Staff Cyber Incident Response Engineer
AdobeAbout the role
The Challenge
Our Adobe Cyber Defense Center is seeking a highly skilled and experienced Staff Cyber Incident Responder. This senior role is pivotal in our incident response efforts, providing skilled forensic analysis and proactively defending our enterprise against evolving cyber threats. You will work with a multinational team, bringing to bear your extensive experience to improve our incident response capabilities and drive continuous improvement. If you excel in a challenging environment and are ready to contribute to our Incident Response program, we want to hear from you!
What You Will Do
Incident Response: Lead and conduct comprehensive host forensics, network forensics, log analysis, and malware triage to support incident response investigations.
Tool Development: Create and enhance scripts, tools, and methodologies to automate and improve our incident investigation processes.
Leadership and Mentorship: Provide leadership and mentorship to the incident response team, acting as a resource and guide for other team members.
Partner and Report: Partner with multiple internal and external organizations. Draft detailed reports, assign remediation actions, and implement improvements.
Training and Presentations: Develop and present comprehensive reports, training sessions, and presentations for both technical and non-technical audiences.
Tabletop Exercises: Participate in and help conduct tabletop exercises and incident simulations to ensure readiness.
Threat Hunting: Collaborate with the Adobe Threat Hunting Team to conduct proactive and iterative hunts through cloud and enterprise networks, endpoints, and datasets to detect malicious or suspicious activities that have evaded existing detection tools.
What You Need to Succeed
Experience: 7+ years of proven experience in end-to-end incident response processes, including leading complex, multi-functional incidents.
Investigative Skills: Strong investigative background with expertise in Windows analysis and forensics.
Container Environments: Experience working in container environments such as Kubernetes and Docker.
EDR Solutions: Hands-on experience with various Endpoint Detection and Response (EDR) solutions.
System Internals: Deep understanding of the internals and constructs of Linux, MacOS, and Windows operating systems.
Cloud Security: Extensive experience in administering, attacking, or defending cloud environments (AWS, Azure, GCP).
Log Analysis: Deep understanding of logs from cloud, network, and endpoint devices.
SIEM Expertise: Excellent skills in writing complex searches or analytics for popular Security Information and Event Management (SIEM) solutions.
Programming Skills: Proficiency in bash and at least one interpreted programming language (Python, Ruby, etc.).
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s