Hashtag Web3 Logo
Stripe logo

Security Incident Response Engineer

Stripe
US RemotePosted 7 days ago
Apply

Stripe is hiring a Security Incident Response Engineer in 8611 Security Analytics — US Remote. The overview below is synthesized from the employer posting on stripe.com: factual requirements and scope are preserved, but prose is rewritten with editorial context. Verify details and apply via the employer link.

About Stripe

Company context from the listing:

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities.

About the team

Company context from the listing:

The Security Incident Response team works to analyze, investigate, and respond to threats before they impact Stripe’s business or users. From external attacks to insider threats, our goal is to respond with speed and precision, remediate, and support the incident postmortem process.

What you’ll do

Day-to-day scope for the Security Incident Response Engineer as described in the posting:

You will leverage your security engineering experience to improve incident response capabilities at Stripe. With an emphasis on user and entity behavior analytics, as well as endpoint hardening, you will gain a deep understanding of Stripe’s systems, tooling, and workflows to be able to differentiate between legitimate and malicious activity.

Responsibilities

Day-to-day scope for the Security Incident Response Engineer as described in the posting:

  • Analyze and investigate a broad range of threats or activities occurring on client devices
  • Develop requirements for detection models and enhancements to existing systems
  • Collect, transform, and ingest raw data from disparate sources into threat detection pipelines
  • Streamline incident response capabilities, ensuring the tooling and processes are clear
  • Work cross-functionally with security engineering and data science teams to build solutions for analyzing security events data at scale and protecting Stripe networks, systems, and data from threats
  • Provide actionable insights to help identify, prevent, detect, and respond to anomalous or potentially malicious user and entity activity
  • Act as the subject-matter expert and primary contact for stakeholder teams invested in Security Analytics and Detection programs as well as Stripe-wide security initiatives
  • Collaborate effectively with teammates, leading projects, mentoring others, and developing and championing quality standards within the team

Who you are

Experience and skills the team lists as required:

We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply.

Minimum requirements

Experience and skills the team lists as required:

  • 3+ years experience analyzing large data sets to solve problems and/or building models with a behavioral approach to security
  • B.S. or M.S. Computer Science or related field, or equivalent experience
  • Expert knowledge of Python and SQL, and familiarity with other programming languages
  • Existing experience with log analysis (e.g. first or third party applications, system / data access, event logs), network security, digital forensics, and incident response investigations
  • Proficiency with developing and using novel analytical methods to build, automate, and improve detection and response systems
  • Ability to communicate results clearly and focus on impact
  • Ability to think creatively and holistically about reducing risk in a complex environment

Preferred qualifications

Experience and skills the team lists as required:

  • An adversarial mindset, understanding the goals, behaviors, and TTPs of threat actors.
  • Experience with software engineering, data processing and analysis tools (e.g. Databricks/Jupyter, Trino, etc.)
  • Familiarity with common open-source frameworks for big data processing and/or data science (PySpark, Pandas, Sci-kit Learn, etc.)
  • Experience with tactical threat intelligence and/or hunting for sophisticated threat actors in an enterprise environment
  • Familiarity with network observability, security software, or data engineering solutions (osquery, Splunk/LogScale, etc.)
  • Experience in one or more of the following areas: user and entity behavior analytics (UEBA), security information event management (SIEM), security orchestration automation and response (SOAR), or data loss prevention (DLP)