远程工作雷达

高级事件响应与弹性工程师

Senior Incident Response & Resiliency Engineer

开发工程职能支持限定地区(需当地身份)
公司Cloudera
薪资$114,000 - $142,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

业务领域:
ITSeniority Level:
中高级职位描述:
在Cloudera,我们赋能人们将复杂的数据转化为清晰且可操作的洞察。在管理数据量与超大规模云服务商相当的情况下,我们是几乎每个行业中顶级公司的首选数据合作伙伴。依托开源社区的持续创新,Cloudera推动全球最大企业的数字化转型。
我们正在寻找一位经验丰富、具有战略眼光且积极主动的高级事件响应与弹性工程师加入我们的信息安全团队。在此职位上,你将领导并提升Cloudera的事件响应(IR)、业务连续性计划(BCP)、灾难恢复(DR)和备份/恢复项目的运营准备度。向InfoSecOps总监汇报,你将负责维护应急手册,主导桌面演练,推动危机沟通,并在系统和业务运营中推动全企业范围的弹性能力。
成功候选人是一位结构化、结果导向的专业人士,擅长战略规划和运营管理。你将在技术团队、基础设施运维和高管层之间架起桥梁,确保我们的响应计划持续得到验证,监管准备度保持敏锐,技术恢复能力与组织的RTO/RPO目标一致。
作为高级事件响应与弹性工程师,你将:

  • 主动绘制并维护跨矩阵团队的清晰应用和服务所有权链,建立零日准备度,消除威胁出现前的责任归属空白。
  • 在关键通告和零日事件期间担任主要的运营连接点,快速解决责任归属空白,追踪未分配资产,并在IR、SecOps和工程负责人之间执行快速升级流程。
  • 维护、测试和优化动态呼叫树、非带内危机沟通渠道以及外部联络协议(包括法务、公关、监管机构和聘请的取证公司),以确保重大中断期间的运营准备度。
  • 在高严重性(Sev-1/Sev-0)安全事件或灾难激活期间支持响应工程师,通过促进危机流程、跨职能利益相关者更新和操作时间线。
  • 在高严重性(Sev-1/Sev-0)安全事件或灾难激活期间支持响应工程师,通过促进危机流程、跨职能利益相关者更新和操作时间线。
查看英文原文

Business Area:
ITSeniority Level:
Mid-Senior levelJob Description:
At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises.
We are seeking an experienced, strategic, and proactive Senior Incident Response & Resiliency Engineer to join our InfoSec team. In this role, you will lead and mature the operational readiness of Cloudera’s Incident Response (IR), Business Continuity Planning (BCP), Disaster Recovery (DR), and Backup/Recovery programs. Reporting to the Director of InfoSecOps, you will take ownership of maintaining emergency playbooks, leading tabletop exercises, facilitating crisis communications, and driving enterprise-wide resilience across systems and business operations.
The successful candidate is a structured, results-driven professional who excels at both strategic planning and operational execution. You bridge the gap between technical teams, infrastructure operations, and executive leadership, ensuring that our response plans are continuously validated, regulatory readiness remains sharp, and technical recovery capabilities align with organizational RTO/RPO targets.
As a Senior Incident Response & Resiliency Engineer you will:

  • Proactively map and maintain clear application and service ownership chains across matrixed teams to establish zero-day readiness and eliminate attribution gaps before threats emerge.
  • Serve as the primary operational connector during critical advisories and zero-day events, rapidly resolving ownership gaps, tracking down unassigned assets, and executing swift escalation workflows between IR, SecOps, and engineering leads.
  • Maintain, test, and optimize dynamic call trees, out-of-band crisis communication channels, and external outreach protocols (including Legal, PR, regulatory agencies, and retained forensics firms) to ensure operational readiness during major outages.
  • Support Response Engineers during high-severity (Sev-1/Sev-0) security incidents or disaster activations by facilitating crisis workflows, cross-functional stakeholder updates, and operational timelines.
  • SupportResponse Engineers during high-severity (Sev-1/Sev-0) security incidents or disaster activations by facilitating crisis workflows, cross-functional stakeholder updates, and operational timelines.
  • Lead the continuous review, expansion, and alignment of Cloudera’s Incident Response plans, BCP/DR frameworks, and technical playbooks against evolving threat vectors, regulatory requirements, and cloud infrastructure architectures.
  • Oversee enterprise Business Impact Analyses (BIAs) to establish baseline Recovery Time Objectives (RTOs) and Recovery Point Objectives (RPOs) across critical applications, mapping vendor dependencies and ensuring SLA alignment.
  • Partner with IT Infrastructure, Cloud, and Engineering teams to audit, validate, and document backup retention policies, immutable snapshot architectures, and air-gapped controls necessary to guarantee operational survival during ransomware scenarios.
  • Organize and lead hands-on technical DR restoration tests and failover simulations to validate data integrity, recovery workflows, and cross-functional business continuity during catastrophic infrastructure failures.
  • Proactively audit SIEM ingestion coverage, security tooling, and backup monitoring platforms to identify operational blind spots across cloud and on-premises environments.
  • Partner directly with application owners, IT infrastructure, and business unit leaders to define required log sources, audit event logging levels, and field-level telemetry needed for effective detection and incident forensics.
  • Document telemetry gaps and collaborate with the IR team to onboard new log feeds and validate data ingestion pipelines.
  • Design, execute, and evaluate comprehensive tabletop exercises (TTXs) spanning IR, BCP, and DR scenarios for both technical engineering teams and executive leadership.
  • Lead Post-Incident Reviews (PIRs) and Post-Exercise After-Action Reports (AARs) to capture critical takeaways, establish remediation roadmaps, and track cross-functional action items to resolution.
  • Develop key performance indicators (KPIs) and maturity metrics for IR readiness, backup success rates, BCP coverage, and DR testing results.
  • Centralize and maintain all resilience documentation, SOPs, and contact matrixes across primary corporate knowledge repositories.

We are excited about you if you have:

  • Education: Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, Business Continuity, or a related field (or equivalent practical experience).
  • Experience: 4+ years of experience in cybersecurity operations, Incident Response, Business Continuity/Disaster Recovery (BCP/DR), IT Risk Governance or GRC.
  • Resiliency Expertise: Proven experience designing or maintaining enterprise BCP/DR plans, conducting BIAs, and overseeing technical backup restoration testing within cloud environments (AWS, GCP, Azure).
  • Technical & Framework Mastery: Strong working knowledge of NIST SP 800-61, ISO 22301, NIST SP 800-34, security automation frameworks (e.g., SOAR playbooks, workflow orchestration), and common cybersecurity and resiliency standards.
  • Operational Leadership: Demonstrated ability to lead cross-functional initiatives independently, facilitate complex tabletop scenarios, and drive technical post-incident remediations across matrixed teams.
  • Communication: Exceptional written and verbal communication skills, with a track record of translating complex technical risks into actionable operational requirements for non-technical stakeholders (Legal, PR, Executive Leadership).
  • Tools: Proficiency with modern security platforms, ticket management systems (Jira, Confluence), emergency messaging systems, and enterprise BCP/DR tracking tools.
  • Certifications: Preferred industry certifications include CISSP, CBCP (Certified Business Continuity Professional), CISM, GIAC (GCIH, GCFA), CySA+, or PMP.

The anticipated annual base salary range for this position is:
· California: $114,000-$142,000

Individual compensation within the published range is determined by the candidate's skills, experience, qualifications, and primary work location. In addition to base pay, sales roles are eligible for Cloudera's commission plan, while non-sales roles are eligible for the corporate incentive plan. All employees receive a comprehensive benefits package.
This role is not eligible for immigration support or relocation.
What you can expect from us:

  • Generous PTO Policy
  • Support work life balance with Unplugged Days
  • Flexible WFH Policy
  • Mental & Physical Wellness programs
  • Phone and Internet Reimbursement program
  • Access to Continued Career Development
  • Comprehensive Benefits and Competitive Packages
  • Paid Volunteer Time
  • Employee Resource Groups

EEO/VEVRAA
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

销售客户经理

ClouderaUnited StatesFull Time昨天
开发工程市场运营职能支持限定地区(需当地身份)

销售客户经理

ClouderaFranceFull Time昨天
开发工程市场运营职能支持限定地区(需当地身份)日间重叠约 2 小时,需偶尔早起或晚睡

← 返回全部职位