Security Engineer - Incident Response - up to $190k base plus bonus

Saragossa

Dallas (TX)

On-site

USD 171,000 - 209,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Saragossa, an investment-firm security function, scales to cover a portfolio of companies with broad exposure to cloud environments, identity platforms, endpoints, and more. You will be hands-on in investigations, hunting threats, triaging alerts, and supporting containment while helping shape how the team detects and responds.

Day-to-day work spans Azure and AWS, writing KQL to surface suspicious activity, and advancing automation/AI-driven triage.

Qualifications

  • Hands-on experience in incident response and SecOps.
  • Experience hunting threats and triaging security alerts.
  • Familiarity with Azure and AWS environments and telemetry.
  • Ability to apply automation/AI to security workflows.

Responsibilities

  • Investigate incidents, hunt threats, and triage alerts in real time.
  • Support containment, remediation, and post-incident analysis.
  • Contribute to improving detection and response capabilities.
  • Develop automation and AI-driven triage workflows.

Skills

Incident response
Threat hunting
Alert triage
Automation in security
ML-based detections
Cross-team collaboration
Cloud security
Azure
AWS
KQL

Tools

KQL
Azure
AWS

Job description

You are joining a security function that is actively scaling, at a firm where no two days look the same.

This is an investment firm that serves as the technology investment and operations arm of a family office. That means you are not just working internally for one business. You are operating across a portfolio of companies, each with their own systems, infrastructure, and complexity. The exposure here is genuinely broad, covering cloud environments, identity platforms, endpoints, email, and everything in between.

You will be part of a team that is building and strengthening the incident response capability as the function grows. When something happens, you will be hands-on in the investigation: hunting threats, triaging alerts, supporting containment, and helping improve how the team detects and responds. This is not a mature, fully built-out function. It is a place where you can have real influence on how things are done.

Day to day you are working across Azure and AWS environments, digging into identity and endpoint telemetry, writing KQL to surface suspicious activity, and supporting the broader team in triage, investigation, and response. You are also bringing automation and AI into how the team operates, whether that is through security copilots, ML-based detections, or automated triage workflows.

You’ll need hands-on experience with the Microsoft Security ecosystem and confidence applying it in investigations.

This would be a strong next step if you have a background in SecOps or incident response and want more scope, more variety, and a role where you can help shape a growing team.

It is based 3 days on-site in Dallas and paying up to $190k base plus bonus.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer, Incident Response
Security Engineer, Incident Response

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 180,000
Sr. Cybersecurity Engineer, Cloud and Incident Response
Sr. Cybersecurity Engineer, Cloud and Incident Response

WideNet Consulting Group • Seattle (WA)

On-site
USD 243,560,000 - 272,214,000
Health benefits
401K
Employee Assistance Program
+1
Senior Security Engineer
Senior Security Engineer

Stanton House • United States

Remote
USD 130,000 - 160,000
Equity in a revolutionary startup
Remote work with optional team events
Opportunity to develop detection/automation skills
Security Engineer
Security Engineer

Iceberg • Chicago (IL)

On-site
USD 120,000 - 170,000
Security Incident Response Engineer
Security Incident Response Engineer

United States Digital Space LLC • United States

Hybrid
USD 125,000 - 165,000
Security Engineer - Sentinel SIEM Build - $200k base + Bonus
Security Engineer - Sentinel SIEM Build - $200k base + Bonus

Saragossa • Dallas (TX)

Hybrid
USD 120,000 - 200,000
Security Engineer
Security Engineer

Atlas Search • New York (NY)

On-site
USD 140,000 - 190,000
Security Engineer, Public Sector
Security Engineer, Public Sector

Scale AI • New York (NY)

On-site
USD 218,400 - 342,000
Health benefits
Retirement benefits
Learning and development stipend
+2
Cybersecurity Operations & Incident Response Manager
Cybersecurity Operations & Incident Response Manager

Jobgether • Town of Texas (WI)

Hybrid
USD 162,000 - 200,000
Competitive salary range: $162,681 – $200,000
Health, dental, and vision coverage
401(k) retirement savings plan
+3
Security Engineer
Security Engineer

firstPRO 360 • Atlanta (GA)

Hybrid
USD 90,000 - 120,000