Senior Security Engineer
About the Role
We are seeking a highly skilled Senior Security Engineer to join our advanced Security Operations team. This role focuses on leading complex incident response and forensic investigations across Windows, macOS, Linux, and AWS environments, while modernizing security operations through automation and AI-driven capabilities.
Responsibilities
- Lead high-priority incident response and forensic investigations, serving as the primary escalation point for advanced analysis, containment, recovery, root cause determination, and executive-level reporting.
- Drive threat detection and response across AWS, Windows, macOS, Linux, and endpoint security platforms, leveraging services such as GuardDuty, Security Hub, Detective, CloudTrail, IAM, VPC Flow Logs, and SentinelOne.
- Conduct malware analysis, host and cloud forensics, evidence collection, and threat hunting activities to identify attack vectors, persistence mechanisms, and business impact while maintaining sound investigative practices.
- Design and implement automated security workflows, AI-assisted playbooks, and AWS-native response capabilities to improve detection accuracy and reduce MTTD and MTTR.
- Partner with Security, IT, and DevOps teams to enhance security posture, improve processes and tooling, develop detection content, and mentor junior security engineers.
Requirements
- 5+ years of cybersecurity experience, including 2+ years in senior Incident Response, Security Operations, Threat Detection, or Digital Forensics roles.
- Deep expertise securing and investigating AWS environments, including IAM, CloudTrail, Config, CloudWatch, GuardDuty, Security Hub, Detective, VPC Flow Logs, S3 logging, and serverless security controls.
- Experience conducting forensic investigations, evidence collection, log analysis, malware triage, and cloud-based incident investigations while maintaining chain-of-custody best practices.
- Strong scripting and automation skills with Python, PowerShell, and/or Bash, including building security automations using AWS services such as Lambda, Step Functions, and EventBridge; experience applying AI and ML technologies to security operations is highly desirable.
- Strong communication and investigative skills, including technical reporting, executive presentations, and preferred certifications such as AWS Security Specialty, GCIH, GCFA, GCIA, OSCP, or CISSP.
Qualifications
You might also have experience with:
- Digital forensics platforms such as AXIOM, F-Response, Timesketch, Volatility, Velociraptor, or other enterprise investigation tools.
- Additional EDR/XDR platforms such as CrowdStrike, Microsoft Defender, or Carbon Black.
- Building and maintaining SOAR platforms, automated response workflows, and cloud-native security operations.
- AI security technologies including Amazon Bedrock, Microsoft Security Copilot, Google SecOps/Chronicle, or open-source LLM integrations.
- Multi-account AWS environments, AWS Organizations, CSPM solutions, and cloud security frameworks such as Prowler, Trusted Advisor, or CNAPP platforms.
Benefits
This role is eligible for a comprehensive benefits package, which includes:
- Medical, dental, and vision insurance
- 401(k)-retirement plan
- Paid sick time, flexible time off, and parental leave
- Life insurance, short- and long-term disability, AD&D insurance
- Mental health or EAP programs
- Remote or hybrid work options
- Paid holidays and Wellness days
- Tuition assistance, adoption, surrogacy, and fertility benefits
- Dependent daycare and backup care benefits
- Employee stock purchase plan
- Financial education and advice
Pay
The estimated pay ranges for this role are:
- Bay Area (Santa Clara, San Francisco) and Los Angeles: $154,000—$231,000 USD
- Austin, D.C. Metro, CA (non-Bay Area), HI, IL, MA, NH, OR, VA, WA: $133,000—$199,000 USD
- New York City Metro, Kirkland/Seattle: $140,800—$211,200 USD
- All other US locations not previously listed: $118,500—$177,500 USD
Location Details
This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands. GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC.
About Us
GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success.