Navan

Sr. Security Engineer, Incident Response

Navan$113K — $252K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in Incident Response, SOC, or Security Engineering
  • Familiar with MITRE ATT&CK framework and adversary TTPs
  • Experience with CrowdStrike Falcon and SIEM platforms
  • Proven track record in leading high-severity incident containment
  • Strong communication and leadership skills under pressure

Responsibilities

  • Act as primary Incident Lead during critical events
  • Drive incident response lifecycle: triage, containment, evidence capture
  • Design workflows in Tines for automating triage and containment
  • Manage detection rules with CrowdStrike EDR and SIEM capabilities
  • Monitor data risks and address IAM vulnerabilities
  • Collaborate with infrastructure teams for secure system deployments
  • Evaluate response strategies for emerging security threats

Benefits

  • Active participation in on-call rotation for incident response
  • Opportunity to work within a multi-cloud infrastructure
  • Use of modern security tools and technology
  • Collaborative work across cross-functional teams
  • Contributions to the global travel and expense platform's security
Full Job Description
At Navan, you will serve as the technical lead for our incident response lifecycle, driving the containment and remediation of security threats across our multi-cloud infrastructure, products, and operational environments. You will balance hands-on technical investigations with the leadership required to coordinate response efforts, leveraging a modern security stack to protect our global travel and expense platform.

What You'll Do:
  • Incident Response Leadership:Act as the primary Incident Lead during high-severity events. Own the end-to-end response lifecycle: driving triage, containment, evidence capture, and post-incident root-cause analysis.
  • Automation & SOAR Engineering: Use Tines to build and design workflows that automate triage, enrichment, and containment actions, significantly reducing operational toil and improving time-to-contain.
  • Detection & Endpoint Monitoring: Manage and fine-tune detection rule lifecycles utilizing CrowdStrike EDR and SIEM/SOAR capabilities to maintain high-precision, low-latency coverage against modern adversary tradecraft.
  • Data Protection & Visibility: Monitor and respond to data risks across endpoints, identity, and SaaS applications using Cyberhaven DLP. Identify gaps in IAM and vulnerability management and advocate for direct fixes.
  • Architecture Partnership: Partner with infrastructure owners to ensure new systems ship across all cloud environments with the right telemetry, encryption, authentication, and response playbooks from day one.
  • Emergent Threats: Evaluate and design response strategies for frontier security concerns, such as automated agents or bots operating across infrastructure at scale.
  • On-Call Rotation:Actively participate in the scheduled Incident Response on-call rotation, ensuring reliable coverage and operational readiness for emergent threats.

What We're Looking For:
  • 5+ years of experience in a dedicated Incident Response, SOC, or Security Engineering role, with a proven track record of leading high-severity incident containment in fast-paced environments
  • Strong familiarity with the MITRE ATT&CK framework, modern adversary tactics, techniques, and procedures (TTPs), and common attack vectors targeting SaaS platforms
  • Proven experience managing and tuning detection logic within CrowdStrike Falcon (or equivalent enterprise EDR/XDR) and enterprise SIEM platforms.
  • Excellent leadership skills with the ability to remain calm under pressure, coordinate cross-functional teams (Engineering, Legal, PR), and clearly communicate complex technical risks to stakeholders.


The posted pay range represents the anticipated low and high end of the compensation for this position and is subject to change based on business need. To determine a successful candidate's starting pay, we carefully consider a variety of factors, including primary work location, an evaluation of the candidate's skills and experience, market demands, and internal parity.

For roles with on-target-earnings (OTE), the pay range includes both base salary and target incentive compensation. Target incentive compensation for some roles may include a ramping draw period. Compensation is higher for those who exceed targets. Candidates may receive more information from the recruiter.

Pay Range

$113,400-$252,000 USD

About Navan

Navan is a mining company that focuses on the exploration and development of mineral properties. The company was founded in 2019 and is headquartered in Vancouver, Canada. Navan's primary focus is on the exploration and development of gold and silver properties in North America. The company's management team has extensive experience in the mining industry, and is committed to responsible and sustainable mining practices. Navan is a publicly traded company, and its shares are listed on the Canadian Securities Exchange.
Learn more about Navan
Size
10 employees
Industry
Founded
2015

Similar Jobs

More Jobs at Navan

More Information Technology Jobs

Find similar Sr. Security Engineer, Incident Response jobs: