# Senior Security Engineer, Incident Response Team (Australia)

**Company**: GitLab
**Location**: Remote, Australia
**Work arrangement**: remote
**Experience**: senior
**Job type**: full-time
**Category**: Engineering
**Industry**: Technology

**Apply**: https://job-boards.greenhouse.io/gitlab/jobs/8815229002?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply
**Canonical**: https://yubhub.co/jobs/job_092dc78c-03a

## Description

As a Senior Security Engineer on GitLab's Security Incident Response Team (SIRT), you will protect GitLab.com and GitLab from security threats.

You will lead high-impact incidents and investigations, drive continuous improvements in defense, detection, and response capabilities, and help scale security operations through automation and intelligent workflows.

Operating within a 24/7 global environment, you will own incidents end-to-end - from detection and triage through containment, eradication, and recovery - while partnering cross-functionally to strengthen GitLab’s overall security posture.

Key aspects of this role include:

- Leading and coordinating end-to-end incident response for high-severity security events

- Preparing clear executive communications during incidents

- Investigating complex security incidents across cloud environments

- Partnering with Detection Engineering to design and implement detection capabilities

- Building and enhancing automation and AI-assisted workflows

- Partnering with Threat Intelligence to contextualize threats

- Conducting root cause analysis and leading post-incident reviews

- Developing and maintaining runbooks, playbooks, and operational documentation

- Collaborating cross-functionally during incidents and leading proactive initiatives

- Mentoring other engineers and helping elevate the team’s overall incident response maturity

Requirements:

- Strong experience in security incident response and investigations in cloud-first environments

- Experience using or administering Git/GitLab in a security or engineering context

- Hands-on experience with SIEM, EDR, and/or detection engineering

- Experience with cloud platforms (AWS & GCP)

- Familiarity with threat intelligence and adversary tactics (e.g., MITRE ATT&CK)

- Experience building or working with automation (e.g., Python, scripting, SOAR platforms)

- Interest or experience in applying AI/ML or data-driven techniques to detection, triage, or response workflows

- Strong analytical and problem-solving skills; ability to operate effectively during high-severity incidents

- Excellent written communication skills with a passion for clear, actionable documentation

- Growth mindset with a proactive approach to identifying and mitigating security risks

## Skills

### Required
- security incident response
- cloud environments
- SIEM
- EDR
- detection engineering
- cloud platforms
- threat intelligence
- automation
- AI/ML
- analytical skills
- written communication

---

Source: [Apply at job-boards.greenhouse.io](https://job-boards.greenhouse.io/gitlab/jobs/8815229002?utm_source=yubhub.co&utm_medium=jobs_feed&utm_campaign=apply)
