Senior Consultant, Cloud Incident Response (Remote)
CrowdstrikeFull Time
Senior (5 to 8 years), Expert & Leadership (9+ years)
Candidates should have 8+ years of hands-on experience in security operations with deep expertise in incident response, digital forensics, and threat hunting. They must have demonstrated experience serving as an incident commander, managing response workflows, and making decisions under pressure for security events of varying severity. Advanced knowledge of the NIST Incident Response Lifecycle and experience developing effective incident response documentation and procedures are required. Expert-level proficiency with security monitoring and forensic tools, including EDR, SIEM, and SOAR systems, is essential. Experience conducting post-incident reviews, implementing security improvements based on lessons learned, and a strong understanding of threat actor TTPs are necessary. The role also requires experience tuning security solutions, developing automation workflows, advanced knowledge of AWS cloud services and securing cloud environments, and the ability to effectively communicate with technical and executive stakeholders. Proven ability to work independently and strong mentorship abilities with a track record of developing junior security professionals in incident response are also key requirements.
The Staff Security Engineer will proactively monitor Marqeta's environment for cyber threat activity and manage day-to-day security alerts through timely analysis, triage, and appropriate response actions. They will serve as the incident commander during security events of all severity levels, directing investigation strategies and coordinating cross-functional response efforts. The role involves delivering NIST Incident Response Lifecycle aligned services to prepare for, detect, contain, eradicate, recover, and learn from cybersecurity incidents. They will work with the CISO to maintain the Cybersecurity Incident Response Plan (CIRP), ensuring alignment with government and law enforcement reporting requirements. Responsibilities include documenting and maintaining Security Operations processes, procedures, playbooks, and runbooks, and participating in 24x7x365 on-call rotations, providing expert-level guidance during security incidents and conducting thorough post-incident reviews. The engineer will proactively research threat intelligence sources to develop and lead hypothesis-driven threat hunting initiatives, work closely with Security Solution Engineering to tune security solutions and enhance detection capabilities, and serve as liaison with HR, law enforcement, response retainers, and cyber insurers as required. Additionally, they will mentor security team members in incident response methodologies while collaborating with senior leadership to communicate security risks and strategic recommendations.
Card issuing and payment processing solutions
Marqeta provides modern card issuing and payment processing solutions in the fintech sector. Its platform allows businesses to create, issue, and manage payment cards tailored to their specific needs, such as expense management and consumer payments. The service operates through an open API, enabling clients to integrate Marqeta's capabilities into their own applications. This flexibility sets Marqeta apart from competitors, as it caters to a diverse range of clients, including financial institutions and tech companies. The company generates revenue primarily through transaction fees each time a card is used, along with potential setup and service fees. Marqeta's ability to quickly adapt to the growing demand for digital payments, especially during the COVID-19 pandemic, has contributed to its significant presence in the market.