Senior Security Engineer - Digital Forensics and Incident Response (DFIR)
Intuit - Frisco, TX
Hiring: Senior Security Engineer - Digital Forensics and Incident Response (DFIR) Company: Intuit Location: Frisco, TX Job Posted Time: 2026-09-17 11:41:12 Target Skills & Keywords : AWS, Azure, Bash, CI/CD, GCP, IAM, LLM, OWASP, PowerShell, Python, Regulatory Compliance, SIEM, SOC, Splunk, Swift About the job Experience: •3-5 years of experience in a dedicated cybersecurity role, with a strong emphasis on digital forensics and incident response. •1-3 years writing scripts or code (Bash, PowerShell, Python) to automate security work, comfortable using AI coding assistants and AI SOC platforms to build faster, and aware of the risks that come with AI-generated code. •5 years of experience in a dedicated cybersecurity role, with a strong emphasis on digital forensics and incident response. •3 years writing scripts or code (Bash, PowerShell, Python) to automate security work, comfortable using AI coding assistants and AI SOC platforms to build faster, and aware of the risks that come with AI-generated code. Required Skills: •Oversee and promptly respond to escalated security events or investigations, and activate the Security Incident Response Plan as required. •Provide on-call support for critical severity issues, manage communications, and report incident status to the appropriate stakeholders. •Lead forensic analysis and conduct investigations to ascertain the root cause, scope, and impact of security incidents. •Investigate and respond to incidents involving AI/LLM-based tools and agentic platforms, such as data leakage, insecure output handling, and unauthorized model access, and extend IR playbooks to cover generative AI and AI SOC platform risks. •Develop, maintain, and improve incident response plans, procedures, and playbooks to ensure swift action and regulatory compliance. •Leverage AI SOC platforms and frontier AI tools to accelerate triage, detection tuning, investigation, and documentation, and help evaluate new AI capabilities as they are onboarded. •Present guidance and training on security best practices and incident response to organizational partners, while ensuring alignment with business objectives and compliance requirements. •Mentor and train incident responders on incident handling techniques, forensic analysis, and cloud security forensics and best practices. Qualifications: •A Bachelor's degree or higher in Technology, Computer Science, Cybersecurity, or a related field, or equivalent hands-on experience, is preferred. •Possession of industry-recognized professional certifications such as AWS Security Specialty, GCIH, GCFA, GFCE, CISSP, or emerging AI security credentials is advantageous. •Solid functional working knowledge of AI/LLM security risks and mitigations, such as data exfiltration, insecure output handling, model and data supply chain risk, and shadow AI usage, and familiarity with frameworks such as the OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF. •Proven threat hunting experience, developing and executing hypothesis-driven hunts across endpoint, cloud, and network telemetry to uncover threats that evade existing detections. •Comprehensive understanding of cybersecurity, networking and cloud fundamentals, and frameworks such as OWASP, MITRE ATT&CK, NIST, and CIS. •Comprehensive expertise in Security Information and Event Management (SIEM) solutions such as Splunk, LogScale. •Strong analytical and problem-solving abilities, with a focus on identifying root causes and assessing risk exposure. •Exceptional communication skills, both verbal and written, capable of explaining technical details to non-technical audiences and fostering strong stakeholder relationships. •Self-motivated with the ability to work autonomously, managing tasks effectively and seeking assistance when necessary. •Proficient in working under pressure in a dynamic environment, prioritizing tasks to meet tight deadlines while maintaining procedural discipline. Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!