Job Description
📋 Description Lead end-to-end response to product security incidents, from discovery, triage, remediation, and Own and evolve PSIRT functions, including incident classification, severity models, escalation Drive coordinated vulnerability disclosure processes with bug bounty programs and external Serve as primary coordinator across Product Security, Engineering, Legal, Communications, and Lead post-incident reviews and translate findings into systemic improvements. Develop and maintain incident response tooling and automation to reduce time-to-detect/response. 🎯 Requirements 5+ years of career experience in IT or Engineering with a security focus Hands-on incident response experience in a product or SaaS context Experience with coordinated vulnerability disclosure (CVD) and external researchers Strong judgment under pressure with incomplete information Experience building incident response capabilities (playbooks, runbooks, severity frameworks Experience drafting customer security advisories/CVEs/public incident communications 🎁 Benefits Remote-first company with US/Canada remote opportunity Competitive base salary with benefits, PTO, RSU, and retirement matching Equity grant and incentive programs where applicable AI-enabled security and tooling initiatives within the role Collaborative, transparent culture focused on security and impact Flexible travel for in-person engagement as needed