Role
Senior Security Incident Handler at Databricks. Databricks is seeking a seasoned security professional to join our Security Operations team. The role focuses on detecting, investigating, containing, eradicating, and recovering from security incidents across Databricks' cloud platforms and services. You will coordinate cross-functional incident response, communicate risks to stakeholders, and help advance our security programs.
Responsibilities
- Lead and coordinate security incident response efforts in collaboration with SOC and engineering teams.
- Monitor security events and telemetry, perform triage, containment, and eradication actions.
- Perform root cause analysis, post-incident reviews, and lessons learned documentation.
- Develop detections, playbooks, and response procedures; improve containment and recovery time.
- Collaborate with product, engineering, and security teams to reduce risk and implement security controls.
- Support adherence to regulatory and compliance requirements related to security incidents.
Qualifications
- 5+ years in security incident response or security operations (SOC).
- Experience with SIEM tooling (e.g., Splunk, Datadog, or similar), EDR, threat intelligence, and cloud security models.
- Strong analytical, communication, and incident storytelling skills.
- Ability to work in a fast-paced, collaborative environment.
About Databricks
Databricks enables data and AI-driven innovation. This role offers the opportunity to impact security for a fast-growing technology company.
Benefits
- Competitive salary commensurate with experience.
- Comprehensive health benefits, 401(k) / retirement plans, and generous time off.
- Flexible work arrangements and supportive team culture.