Security Engineer (Threat Response), Sophos Security Team (IDR)
Jobgether
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
3,022 open security roles across 405 companies are on ApplySarthi right now, most of them in Bengaluru (114), Hyderabad (24), Pune (22).
- Sr. Security Engineer, Proactive SecurityAmazon
- Sr Director Analyst - Physical AI Safety & SecurityGartner
- Enterprise Application - Experienced Designer, Senior Associate (Reliability Security Clearance Required)Pwc
- Senior Program Manager, Security (Product Dev)Workday
- Logistics Security Program Manager, AmericasMicron
What security roles keep asking for: AWS (30%), Python (28%), SIEM (15%), CI/CD (14%), GCP (13%), Azure (13%) — counted across their open postings here.
Security Engineer jobs in Canada · Remote Security Engineer jobs · CI/CD jobs · Observability jobs · Python jobs · SQL jobs
Jobgether has 4,275 open roles listed here.
- (Technical Targeter- Virtual Operations) Cyber Technical Analyst Principal (TS/SCI with Poly Required)
- Advogado(a) | Bancário
- Agentic Workforce Adoption Manager
- AI Engineer
- AI Marketing Project Manager
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for security roles keep coming back to AWS, Python, SIEM, CI/CD. Practise those questions before you sit with Jobgether.
Questions you are likely to be asked
- Why do you want to join Jobgether?
- What is your experience with CI/CD? Tell me one thing you learned the hard way.
- How do you keep secrets and access safe in your infrastructure?
- Walk me through how code gets from a commit to production where you work.
- Tell me about an outage you handled. What did you learn from it?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Security Engineer (Threat Response), Sophos Security Team (IDR) at Jobgether interview free →Accountabilities:: You will combine incident response expertise with practical security engineering to investigate threats, improve detection capabilities, automate repetitive work, and build reliable, observable workflows that help security teams respond more effectively. Lead complex investigations throughout the incident lifecycle, from triage and evidence collection through containment, recovery, and lessons learned. Act as a trusted point of contact for security issues, coordinating response across incident detection and response, engineering, product, and business teams. Conduct DFIR and endpoint forensics, including log, network, and packet analysis, malware analysis, and firewall investigations where applicable. Develop and improve detections, playbooks, orchestrations, and prevention mechanisms using evidence from incidents and threat-hunting activities. Build production-quality automation that reduces repetitive work, improves consistency, and enables analysts to focus on higher-value activities. Design reusable, model-agnostic skills and workflows that can operate across approved AI and agent platforms. Use AI-assisted development and investigation tools to accelerate coding, testing, documentation, investigations, and detection engineering. Contribute to GitHub-based engineering workflows, including branching, pull requests, code reviews, testing, feedback cycles, and controlled deployments. Instrument agentic workflows with logs, traces, metrics, evaluation results, and failure signals to ensure behavior and outcomes remain observable. Apply secure harness design, least-privilege principles, scoped tool access, approval gates, evidence validation, rollback mechanisms, and human review for consequential actions. Communicate incidents, risks, technical decisions, and outcomes clearly to engineering teams and leadership. Continuously improve security processes and engineering practices based on incident findings, threat intelligence, operational data, and lessons learned. Requirements You bring strong enterprise incident response and security engineering experience, combined with practical development capabilities and an understanding of how automation and AI can be applied safely to security operations. Strong enterprise incident response experience across endpoint, identity, cloud, network, and product-focused investigations. Practical experience with DFIR, endpoint and firewall forensics, threat hunting, detection engineering, and analysis of unstructured telemetry. Ability to develop reliable automation using Python or a comparable programming language. Experience working with APIs and querying data using SQL. Working knowledge of Git and GitHub engineering practices, including pull requests, code reviews, testing, and CI/CD concepts. Hands-on familiarity with Claude, Codex, Copilot, or comparable coding-agent technologies. Understanding of context design, task decomposition, and validation of AI-generated output. Ability to design and write evaluations for agentic workflows and reusable skills, covering task success, output quality, safety, regressions, and common failure modes. Understanding of agent architecture, tool usage, skill-based design, model portability, and AI or automation safety controls. Ability to design observability for automated workflows and use telemetry to troubleshoot, measure quality, and improve reliability. Strong written and verbal communication skills. Sound operational security judgment and attention to safe handling of security-sensitive activities. Ability to work effectively within a globally coordinated and distributed environment. Legal authorization to work in Canada without requiring employer sponsorship. Benefits Base salary ranging from $86,000 to $143,000 CAD . Additional compensation, including bonus eligibility . Comprehensive employee benefits package. Remote-first working model, with remote work serving as the primary option for most employees. Employee-led diversity and inclusion networks focused on community, education, and advocacy. Annual charity, fundraising, and employee volunteer initiatives. Global sustainability initiatives supporting efforts to reduce environmental impact. Global fitness and trivia activities supporting employee connection and wellbeing. Global wellbeing days designed to provide time to relax and recharge. Monthly wellbeing webinars and training focused on employee health and wellbeing. Inclusive environment that values diverse perspectives, collaboration, innovation, and continuous learning. Opportunity to work at the intersection of incident response, threat intelligence, detection engineering, automation, and responsible AI adoption. Recruitment and selection accommodations available to support candidates who require adjustments.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Accounting & Regulatory ReportingJobgether
- Accounts Receivable CoordinatorJobgether
- AI Security AnalystJobgether
- Assistant Manager of Virtual Legal SupportJobgether
- Associate Experience Design ResearcherJobgether
- Associate ProducerJobgether
- AVP, Corporate PartnershipsJobgether
- AWS ManagerJobgether
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on lever · posted 2026-10-02. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.