Jobs and Careers
ST

Principal Cyber Security Incident Response Engineer

Stitch Fix
Remote, USA, United StatesRemotefull_timeVerifiedPosted 5 Mar 2025
💰 $250,000/yr($170,000/yr$250,000/yr)

About the role

About Stitch Fix, Inc.

Stitch Fix (NASDAQ: SFIX) is the leading online personal styling service that helps people discover the styles they will love that fit perfectly so they always look - and feel - their best. Few things are more personal than getting dressed, but finding clothing that fits and looks great can be a challenge. Stitch Fix solves that problem. By pairing expert stylists with best-in-class AI and recommendation algorithms, the company leverages its assortment of exclusive and national brands to meet each client's individual tastes and needs, making it convenient for clients to express their personal style without having to spend hours in stores or sifting through endless choices online. Stitch Fix, which was founded in 2011, is headquartered in San Francisco.

 

About the Team

We are a team of collaborative, empathetic, and passionate security practitioners with diverse backgrounds and expertise spanning Vulnerability Management, Incident Response, Security Operations, and DevSecOps. Our mission is to prioritize security in everything we do while enabling the business and fostering seamless collaboration with our partners—reducing friction, not creating it.

Our team members have a high degree of autonomy in ensuring Stitch Fix remains secure. The ideal candidate will have strong communication skills and thrive both independently and as part of a highly distributed engineering team.

We’re seeking individuals who prioritize usable security and are passionate about security and automation. As Stitch Fix continues to grow rapidly, our security program must scale alongside it—balancing robust protection with the flexibility to support innovation.

About the Role

At Stitch Fix, we operate in a cloud-first environment and are seeking a Principal Incident Response Engineer to lead security initiatives. This role will focus on incident response, implementing best practices across infrastructure, network security, and cloud environments, as well as ensuring compliance and policy adherence. This role is part of the Security Team and collaborates closely with Platform and Development teams. The ideal candidate should have extensive experience in Incident Response, container technologies, and deployment and integration patterns within a production AWS environment. 

You're excited about this opportunity because you will…

  • Collaborate to develop innovative security solutions, leveraging the right tools while contributing to design and architecture across multiple systems. You're eager to expand your expertise and help us integrate new technologies. This is a team where learning is mutual—you’ll learn from us, and we’ll learn from you. Most importantly, you are deeply committed to protecting our clients and employees from threats.
  • Work closely with the team to develop effective solutions, leveraging the right tools while contributing to design and architecture across multiple systems. You're eager to expand your expertise and help us integrate new technologies. This is a team where learning is mutual—you’ll learn from us, and we’ll learn from you. Most importantly, you are committed to delivering a seamless and impactful experience.
  • Design, deploy, and manage security services within an organization—while also acting as the go-to expert for incident response and cloud security.
  • Be the first to step in, tackle challenges head-on, and do what it takes to protect and secure our organization.
  • Ensure that technology solutions address real business challenges. Your insights are valued by both team members and business partners, who look to you for guidance on how our security initiatives should function. You're not afraid to ask tough questions, challenge assumptions, and engage with customers, stakeholders, and executives to drive meaningful outcomes.

We’re excited about you because you…

Have broad skills building, deploying, and maintaining security services in an organization, and serving as the Subject Matter Expert for incident response and cloud security. Additionally you have the following experience:

  • 6+ years of experience in Security, preferably in an Incident Response or similar “first responder” role (Trust & Safety, Fraud, Account Protection, etc.).
  • Experience leading and assisting with Security Incident analysis, documentation, and response coordination.
  • Proficient with the cyber security incident lifecycle and hands on involvement in security event handling.
  • Understanding of common adversarial tools, attack techniques, and Indicators of Compromise (IOCs).
  • Intermediate to advanced knowledge of APT groups, TTPs (Tactics, Techniques, a

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Stitch Fix

View company profile →