{"schemaVersion":"jobsearcher.job.v1","id":"40d92e4c6f80c3446f80d158","url":"https://jobsearcher.com/jobs/40d92e4c6f80c3446f80d158","canonicalUrl":"https://jobsearcher.com/jobs/40d92e4c6f80c3446f80d158","title":"Security Technologist II - Incident Command","description":"About the Role\n\nThe CyberSecurity Incident Response team (CIRT) is at the forefront of protecting Uber, our customers, and our partners from evolving security threats. We are a hands-on, fast-paced team that responds to security incidents, conducts forensic investigations, and builds automated solutions to scale our defence.\n\nAs a Security Analyst on the CIRT team, you will be a key player in our incident response efforts. This is a technical and investigative role where you'll be responsible for:\n\nResponding to security incidents and mitigating threats across the company.\nConducting in-depth investigations and digital forensics to uncover the root cause of attacks.\nDeveloping and implementing automation solutions using tools like SIEM and SOAR to improve our response capabilities.\nCollaborating with other security and engineering teams to address vulnerabilities and strengthen our security posture.\nCommunicating your findings clearly and concisely to help shape our long-term security strategy.\n\nWe are looking for someone who is passionate about solving complex security puzzles and is eager to build innovative solutions to protect a global platform.\n\nWhat the Candidate Will Need / Bonus Points\n- What the Candidate Will Do -\n\nIncident Response : Act as a first responder to security alerts, triaging and containing threats across the Uber platform.\nForensic Analysis : Investigate security incidents by analyzing logs, network traffic, and host data to determine the root cause, scope, and impact.\nAutomation : Develop and deploy scripts and playbooks to automate incident response workflows and improve team efficiency.\nThreat Hunting : Proactively search for emerging threats and vulnerabilities using threat intelligence to mitigate risks before they can be exploited.\nCollaboration : Partner with other teams to share threat intelligence, recommend security improvements, and communicate incident findings.\n\n- Basic Qualifications -\n\nBachelor's degree in Computer Science, Information Security, or a related field..\n3+ years of professional experience in a security-focused role, such as Incident Response, Security Operations, or Digital Forensics.\nProven experience with incident response and handling in a professional environment.\nFamiliarity with common security tools and technologies (e.g., SIEM, EDR, network monitoring).\nExperience in a scripting language (e.g., Python, Bash) for task automation and data analysis.\nStrong problem-solving skills and the ability to work effectively under pressure.\nExcellent written and verbal communication skills.\n\n- Preferred Qualifications -\n\nExperience in a large-scale, enterprise environment, particularly within the technology sectors.\nHands-on experience across multiple domains such as network, hosts, applications, data, cloud security etc.\nStrong understanding of network protocols, TCP/IP, and firewall concepts.\nKnowledge of scripting and development in languages like Python or Go .\nExperience with ML and GenAI security concepts is a plus.\n\nFor San Francisco, CA-based roles: The base salary range for this role is USD $153,000 per year - USD $170,000 per year.\n\nYou will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.\n\nReady to Ride?\n\nThis isn't the kind of place where you follow a playbook - it's where you help write one. If you're driven by impact, energized by challenge, and ready to shape how the world moves - we'd love to hear from you.\n\nYou may be eligible for bonuses, equity, and other compensation, as well as a range of benefits. Explore our benefits.\n\nOffices remain key to collaboration and Uber's culture. Unless approved for full remote work, employees must spend at least 50% of their time in-office. Some roles, like those at greenlight hubs, require full-time in-office presence. Ask your Recruiter for details about this role's requirements.\n\nUber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.","company":"Uber","rawCompany":"uber","city":"Millbrae","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-09-03T10:04:57.619Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1211.00","title":"Computer Systems Analysts","slug":"computer-systems-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Technologist II - Incident Command","description":"About the Role\n\nThe CyberSecurity Incident Response team (CIRT) is at the forefront of protecting Uber, our customers, and our partners from evolving security threats. We are a hands-on, fast-paced team that responds to security incidents, conducts forensic investigations, and builds automated solutions to scale our defence.\n\nAs a Security Analyst on the CIRT team, you will be a key player in our incident response efforts. This is a technical and investigative role where you'll be responsible for:\n\nResponding to security incidents and mitigating threats across the company.\nConducting in-depth investigations and digital forensics to uncover the root cause of attacks.\nDeveloping and implementing automation solutions using tools like SIEM and SOAR to improve our response capabilities.\nCollaborating with other security and engineering teams to address vulnerabilities and strengthen our security posture.\nCommunicating your findings clearly and concisely to help shape our long-term security strategy.\n\nWe are looking for someone who is passionate about solving complex security puzzles and is eager to build innovative solutions to protect a global platform.\n\nWhat the Candidate Will Need / Bonus Points\n- What the Candidate Will Do -\n\nIncident Response : Act as a first responder to security alerts, triaging and containing threats across the Uber platform.\nForensic Analysis : Investigate security incidents by analyzing logs, network traffic, and host data to determine the root cause, scope, and impact.\nAutomation : Develop and deploy scripts and playbooks to automate incident response workflows and improve team efficiency.\nThreat Hunting : Proactively search for emerging threats and vulnerabilities using threat intelligence to mitigate risks before they can be exploited.\nCollaboration : Partner with other teams to share threat intelligence, recommend security improvements, and communicate incident findings.\n\n- Basic Qualifications -\n\nBachelor's degree in Computer Science, Information Security, or a related field..\n3+ years of professional experience in a security-focused role, such as Incident Response, Security Operations, or Digital Forensics.\nProven experience with incident response and handling in a professional environment.\nFamiliarity with common security tools and technologies (e.g., SIEM, EDR, network monitoring).\nExperience in a scripting language (e.g., Python, Bash) for task automation and data analysis.\nStrong problem-solving skills and the ability to work effectively under pressure.\nExcellent written and verbal communication skills.\n\n- Preferred Qualifications -\n\nExperience in a large-scale, enterprise environment, particularly within the technology sectors.\nHands-on experience across multiple domains such as network, hosts, applications, data, cloud security etc.\nStrong understanding of network protocols, TCP/IP, and firewall concepts.\nKnowledge of scripting and development in languages like Python or Go .\nExperience with ML and GenAI security concepts is a plus.\n\nFor San Francisco, CA-based roles: The base salary range for this role is USD $153,000 per year - USD $170,000 per year.\n\nYou will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.\n\nReady to Ride?\n\nThis isn't the kind of place where you follow a playbook - it's where you help write one. If you're driven by impact, energized by challenge, and ready to shape how the world moves - we'd love to hear from you.\n\nYou may be eligible for bonuses, equity, and other compensation, as well as a range of benefits. Explore our benefits.\n\nOffices remain key to collaboration and Uber's culture. Unless approved for full remote work, employees must spend at least 50% of their time in-office. Some roles, like those at greenlight hubs, require full-time in-office presence. Ask your Recruiter for details about this role's requirements.\n\nUber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.","datePosted":"2026-09-03T10:04:57.619Z","dateModified":"2026-09-03T10:04:57.619Z","hiringOrganization":{"@type":"Organization","name":"Uber","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"40d92e4c6f80c3446f80d158"},"url":"https://jobsearcher.com/jobs/40d92e4c6f80c3446f80d158"}}