Join top Web3 founders in the Electric Capital portfolio

Staff Information Security Engineer - Incident Response



New York, NY, USA
Posted on Tuesday, June 25, 2024
About LinkedIn

LinkedIn is the world’s largest professional network, built to create economic opportunity for every member of the global workforce. Our products help people make powerful connections, discover exciting opportunities, build necessary skills, and gain valuable insights every day. We’re also committed to providing transformational opportunities for our own employees by investing in their growth. We aspire to create a culture that’s built on trust, care, inclusion, and fun – where everyone can succeed. Join us to transform the way the world works.

At LinkedIn, we trust each other to do our best work where it works best for us and our teams. This role offers both hybrid and remote work options. This means you can work from home and commute to a LinkedIn office, depending on what's best for you and when it is important for your team to be together, or you can work remotely from most locations within the country listed for this role. This role offers remote in the United States or hybrid in LinkedIn’s Sunnyvale, CA office.

About the team

LinkedIn's members entrust us with their information every day and we take their security seriously. Our core value of putting our members first powers all the decisions we make, including how we manage and protect the data of our members and customers. We never stop working to ensure LinkedIn is secure. We follow industry standards and have developed our own best practices to stay ahead of the increasing number of threats facing all Internet services and infrastructure. LinkedIn is looking for an experienced Staff Incident Response Engineer to be an integral part of our Information Security organization. The Incident Response team is responsible for protecting our infrastructure, applications, and, most importantly, our members. This role will be responsible for playing a key role in our security monitoring and incident response team.

The role is a Staff position, coming in with years of real world experience in responding and leading incident investigations, developing playbooks, and continually striving to improve processes and response times. Additionally as a staff, a successful candidate will help lead the continued improvements, mentor more junior team members, while acting as a lead during large scale incidents.

· Independently triage security alerts and incident reports.
· Investigate incidents using available resources, forensic and threat hunting skills.
· Drive medium to large scale incidents with multiple team members and partner teams to closure and full remediation.
· Conduct host, network, and log analysis in support of incident response investigations
· Enhance our in-house incident response platforms and build new capabilities.
· Participate in daytime on-call activities.
· Work with partner teams including: PR, HR, Legal, Compliance, Investigations, Microsoft CDOC, Engineering, EPE.
· Contribute to improving processes, procedures and technologies used by the team.
· Automate or engineer new solutions to support efficient incident response capabilities.
· Provide feedback to detection engineering team about accuracy and quality of detections
· Provide proactive and accurate data to all stakeholders for internal communication
· Help uplift entire team by providing demonstration of new processes or training on systems
· Support mentoring and technical development of incident response engineers

Basic Qualifications:
· BA/BS degree in Computer Science, Information Security, Cybersecurity, or other related technical and engineering disciplines, or equivalent practical experience
· 5+ years experience in Information Security, with 4+ years experience in Incident Response or adjacent areas like detection engineering, offensive security, security research, etc. as part of that experience.
· Incident response experience should include:
· Experience with triaging security alerts
· Experience with incident lifecycle and incident handling
· Experience with log analysis
· Experience with SIEM solutions
· Experience with Windows, OSX and Unix operating systems logs
· Experience with Web Server logs.
· Experience with EDR solutions
· Experience with system level analysis - Windows, Linux, and Mac.
· Experience with 2 or more of these areas:
· System Forensics
· Network Forensics
· Cloud Forensics
· SOAR/Security Orchestration
· Threat Intelligence

Preferred Qualifications:
· Master’s degree in Information Security, CyberSecurity, Computer Science, or other related technical disciplines.
· Technical certifications (SANS, OSCP, etc.)
· Development experience, the ability to understand source code and develop scripts.
· Cloud fundamentals and experience
· Practical threat hunting experience with open source tool chain
· Scripting knowledge to automate repetitive, time consuming and error prone activities using a general purpose scripting language (ex: Python)
· Prior experience with malware analysis

You will Benefit from our Culture:

We strongly believe in the well-being of our employees and their families. That is why we offer generous health and wellness programs and time away for employees of all levels.

LinkedIn is committed to fair and equitable compensation practices. The pay range for this role is $144,000 - $235,000. Actual compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years & depth of experience, certifications and specific office location. This may differ in other locations due to cost of labor considerations.

The total compensation package for this position may also include annual performance bonus, stock, benefits and/or other applicable incentive compensation plans. For additional information, visit:

Equal Opportunity Statement
LinkedIn is committed to diversity in its workforce and is proud to be an equal opportunity employer. LinkedIn considers qualified applicants without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other legally protected class. LinkedIn is an Affirmative Action and Equal Opportunity Employer as described in our equal opportunity statement here: Please reference and for more information.

LinkedIn is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful.

If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at and describe the specific accommodation requested for a disability-related limitation.

Reasonable accommodations are modifications or adjustments to the application or hiring process that would enable you to fully participate in that process. Examples of reasonable accommodations include but are not limited to:

-Documents in alternate formats or read aloud to you
-Having interviews in an accessible location
-Being accompanied by a service dog
-Having a sign language interpreter present for the interview

A request for an accommodation will be responded to within three business days. However, non-disability related requests, such as following up on an application, will not receive a response.

LinkedIn will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by LinkedIn, or (c) consistent with LinkedIn's legal duty to furnish information.

Pay Transparency Policy Statement
As a federal contractor, LinkedIn follows the Pay Transparency and non-discrimination provisions described at this link:

Global Data Privacy Notice for Job Candidates
This document provides transparency around the way in which LinkedIn handles personal data of employees and job applicants: