×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Senior Security Engineer, Detection & Response

Job in Sacramento, Sacramento County, California, 94203, USA
Listing for: Block
Full Time position
Listed on 2026-10-09
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 185000 - 310000 USD Yearly USD 185000.00 310000.00 YEAR
Job Description & How to Apply Below

Senior Security Engineer, Detection & Response

Remote Bay Area, CA, US

Posted Date: 10/02/26

Remote Bay Area, CA, US Req : R0007023 Posted Date: 10/02/26 Posted 5 days ago

Block is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams — People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more — provide support and guidance at the corporate level. They work across business groups and around the globe, spanning time zones and disciplines to develop inclusive People policies, forecast finances, give legal counsel, safeguard systems, nurture new initiatives, and more.

Every challenge creates possibilities, and we need different perspectives to see them all. Bring yours to Block.

The Role

Block’s Detection and Response Team (DART) investigates and responds to threats across our products and systems. Within DART, the Computer Security Incident Response Team (CSIRT) leads complex investigations and coordinates the response to security incidents across the company. You’ll establish what happened, determine the scope and impact, guide containment and recovery, and keep responders and stakeholders aligned.

You’ll be a trusted resource for your peers, contributing technical judgment and direction to complex investigations and helping the team make sound decisions. You’ll partner closely with engineers, other security teams, Legal, Privacy, and business leaders. Between incidents, you’ll innovate by building the tools, workflows, and procedures that make our response stronger.

You Will
  • Command complex, high-impact security incidents from initial assessment through containment, recovery, and closure.
  • Investigate threats across endpoint, identity, cloud, SaaS, network, and application systems and drive containment and remediation with system owners, weighing urgency, evidence preservation, and business impact.
  • Reconstruct timelines, preserve evidence, and determine the scope and impact of incidents.
  • Coordinate containment and remediation with system owners while balancing urgency and business impact.
  • Keep incident priorities, decisions, owners, and handoffs clear across teams and time zones.
  • Lead post-incident reviews and drive findings, uncertainty, and response decisions to technical teams and business partners.
  • Write code, queries, and automation that accelerate evidence collection, analysis, and response. Partner with triage, detection, threat intelligence, and infrastructure teams to address missing telemetry, improve detections, and remove recurring manual work.
  • Mentor responders and participate in the incident response on-call rotation.
You Have
  • 6+ years of hands-on incident response and digital forensics experience.
  • Experience commanding major security incidents involving multiple teams and competing priorities.
  • Strong knowledge of attacker behavior and depth in several areas of identity, endpoint, cloud, network, or application security.
  • Strong SQL/database understanding and log-analysis skills, and practical programming or scripting ability, such as Python. You can analyze large, messy datasets and build reliable tools that improve investigations and response, both with and without AI.
  • An established AI-assisted workflow and actively develop AI-based systems and processes that improve incident coordination and case management.
  • Clear communication and sound judgment when working with technical teams, executives, and sensitive information.
  • An engineering mindset and a track record of turning incident response lessons into lasting improvements.
  • A need to build: developing systems and workflows that improve incident response and connect with our broader investigation, automation, and…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary