.
Benefits:
At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit https://www.mybenefitsnow.com/databricks.
Our Commitment to Diversity and Inclusion:
At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics.
Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Senior Security Engineer - Incident Response
Nubank · Brazil, Sao Paulo

Sr. Security Researcher II (Hybrid, ISR)
CrowdStrike · Israel - Tel Aviv

Senior Offensive Security Engineer
Robinhood · Bellevue, WA; Menlo Park, CA; New York, NY; Toronto, Canada

Senior SAP Security Analyst
Exact Sciences · US - WI - Madison

Senior Cloud Security Engineer
Robinhood · Bellevue, WA; Menlo Park, CA; New York, NY; Toronto, Canada
About Databricks

Databricks
Series IDatabricks, Inc. is an American software company based in San Francisco. It was founded in 2013 by the original creators of Apache Spark. It offers a cloud-based platform for data analytics and artificial intelligence.
6,000+
Employees
San Francisco
Headquarters
$43B
Valuation
Reviews
4.2
9 reviews
Work Life Balance
3.5
Compensation
4.7
Culture
4.3
Career
4.5
Management
4.0
86%
Recommend to a Friend
Pros
Working on industry-leading data and AI platform
Excellent compensation with high equity upside
Strong engineering culture with Apache Spark creators
Cons
High intensity work environment with demanding deadlines
Work-life balance can suffer during key releases
Growing pains as company scales rapidly
Salary Ranges
25 data points
Mid/L4
Senior/L5
Mid/L4 · Corporate Development Manager
1 reports
$171,004
total / year
Base
$148,699
Stock
-
Bonus
-
$171,004
$171,004
Interview Experience
9 interviews
Difficulty
3.0
/ 5
Duration
21-35 weeks
Offer Rate
22%
Experience
Positive 22%
Neutral 67%
Negative 11%
Interview Process
1
Application Review
2
Recruiter/Phone Screen
3
Technical Interview/Coding Round
4
System Design Interview
5
Behavioral Interview
6
Final Round/Hiring Manager Interview
Common Questions
Coding/Algorithm
System Design
Behavioral/STAR
Technical Knowledge
News & Buzz
Databricks reports surge in enterprise AI agent use - IT Brief Asia
Source: IT Brief Asia
News
·
5w ago
The 2025 IPO market beat the previous three years combined. Here are the 2026 contenders - The Business Journals
Source: The Business Journals
News
·
5w ago
Databricks appoints Jeremy Cooper as VP of Marketing in Asia Pacific & Japan to accelerate next phase of - ET Edge Insights
Source: ET Edge Insights
News
·
5w ago
Databricks secures $1.8 billion in credit - Techzine Global
Source: Techzine Global
News
·
5w ago