Staff Security Engineer, Incident Response

Databricks · Belgium; Finland; Remote - Denmark; Remote - France; Remote - Germany; Remote - Italy; Remote - Netherlands; Remote - Spain; Remote - Sweden; Remote - United Kingdom; Switzerland · Security · listed September 24, 2026

The shape of it

Seniority
Staff
Experience asked
5–7 years
Where
Remote
Requirements listed
8
Length
598 words

In the posting’s own words

You will be an individual contributor on the security Incident Response (IR) team at Databricks, reporting to the regional IR manager. You will be responsible for conducting security analysis and forensics, responding to high-priority alerts and contributing to automations and agentic capabilities. You will be a security multiplier and help the team scale security incident response at Databricks.

What it asks for · 8

  • Bachelor's Degree AND 7+ years experience in Incident Response work OR Master's Degree AND 5+ years experience.
  • Cloud security expertise in at least 1 of AWS, GCP or Azure, and proficiency in the others.
  • Proficiency in AI/LLM and agentic capabilities. Prefer experience with building and operating agentic systems in a security setting.
  • Broad security subject matter expertise.
  • Expertise in a few core IR skills (DFIR , Reverse Engineering, Traditional Network Security, Storage and access security, Sandboxing, Compute security, etc.).
  • Experience with Enterprise Security and SaaS applications.
  • Working knowledge of a SIEM and SOAR.
  • Experience building Incident Response Tooling, scripting language skills and experience with AI coding tools.

What the job covers

  • You will respond to incidents as part of a distributed 24x7 operations and on-call schedule.
  • You will triage and respond to security events and alerts, ensuring quick and effective containment.
  • You will conduct analysis and forensics across a range of data sources to determine the timeline and impact of security events.
  • You will provide technical leadership and influence team direction.
  • You will develop solutions, including leveraging AI and agentic platforms, to deliver autonomous capabilities, expedite your work and scale the impact of the team.
  • You will communicate technical decisions through design docs and tech talks, and mentor junior security responders via security guidance, design reviews and code reviews.

Degree language

  • Bachelor's Degree AND 7+ years experience in Incident Response work OR Master's Degree AND 5+ years experience.

Tools and skills named

Security & compliance
  • Security19×
Data
  • Databricks4×
Cloud & infra
  • AWS
  • Azure
  • GCP
Ways of working
  • Code review
  • On-call
Go to market
  • SaaS
Models & research
  • LLM

Words the posting leans on

  • security19×
  • experience6×
  • incident response6×
  • agentic4×
  • expertise3×
  • forensics3×
  • impact3×
  • security incident3×
  • agentic capabilities2×
  • alerts2×
  • analysis2×
  • building2×
  • data2×
  • degree2×
  • design2×
  • enterprise2×

Counted from the posting after the mission statement and the legal notices are set aside. The ones near the top are the ones a screener is looking for.

The posting, your resume, and the gaps between them. One click loads all three.

More open at Databricks

every open role at Databricks →

How this page was made

An automated read of a public job posting, fetched September 24, 2026 and last changed by Databricks on September 24, 2026. Every list above is pulled from the posting’s own sentences — nothing rewritten, nothing added, no judgment about the role or the company. Counts and seniority are read off the text by rule, so they can be wrong where the posting is unusual. The original is the only thing that binds. Openings close without warning; check the source before spending an evening on it.