- Job type
- Full-time
- Work mode
- Remote
- Level
- Senior
- Department
- Information Technology
- Experience
- 5+ years experience
- Posted
- Aug 4, 2026
About the role
Join Our Team...
We are seeking a highly skilled Senior Security Engineer to join our advanced Security Operations team. This role is focused on leading complex incident response and forensic investigations across Windows, macOS, Linux, and AWS environments while helping modernize security operations through automation and AI-driven capabilities. The ideal candidate is a hands-on security expert with deep AWS security expertise, strong threat detection and digital forensic skills, and experience leveraging AI and machine learning technologies to improve detection, response, and operational efficiency. You will play a key role in protecting critical assets, conducting high-impact investigations, mentoring team members, and driving the evolution of our security program against sophisticated and emerging threats.
What You'll Get to Do...
- Lead high-priority incident response and forensic investigations, serving as the primary escalation point for advanced analysis, containment, recovery, root cause determination, and executive-level reporting.
- Drive threat detection and response across AWS, Windows, macOS, Linux, and endpoint security platforms, leveraging services such as GuardDuty, Security Hub, Detective, CloudTrail, IAM, VPC Flow Logs, and SentinelOne.
- Conduct malware analysis, host and cloud forensics, evidence collection, and threat hunting activities to identify attack vectors, persistence mechanisms, and business impact while maintaining sound investigative practices.
- Design and implement automated security workflows, AI-assisted playbooks, and AWS-native response capabilities to improve detection accuracy and reduce MTTD and MTTR.
- Partner with Security, IT, and DevOps teams to enhance security posture, improve processes and tooling, develop detection content, and mentor junior security engineers.
Your Experience Should Include...
- 5+ years of cybersecurity experience, including 2+ years in senior Incident Response, Security Operations, Threat Detection, or Digital Forensics roles.
- Deep expertise securing and investigating AWS environments, including IAM, CloudTrail, Config, CloudWatch, GuardDuty, Security Hub, Detective, VPC Flow Logs, S3 logging, and serverless security controls.
- Experience conducting forensic investigations, evidence collection, log analysis, malware triage, and cloud-based incident investigations while maintaining chain-of-custody best practices.
- Strong scripting and automation skills with Python, PowerShell, and/or Bash, including building security automations using AWS services such as Lambda, Step Functions, and EventBridge; experience applying AI and ML technologies to security operations is highly desirable.
- Strong communication and investigative skills, including technical reporting, executive presentations, and preferred certifications such as AWS Security Specialty, GCIH, GCFA, GCIA, OSCP, or CISSP.
You Might Also Have...
- Experience with digital forensics platforms such as AXIOM, F-Response, Timesketch, Volatility, Velociraptor, or other enterprise investigation tools.
- Experience with additional EDR/XDR platforms such as CrowdStrike, Microsoft Defender, or Carbon Black.
- Expertise building and maintaining SOAR platforms, automated response workflows, and cloud-native security operations.
- Experience with AI security technologies including Amazon Bedrock, Microsoft Security Copilot, Google SecOps/Chronicle, or open-source LLM integrations.
- Familiarity with multi-account AWS environments, AWS Organizations, CSPM solutions, and cloud security frameworks such as Prowler, Trusted Advisor, or CNAPP platforms.
We encourage you to apply even if your experience or skillset doesn’t align perfectly with every requirement. We value a wide range of backgrounds and transferable skills, and we are excited to support learning and growth.
Compensation & Benefits:
What We Offer:
Working at GoDaddy offers many benefits, including competitive pay, generous time off, parental and wellness leave, healthcare, retirement savings program, and much more. Offerings vary by location.
This role is eligible for a comprehensive benefits package, which includes medical, dental, and vision insurance, a 401(k)-retirement plan, paid sick time, paid flexible time off, paid parental leave, life insurance, short- and long-term disability, AD&D insurance, mental health or EAP programs, remote or hybrid work options, paid holidays, paid Wellness days, tuition assistance, adoption, surrogacy, and fertility benefits, dependent daycare and backup care benefits, Employee stock purchase plan, financial education and advice; and other benefits in accordance with GoDaddy’s benefit plans and applicable law.
Actual compensation and benefits eligibility will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
Compensation:
The estimated pay ranges for this role are listed below. In addition to base pay, this role may be eligible for other forms of compensation, which may include a corporate bonus and/or equity awards, subject to the terms of applicable plans and individual eligibility.
The role also includes location-based salary ranges from $118,500–$177,500 for all other US locations, $133,000–$199,000 for listed locations, $140,800–$211,200 for New York City Metro and Kirkland/Seattle, and $154,000–$231,000 for the Bay Area and Los Angeles.