Lead Incident Response Engineer, Security Operations

Coreweave

Warszawa

On-site

PLN 273,000 - 365,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical Insurance
Dental Insurance
Pension Plan
Life Insurance
Critical Illness Cover
Employee Assistance Programme
Tuition Reimbursement
Innovative disruption culture

Job summary

CoreWeave in Warsaw, Poland is seeking a Security Operations Engineer II to join our 24x7 Security Operations team. You will lead initial triage, escalation and incident response efforts across Linux, MacOS and Kubernetes environments.

You will work with SIEM, EDR and other tools, conduct post-incident reviews, and mentor junior engineers while continually improving detection and response capabilities to defend our enterprise.

Qualifications

  • Degree in Computer Science, Computer Engineering, Cyber Security, Information Technology or similar experience.
  • 5+ years of experience in forensics, incident response, or security operations, or related fields.
  • Strong experience with Linux and MacOS systems, including deep knowledge of system internals, logging, and forensic artifacts.
  • Experience with Kubernetes and familiarity with securing containerized environments.
  • Experience with modern security tools and platforms such as SIEM, EDR, IDS/IPS, and firewalls.
  • Strong understanding of network protocols, firewalls, VPNs, proxies, and other security technologies.
  • Strong analytical skills with the ability to handle and interpret large amounts of data.
  • Excellent communication and collaboration skills, with the ability to work effectively in high-pressure situations.

Responsibilities

  • Be part of a 24/7/365 SOC, with rotating on-call for overnights/weekends.
  • Investigate security incidents, create detections, analyze, contain, and remediate across Linux, MacOS, and Kubernetes environments.
  • Utilize SIEM, EDR, and other security tooling to detect, investigate, and respond in real-time.
  • Conduct post-incident reviews, providing insights and recommendations for improving defenses.
  • Collaborate with threat intel & detection engineering teams to identify emerging threats.
  • Serve as the technical lead for SOC response workflows, guiding junior engineers and improving tooling and processes.
  • Keep up-to-date with industry best practices and threat landscape trends to enhance incident response capabilities.

Skills

Security Operations
Incident response
Linux
MacOS
Kubernetes
SIEM/EDR
Network security

Education

Bachelor's degree in Computer Science or related field

Tools

SIEM
EDR
IDS/IPS
Firewalls

Job description

CoreWeave in Warsaw, Poland is seeking a Security Operations Engineer II to join our 24x7 Security Operations team. You will lead initial triage, escalation and incident response efforts across Linux, MacOS and Kubernetes environments.

You will work with SIEM, EDR and other tools, conduct post-incident reviews, and mentor junior engineers while continually improving detection and response capabilities to defend our enterprise.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Engineer II: 24/7 SOC & Incident Response
Security Operations Engineer II: 24/7 SOC & Incident Response

Coreweave • Warszawa

On-site
PLN 189,000 - 252,000
Family-level Medical Insurance
Family-level Dental Insurance
Generous Pension Contribution
+5
Lead Cloud Security & Incident Response Engineer
Lead Cloud Security & Incident Response Engineer

Gainsight • Wrocław

Hybrid
PLN 279,000 - 318,000
Private medical care
Multisport Card
Remote work options
+3
Senior Security Ops Lead - Incident Response & Cloud
Senior Security Ops Lead - Incident Response & Cloud

Jobtailor • Wrocław

On-site
PLN 180,000 - 240,000
Security Engineer – Incident Response Team (f/m/x)
Security Engineer – Incident Response Team (f/m/x)

Sii Ukraїna TOV • Warszawa

On-site
PLN 120,000 - 180,000
Remote Cloud Security Operations Engineer – Incident Response
Remote Cloud Security Operations Engineer – Incident Response

UNIT4 NV • Wrocław

Remote
PLN 70,000 - 90,000
Flexible Leave Paid Time Off
Global Wellbeing Days
Remote working opportunities
Staff InfoSec Engineer - Security Operations Lead (Hybrid)
Staff InfoSec Engineer - Security Operations Lead (Hybrid)

Qualtrics • Kraków

On-site
PLN 200,000 - 320,000
Annual Leave 20/26 days
Private Medical Insurance
Commuter Assistance
+5
Security Operations Engineer - Incident Response & SIEM
Security Operations Engineer - Incident Response & SIEM

Asana • Warszawa

Hybrid
PLN 285,740 - 400,130
Health insurance
Breakfast and lunch catering
Career growth budget
+3
Security Engineer — Hybrid: Incident Response & Vulnerability
Security Engineer — Hybrid: Incident Response & Vulnerability

Red Global • Warszawa

Hybrid
PLN 140,000 - 220,000
Hybrid work model (3 days on-site)
Stable employment contract
Competitive salary
Remote Security Operations Lead – Incident Response & Defense
Remote Security Operations Lead – Incident Response & Defense

UNIT4 NV • Poland

Remote
PLN 190,000 - 290,000
Remote working opportunities
Flexible Leave and PTO policy
Global Wellbeing Days
+2
Cybersecurity & AI Analyst: Incident Response & SIEM
Cybersecurity & AI Analyst: Incident Response & SIEM

EdgeConneX • Warszawa

On-site
PLN 120,000 - 210,000