About the jobThe Security Incident Response Team (SIRT) is looking for a Senior Security Engineer who is passionate about solving Twilio's mission of security and reliability by working across the organization to lead the technical response to security events and incidents across Twilio's global infrastructure, services and applications by effectively conducting triage, containment, remediation and driving post-incident betterments. You will work within a team that partners with R&D Engineering and R&D Business teams to develop scalable processes and technical solutions.
You will be a valued member of a team of deeply technical Security Engineers to focus on creating bespoke and standard Security response processes, enhancing our capabilities for threat mitigation and incident response, and then automating as much as you possibly can (and more)! You will help us to grow our global, scaled team and program.
ResponsibilitiesIn this role, you'll:
- Be an Owner: Lead and support the response to all security events and incidents across Twilio's complex global infrastructure, services and applications.
- Write It Down: Be responsible for documentation of incidents and projects you work on and craft best practices as runbooks and standard operating procedures to share knowledge across teams.
- Wear the customer's shoes: Work cross-collaboratively to understand and help solve challenges related to a broad spectrum of threat actors and activity.
- Ruthlessly Prioritize: Work to improve Twilio's security and reliability posture by driving identified betterments from security events and incidents.
- Don't Settle: Rapidly acquire new technical skills and knowledge in a fast-paced, highly disruptive industry environment.
- Draw the Owl: Own the security incident lifecycle, respond to incidents and participate in on-call rotation and participate in RCAs for security incidents.
- Empower Others: Build, cultivate, and maintain positive relationships with internal customers to identify and facilitate solutions to increase the impact of the team's work.
- Be Inclusive: Provide mentorship, support, and care for the team in a way that enables long-term career development, happiness, and success at scale.
Qualifications Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
*Required:- Proven experience: 5+ years of security incident response in a production-cloud environment
- Subject-matter expert on security issues and technologies
- Ability to utilize AI for comprehensive, complex security incident response activities delivering high fidelity detections
- Advanced knowledge of service-oriented architectures, as well as experience with security tools and technologies fit for a cloud environment
- Experience working across a technology stack on difficult security challenges and initiatives
- Experience with SIEM platforms and the ability to extend their functionality
- Experience with SOAR tools and automating manual security processes
- Experience in either AWS, GCP, or other large cloud platform
- Excellent written and verbal communication skills
- Ability to influence and build effective working relationships with every level of the organization.
Desired:- AI Model Security & Posture Management: Support Implementation of controls and safeguards to prevent AI vulnerabilities, such as prompt injections, model evasion, and data poisoning
- AI-Driven Threat Response: Utilize GenAI and LLM-based security use cases to rapidly interpret alerts, reduce false positives, and contextualize threat data
- Artifact & Evidence Triage: Collects intrusion artifacts and forensically sound images to analyze malware, trojans, and source code.
- Threat Intelligence Integration: Monitors external vendor data and threat intelligence to analyze trends and proactively defend against emerging risks
Location- This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.
Travel We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.
What We OfferWorking at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.
Compensation*Please note this role is open to candidates outside of California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State. The information below is provided for candidates hired in those locations only.
The estimated pay ranges for this role are as follows:
- Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C. : $141,520.00 - $176,900.00.
- Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): $149,840.00 - $187,300.00
- Based in the San Francisco Bay area, California: $166,400.00 - $208,000.00.
- This role may be eligible to participate in Twilio's equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.
The successful candidate's starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
Application deadline information Applications for this role are intended to be accepted until 30th Aug, but may change based on business needs.