Senior Security Operations Engineer driving security incident response efforts for Affirm's systems and customers. Collaborating with teams to improve security posture and build automated playbooks.
Responsibilities
Lead security incidents end-to-end, from detection and triage through containment, remediation, and post-incident review.
Act as incident commander, driving clear decisions and alignment across teams during high-pressure situations.
Conduct hands-on investigations across cloud and endpoint environments to determine root cause and impact.
Partner with Observability & Automation to improve detections, reduce noise, and build automated response playbooks.
Contribute to and refine incident response playbooks, runbooks, and documentation to improve readiness and consistency.
Collaborate with Security, Infrastructure, and Product teams to identify gaps and strengthen the incident response lifecycle.
Communicate effectively during incidents, providing clear updates to both technical and non-technical stakeholders.
Requirements
5+ years of experience in Security Operations or Detection & Response, with strong hands-on incident response in cloud environments (AWS and EKS experience strongly preferred).
Proven ability to lead security incidents, including containment and remediation, in fast-moving environments.
Strong investigative and analytical skills, with the ability to synthesize signals from multiple data sources.
Experience with security tooling such as SIEM and EDR platforms (e.g., Splunk, Elastic, SentinelOne, CrowdStrike, or similar).
Solid understanding of cloud security concepts and their application in real-world scenarios.
Strong communication skills, with the ability to clearly convey information across technical and non-technical audiences.
Experience building or improving automation for incident response workflows (e.g., scripting in Python; infrastructure-as-code is a plus).
Benefits
Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount
Security Operations Lead designing Microsoft Sentinel and managing security operations at PwC. Collaborating with teams to enhance client security through advanced technology.
SOC Analyst monitoring detections for clients, executing response playbooks, and improving threat detection capabilities. Join Arctiq to protect organizations in today's digital landscape.
Lead SOC Analyst at IFS responsible for protecting global SaaS platform and internal systems. Collaborating across security teams to enhance security operations, detection, and response capabilities.
Cybersecurity Analyst providing first - level incident response and client support at CDW. Monitoring security incidents, providing client communications, and engaging in professional development activities.
Business Development Manager responsible for sales engagements with Field Sales teams. Driving SecOps product revenue objectives and solving complex security challenges.
Security Operations Analyst part of Diligent’s Security team ensuring safety and compliance for personnel and assets. Monitoring security alerts and managing incident responses effectively.
Trust & Safety Senior Associate in InfoSec Ops at Instacart ensuring data safety through collaboration and operational management responsibilities. Focus on vendor data practices, audit readiness, and project leadership.
Security Operations Specialist providing second - level technical client support for cyber incidents and system issues at CDW. Requires a degree and security experience in a client - focused environment.