Security Engineer - Incident Response
RemoteAmer, West Sepik Province, Independent State of Papua New Guinea
Job Summary
Lead incident command and triage for the Solana Incident Report Network, owning coordination from detection through resolution and post-incident review. Rapidly assess scope, severity, and impact to drive prioritization while coordinating with internal teams and external Solana stakeholders throughout active lifecycles. Develop and tune telemetry signals for on-chain event monitoring, identify detection gaps, and author runbooks tailored to current threat landscapes and ecosystem-specific attack patterns. Provide operational support for project logistics, track deliverables, and maintain clear documentation across all workstreams. Maintain on-call availability for high-tempo response environments.
Required Qualifications
- 3+ years of security engineering or incident response experience, with demonstrated depth in operational IR roles
- Experience with Web3 security, blockchain incident response, or protocol-level threat analysis
- Strong communication skills - able to convey technical findings clearly to both engineering teams and non-technical stakeholders under pressure
- Ability to work independently and with high autonomy in a fully remote setting
- Background in Web2 security operations (EDR, MDM, Google Workspace, or equivalent platforms)
- Familiarity with DeFi attack patterns, smart contract exploits, or on-chain forensics
- On-Call availability
Desired Qualifications
- Solana ecosystem experience
- Bachelor's or Master's degree in Computer Science, Information Security, or a related field (or equivalent practical experience)
- Proven experience as an Incident Commander or equivalent lead role in complex, fast-moving security events
- Hands-on experience developing or tuning telemetry, detection pipelines, or monitoring systems (SIEM, on-chain alerting, or equivalent)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.