🏢
Stripe
Security Incident Response Engineer
Job Description
ABOUT THE ROLE
Stripe is building the financial infrastructure that powers the global internet economy. As a Security Incident Response Engineer you will be at the forefront of protecting millions of businesses and consumers from evolving cyber threats. You will work within a distributed team that spans AMER, EMEA, and APAC, collaborating with security engineering, data science, and product stakeholders to detect, investigate, and remediate incidents that could impact Stripe’s services and reputation. Your work will directly influence the resilience of our platform and the trust our customers place in us.
WHAT YOU'LL DO
You will analyze complex threat data from client devices and internal systems, applying behavioral analytics to distinguish legitimate activity from malicious intent. You will design and refine detection models, ingesting raw telemetry into scalable pipelines that feed our SIEM and SOAR platforms. You will lead the development of enrichment logic that transforms raw logs into actionable signals, reducing investigation time and false positives. You will serve as the primary contact for cross‑functional teams, translating technical findings into clear, impact‑focused recommendations for prevention and response. You will mentor junior analysts, champion best practices, and continuously iterate on our incident response playbooks to keep pace with emerging tactics. You will also coordinate with global stakeholders to ensure that our response capabilities remain robust across time zones and regulatory environments.
WHAT YOU'LL NEED
You bring at least three years of experience in large‑scale data analysis and behavioral security modeling, with a proven track record of building or improving detection systems. You hold a B.S. or M.S. in Computer Science or a related discipline, or possess equivalent professional experience. Your programming expertise includes Python and SQL, and you are comfortable extending your skill set to additional languages as needed. You have hands‑on experience with log analysis, network security, digital forensics, and incident response investigations, and you can develop novel analytical methods to automate detection and response. You communicate complex technical insights clearly to both technical and non‑technical audiences, and you approach risk reduction with a creative, holistic mindset. An adversarial perspective on threat actor tactics, techniques, and procedures is highly valued.
WHY REMOTE
Stripe’s distributed culture empowers teams to work asynchronously while maintaining tight collaboration across continents. Your day will be structured around clear objectives, daily stand‑ups, and real‑time communication tools, allowing you to balance deep focus with timely coordination with EMEA and APAC colleagues. The flexibility of a remote environment means you can design a schedule that maximizes productivity and work‑life harmony, while still contributing to a high‑velocity, globally‑aligned security mission.
BENEFITS
Stripe offers comprehensive health coverage, including medical, dental, and vision plans; a generous paid time off policy with flexible sick leave; a remote work stipend to support home‑office setup; a learning and development budget for courses, conferences, and certifications; competitive equity packages; and a supportive culture that values continuous growth and innovation.