Back to all jobs

[Remote] Security Response Engineer, Incident Response

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Chainlink Labs is the industry-standard oracle platform powering decentralized finance (DeFi). As a Security Response Engineer, you will own the full security incident response lifecycle, serve as incident commander, and improve response capabilities through operational responsibilities and project work.

Responsibilities

  • Own and improve the incident response lifecycle: act as incident commander for high-severity incidents
  • Join the team's on-call rotation: triage inbound alerts/escalations, coordinate internal and company-wide incidents
  • Improve response readiness: create and automate playbooks, conduct tabletop exercises
  • Address security telemetry gaps: improve existing or build/deploy new tools
  • Increase detection quality: write and tune high-signal detections (in Sigma)
  • Proactively identify and implement areas of improvement and modernization

Skills

  • Proven incident response leadership: experience as the primary incident commander for high‑severity security incidents involving multiple teams and external stakeholders, and can independently manage incident timelines, decisions, and communications
  • Operational rigor and investigation depth: demonstrated experience with triage, scoping, containment, and remediation across endpoint, cloud, and/or network based incidents; drives root‑cause analysis and post‑incident action items to completion
  • Experience in macOS-heavy environments: has secured and operated a predominantly macOS endpoint fleet: deploying / managing endpoint controls, telemetry collection, and performing investigations on macOS systems
  • Collaborative, straightforward communicator: writes clear incident updates and summaries; can explain risk, impact, and trade‑offs to both technical and non‑technical stakeholders; builds trust with partner teams during high‑pressure situations; comfortable handling the regular communication cadence of an incident
  • Detections experience: ability to create and refine detections based on investigations and threat intelligence
  • Previous coding experience (Python, Go, Rust, or similar): scripting for data parsing/enrichment and simple automations
  • Prior success in remote-first environments
  • Experience with detections‑as‑code (Sigma) development and workflows
  • Domain experience with blockchain/Web3 threats
  • Open-source contributions to security related projects

Company Overview

  • Chainlink Labs provides open-source blockchain oracle solutions and specializes in the development and integration of chainlink. It was founded in 2014, and is headquartered in San Francisco, California, USA, with a workforce of 501-1000 employees. Its website is https://chainlinklabs.com/.
  • Apply To This Job

    More remote roles to explore

    [Remote] Global Services Product Manager: Infrastructure Solutions

    Work from home Full-time role

    [Remote] Engineering Manager - Autonomy Evaluation

    Work from home Full-time role

    [Remote] Temporary Customer Service Representative

    Work from home Full-time role

    [Remote] Senior Security Automation Engineer (Remote in EST)

    Work from home Full-time role

    [Remote] Director, Paid Social Performance Marketing

    Work from home Full-time role

    [Remote] Account Executive Development Program - Virtual (Illinois, Massachusetts, Connecticut)

    Work from home Full-time role

    [Remote] Contract Growth Marketing Content Creator

    Work from home Full-time role

    [Remote] Account Executive, Private Equity Real Estate

    Work from home Full-time role

    [Remote] Business Development Manager (Control)

    Work from home Full-time role

    [Remote] Content Video Editor - AI Trainer

    Work from home Full-time role

    Experienced Data Entry Operator – Remote Work Opportunity at arenaflex

    Work from home Full-time role

    Manager Product

    Work from home Full-time role

    [Remote] Account Executive - Columbia, MD

    Work from home Full-time role

    Senior Technical Consultant | Public Sector | Remote

    Work from home Full-time role

    Python Developer Advocate Remote-first | | 100K - 125K a year + profit share

    Work from home Full-time role

    Operations Associate

    Work from home Full-time role

    Software Engineer, Platform - Portland, OR, USA

    Work from home Full-time role

    Experienced Data Entry Assistant (100% Remote) - Join arenaflex's Dynamic Team and Shape the Future of Data Management

    Work from home Full-time role

    Remote Live Chat Customer Support Specialist – Entry Level Position (Flexible Hours, Immediate Start)

    Work from home Full-time role

    Knowledge Strategist Team Lead

    Work from home Full-time role