Point your AI agent at freehire and let it find you a job.

Get the CLI →

Car Next Door

NewBe an early applicant

Security Technologist II - Incident Command

Discussion

Summary

Security Analyst on Uber's CyberSecurity Incident Response team performing incident triage, digital forensics, threat hunting, and building automation with SIEM/SOAR and Python/Bash scripting.

About the Role

The CyberSecurity Incident Response team (CIRT) is at the forefront of protecting Uber, our customers, and our partners from evolving security threats. We are a hands-on, fast-paced team that responds to security incidents, conducts forensic investigations, and builds automated solutions to scale our defence.

As a Security Analyst on the CIRT team, you will be a key player in our incident response efforts. This is a technical and investigative role where you'll be responsible for:

  1. Responding to security incidents and mitigating threats across the company.
  2. Conducting in-depth investigations and digital forensics to uncover the root cause of attacks.
  3. Developing and implementing automation solutions using tools like SIEM and SOAR to improve our response capabilities.
  4. Collaborating with other security and engineering teams to address vulnerabilities and strengthen our security posture.
  5. Communicating your findings clearly and concisely to help shape our long-term security strategy.

We are looking for someone who is passionate about solving complex security puzzles and is eager to build innovative solutions to protect a global platform.

What the Candidate Will Need / Bonus Points

---- What the Candidate Will Do ----

  1. Incident Response : Act as a first responder to security alerts, triaging and containing threats across the Uber platform.
  2. Forensic Analysis : Investigate security incidents by analyzing logs, network traffic, and host data to determine the root cause, scope, and impact.
  3. Automation : Develop and deploy scripts and playbooks to automate incident response workflows and improve team efficiency.
  4. Threat Hunting : Proactively search for emerging threats and vulnerabilities using threat intelligence to mitigate risks before they can be exploited.
  5. Collaboration : Partner with other teams to share threat intelligence, recommend security improvements, and communicate incident findings.



---- Basic Qualifications ----

  1. Bachelor's degree in Computer Science, Information Security, or a related field..
  2. 3+ years of professional experience in a security-focused role, such as Incident Response, Security Operations, or Digital Forensics.
  3. Proven experience with incident response and handling in a professional environment.
  4. Familiarity with common security tools and technologies (e.g., SIEM, EDR, network monitoring).
  5. Experience in a scripting language (e.g., Python, Bash) for task automation and data analysis.
  6. Strong problem-solving skills and the ability to work effectively under pressure.
  7. Excellent written and verbal communication skills.



---- Preferred Qualifications ----

  1. Experience in a large-scale, enterprise environment, particularly within the technology sectors.
  2. Hands-on experience across multiple domains such as network, hosts, applications, data, cloud security etc.
  3. Strong understanding of network protocols, TCP/IP, and firewall concepts.
  4. Knowledge of scripting and development in languages like Python or Go .
  5. Experience with ML and GenAI security concepts is a plus.

For San Francisco, CA-based roles: The base salary range for this role is USD $153,000 per year - USD $170,000 per year.

You will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available