Senior Response Engineer - Cloudflare Managed Defense Center (CMDC)

United States Digital Space LLC

United States

Hybrid

USD 140,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

United States Digital Space LLC is seeking a Senior Response Engineer (Network Security focused) to join Cloudforce One's CMDC team. You will lead advanced incident response, architect mitigations for large-scale DDoS, and work across BGP, IPflow, and edge protections to keep global customers resilient.

The role emphasizes mentorship, strategic communication, and collaboration with product, engineering, and AI teams to turn threat telemetry into automated defenses and improved protections.

Qualifications

  • Experience in network security incident response and defense engineering.
  • Deep knowledge of DDoS mitigation and edge protections.
  • Strong familiarity with BGP routing and traffic engineering.
  • Experience leveraging threat intelligence for proactive defense.
  • Proven ability to lead incident response and escalations.

Responsibilities

  • Technical Escalation & Response: provide hands-on intervention during complex incidents.
  • Incident Architecture: lead technical response and validate mitigation effectiveness.
  • Detection Engineering: design and tune network attack detection logic.

Skills

Network security
DDoS mitigation
BGP routing
Threat intelligence
Incident response

Job description

About Us

At the company, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. the company protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by the company all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. the company was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company.

At the company, we’re not looking for people who wait for a polished roadmap; we’re looking for the builders who see the cracks in the Internet that everyone else has simply learned to live with. We value candidates who have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools. Our culture is built on iteration, leveraging AI to ship faster today to make it better tomorrow, while ensuring that every improvement, no matter how small, is shared across the team to lift everyone up. If you’re the type of person who values curiosity over bureaucracy, and that AI is a partner in solving tough problems to keep the Internet moving forward, you’ll fit right in.

Available Locations: London, United KingdomAbout the DepartmentCloudforce One is the company's threat operations and research team, responsible for identifying and disrupting cyber threats ranging from sophisticated cyber criminal activity to nation-state sponsored advanced persistent threats (APTs). Cloudforce One works in close partnership with external organizations and internal the company teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation.

Members of Cloudforce One are at the helm of leveraging an incredibly vast and varied set of data points that only one of the world's largest global networks can provide. The team analyzes these unique data points at massive scale and efficiency, synthesizing findings into actionable threat intelligence to better protect our customers.

About INTERDICTI.N.T.E.R.D.I.C.T.
(Identify, Neutralize, Triage, Engage, Respond, Disrupt, Integrate, Contain, Threat Hunting) is Cloudforce One's unified operational security organization responsible for identifying, analyzing, and responding to threats targeting the company and its customers. INTERDICT encompasses three main sub-functions:
  • PhishGuard: Email Managed Detection and Response (MDR) service.
  • the company Managed Defense (CMD): 24/7 monitoring, detection, and mitigation of security events across the company products.
  • Detection Engineering: Develops, maintains, and deploys the company’s threat detection logic across email, application, and network telemetry.

Through the combined capabilities of CMD, PhishGuard, and Detection Engineering, INTERDICT delivers a cohesive operational security function that provides continuous, proactive protection against network, application, and email-based threats. This integrated structure ensures rapid detection, coordinated response, and improved security outcomes for the company and its customers.

About the role

The Senior Response Engineer (Network Security focused) within the the company Managed Defense Center (CMDC) serves as a core technical specialist within the proactive security team. This position is built for a network security practitioner who thrives at the intersection of deep routing protocol investigation, edge-network defense, and strategic technical partnership. The role is responsible for architecting responses to sophisticated infrastructure threats across OSI Layers 3, 4, and 7, ensuring global customers remain resilient against large-scale volumetric DDoS attacks and complex network-layer anomalies.

What you’ll do

Acting as a primary technical anchor for network defense, you will provide advanced assistance and strategic intelligence across the company’s most sophisticated customer environments. This involves deep mastery of infrastructure protection components (spanning the company’s native services or industry-equivalent solutions), including BGP routing and advertisement control (managing prefix advertisement and de-advertisement), network protection like Magic Transit, IPFLOW-based Magic Network Monitoring, Advanced TCP/UDP protection, DDoS mitigation rulesets, firewall configurations, Layer 4 proxies such as Spectrum, DNS Firewall, and connectivity troubleshooting over GRE, IPsec, and CNI. A working knowledge of application security (including CDN technology and Web Application Firewalls) will allow you to extend support across broader Managed Defense activities.

The role focuses on:

  • Technical Mentorship: Elevating the team’s collective skill set by acting as a "player-coach" providing hands-on technical guidance during live incidents and reviewing complex mitigation strategies.
  • Deep-Dive Investigation & Mitigation: Analyzing infrastructure threats using advanced internal telemetry to engineer informed mitigation strategies - specifically focusing on DDoS vectors, BGP routing anomalies, and GRE encapsulation issues - implementing defenses directly on the edge for mission-critical traffic.
  • Detection Engineering & Tuning: Continuously designing and refining detection mechanisms, security controls, and alerting thresholds to ensure highly accurate, rapid identification of sophisticated network attacks with minimal false positives.
  • Infrastructure & Tooling Evolution (AI-Driven): Partnering closely with Product, Engineering, and AI teams to transform real-world DDoS attack data into AI-powered automated network defenses, dynamic mitigation models, and enhanced platform capabilities.
  • Strategic Technical Communication: Serving as an authoritative technical voice during active volumetric attacks, providing clarity and architectural routing guidance to both internal stakeholders and external customer engineering teams.

The ideal candidate moves beyond following static runbooks to engineering AI-assisted response workflows, transforming raw network flow telemetry into actionable mitigation strategies, tuned detections, and intelligent, automated edge defenses.

Responsibilities

-

  • Technical Escalation & Response: Acting as a subject matter expert for the Managed Defense Center during complex network security incidents, providing hands-on intervention for large-scale volumetric and protocol-based DDoS attacks when standard protocols are exceeded.
  • Incident Architecture: Leading the technical response to sophisticated infrastructure threats, validating the efficacy of network mitigation rules, and ensuring stable, clean traffic delivery via BGP and GRE mechanisms.
  • Detection Engineering: Designing, deploying, and tuning network attack detection logic, utilizing attack telemetry to stay consistently ahead of evolving DDoS methodologies and adversary tactics.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Response Engineer – CMDC
Response Engineer – CMDC

Webhosting • Austin (TX), Northern (KY)

Hybrid
USD 120,000 - 170,000
Response Engineer - CMDC
Response Engineer - CMDC

CloudFlare • Austin (TX)

On-site
USD 90,000 - 150,000
Detection & Mitigation Engineer
Detection & Mitigation Engineer

Webhosting • Austin (TX)

On-site
USD 120,000 - 180,000
Equity plan eligibility
Detection & Mitigation Engineer
Detection & Mitigation Engineer

Candidate • Austin (TX), Northern (KY)

Hybrid
USD 120,000 - 160,000
Detection & Mitigation Engineer
Detection & Mitigation Engineer

AI Chopping Block • Austin (TX), Northern (KY)

Hybrid
USD 130,000 - 180,000
Senior Network Defense Engineer — AI-Driven DDoS Mitigation
Senior Network Defense Engineer — AI-Driven DDoS Mitigation

United States Digital Space LLC • United States

Hybrid
USD 140,000 - 180,000
Senior Threat Engineer - AI-Powered Detection, Response & Continuous AI Red Teaming
Senior Threat Engineer - AI-Powered Detection, Response & Continuous AI Red Teaming

CDW • United States

On-site
USD 140,000 - 210,000
Incident Response Manager
Incident Response Manager

Infinite Ranges • United States

On-site
USD 165,000 - 248,000
Detection and Response Lead
Detection and Response Lead

Integrated Specialty Coverages, LLC • United States

Remote
USD 120,000 - 180,000
Incident Response Engineer - Cyber Defense
Incident Response Engineer - Cyber Defense

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000