WFH.teamOpen app
Back to remote jobs
Remote job detail

Staff Security Engineer, Incident Response

Databricks

LocationBelgium, Finland, Denmark
SeniorityStaff
CompanyDatabricks
Verified recentlyChecked today
Compensation

Salary not listed

Salary details are shown when available from the source listing. Sign in before applying so the role can be reviewed against your resume, salary goals, seniority, timezone, and location eligibility.

Requirements and working style

Decision details from the source listing

Experience

5-7 years stated

Education

Bachelor's degree and 7+ years of incident response experience, or a master's degree and 5+ years of incident response experience

Schedule

fixed

Benefits stated
Comprehensive benefits and perks; details vary by region

These fields are normalized from the employer's text. Confirm details on the employer site before applying.

WFH.team analysis

What this posting tells you

Staff-level individual-contributor role on Databricks' security incident response team. The role includes responding to incidents in a distributed 24x7 on-call operation, conducting security analysis and forensics, and developing automation and agentic capabilities. Remote locations are listed, but the final location entry is truncated.

Role lane

Data, Design and creative, DevOps, Medical billing, Operations, Security, Software

Where you can work

Belgium, Finland, Denmark, France, Germany, Italy, Netherlands

Working hours

Timezone overlap is not stated.

Arrangement

Staff · full_time

Required signals
Incident responseCloud security across AWS, GCP, and AzureSecurity analysis and forensicsAI/LLM and agentic capabilitiesEnterprise security and SaaS applicationsSIEM and SOARIncident response toolingScriptingDFIR, reverse engineering, network security, storage and access security, sandboxing, or compute security
Preferred signals
Building and operating agentic systems in a security settingAI coding tools
Confirm before applying
  • Required timezone overlap is not stated
  • Compensation is not listed
Market context

Data hiring on WFH.team

7,335active related roles
4,576new in the latest period
297.7jobs per 100 candidates
$183kmedian of comparable listed ranges

Category counts come from WFH.team's latest published remote job market snapshot.

Explore the remote job market
Skills and signals
Incident responseCloud security across AWS, GCP, and AzureSecurity analysis and forensicsAI/LLM and agentic capabilitiesEnterprise security and SaaS applicationsSIEM and SOARIncident response toolingScriptingDFIR, reverse engineering, network security, storage and access security, sandboxing, or compute securityBuilding and operating agentic systems in a security settingAI coding toolsRemote in listed European locations; the listing names Belgium, Finland, Denmark, France, Germany, Italy, and the Nether
Job description

Staff Security Engineer, Incident Response at Databricks

RDQ327R180

Staff Security Engineer, Incident Response

The Incident Response team's mission is to respond to security threats, incidents and investigations to protect our customers, employees and enterprise data in a fast, efficient and standardised manner. We're a tight-knit team of security incident responders and incident handlers doing "Security for Databricks on Databricks", using our own platform to create near-real-time log analytics, alerting and forensics.

You will be an individual contributor on the security Incident Response (IR) team at Databricks, reporting to the regional IR manager. You will be responsible for conducting security analysis and forensics, responding to high-priority alerts and contributing to automations and agentic capabilities. You will be a security multiplier and help the team scale security incident response at Databricks.

The impact you will have

  • You will respond to incidents as part of a distributed 24x7 operations and on-call schedule.
  • You will triage and respond to security events and alerts, ensuring quick and effective containment.
  • You will conduct analysis and forensics across a range of data sources to determine the timeline and impact of security events.
  • You will provide technical leadership and influence team direction.
  • You will develop solutions, including leveraging AI and agentic platforms, to deliver autonomous capabilities, expedite your work and scale the impact of the team.
  • You will communicate technical decisions through design docs and tech talks, and mentor junior security responders via security guidance, design reviews and code reviews.

What we look for

  • Bachelor's Degree AND 7+ years experience in Incident Response work OR Master's Degree AND 5+ years experience.
  • Cloud security expertise in at least 1 of AWS, GCP or Azure, and proficiency in the others.
  • Proficiency in AI/LLM and agentic capabilities. Prefer experience with building and operating agentic systems in a security setting.
  • Broad security subject matter expertise.
  • Expertise in a few core IR skills (DFIR , Reverse Engineering, Traditional Network Security, Storage and access security, Sandboxing, Compute security, etc.).
  • Experience with Enterprise Security and SaaS applications.
  • Working knowledge of a SIEM and SOAR.
  • Experience building Incident Response Tooling, scripting language skills and experience with AI coding tools.

About Databricks

Databricks is the Data and AI company. More than 20,000 organizations worldwide — including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 — rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog. To learn more, follow Databricks on LinkedIn , X , YouTube , and Instagram .

Benefits

At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here .

Our Commitment to Diversity and Inclusion

At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics.

Compliance

If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.

Company context

Working remotely at Databricks

As the leader in Unified Data Analytics, Databricks helps organizations make all their data ready for analytics, empower data science and data-driven decisions across the organization, and rapidly adopt machine learning to outpace the competition.

Headquarters
United States, Canada, United Kingdom, Netherlands, Singapore, Australia, Germany, France, India, Japan, China, Brazil, and Sweden
Team size
1001-5000
Founded
2013
Remote policy

Remote hiring signal is inferred from active confirmed-remote job listings.

Application process

Review current openings on Databricks's official careers page before applying.

SassNode.jsJavaScriptPythonHTML5JavaCSS 3PHPC#Go
Research Databricks
Remote Staff Security Engineer, Incident Response at Databricks | WFH.team