<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>f509d407-0b5</externalid>
      <Title>Senior Security Engineer, Incident Response</Title>
      <Description><![CDATA[<p>You will be an individual contributor on the security Incident Response (IR) team at Databricks, reporting to the regional IR manager. Your responsibilities will include conducting security analysis and forensics, responding to high-priority alerts, and contributing to automations and agentic capabilities. You will be a security multiplier and help the team scale security incident response at Databricks.</p>
<p>Responsibilities:</p>
<ul>
<li>Respond to incidents as part of a distributed 24x7 operations and on-call schedule.</li>
<li>Triage and respond to security events and alerts, ensuring quick and effective containment.</li>
<li>Contribute to security investigations, conducting analysis and forensics across a range of data sources to determine the timeline and impact of security events.</li>
<li>Build automations, including leveraging AI and agentic platforms, to deliver autonomous capabilities, expedite your work, and scale the impact of the team.</li>
<li>Communicate technical decisions through design docs and tech talks, and mentor junior security responders via security guidance, design reviews, and code reviews.</li>
</ul>
<p>What we look for:</p>
<ul>
<li>Bachelor&#39;s Degree AND 4+ years experience in Incident Response work OR Master&#39;s Degree AND 2+ years experience.</li>
<li>Strong cloud security background in at least 1 of AWS, GCP, or Azure, and working knowledge of the others.</li>
<li>Knowledge of AI/LLM and agentic capabilities, including effective prompting and use of MCP, agents, and agent skills.</li>
<li>Broad security subject matter expertise.</li>
<li>Expertise in few core IR skills (DFIR, Reverse Engineering, Traditional Network Security, Storage and access security, Sandboxing, Compute security, etc.).</li>
<li>Experience with Enterprise Security and SaaS applications.</li>
<li>Working knowledge of a SIEM and SOAR.</li>
<li>Experience building Incident Response Tooling and scripting language skills.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>cloud security, AWS, GCP, Azure, AI/LLM, agentic capabilities, security subject matter expertise, DFIR, Reverse Engineering, Traditional Network Security, Storage and access security, Sandboxing, Compute security, Enterprise Security, SaaS applications, SIEM, SOAR, Incident Response Tooling, scripting language skills</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Databricks</Employername>
      <Employerlogo>https://logos.yubhub.co/databricks.com.png</Employerlogo>
      <Employerdescription>Databricks is a data and AI company that provides a unified and democratized data, analytics, and AI platform to over 10,000 organizations worldwide.</Employerdescription>
      <Employerwebsite>https://databricks.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/databricks/jobs/8026632002</Applyto>
      <Location>Amsterdam, Netherlands; Berlin, Germany; London, United Kingdom; Remote - Denmark; Remote - France; Remote - Germany; Remote - Italy; Remote - Spain; Remote - Sweden</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
  </jobs>
</source>