{"id":649368,"url":"https://alion.io/job/nscale-senior-staff-security-engineer-incident-response","title":"Senior Staff Security Engineer, Incident Response","company":{"id":48155,"name":"Nscale","domain":"nscale.com","url":"https://alion.io/company/nscale","size_band":"501-1000","is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"A","score":93,"open_postings":45,"ghost_share":0,"stale_share":0.267,"repost_share":0,"time_to_fill_p50_days":56,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Houston, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":145000,"max_usd":303000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":240},"experience_years_min":10,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AI Agents","optional":false},{"name":"Commander.js","optional":false},{"name":"Windows","optional":false},{"name":"JavaScript","optional":true},{"name":"Node JS","optional":true}],"status":"live","first_seen_at":"2026-09-09T20:58:13Z","employer_posted_date":"2026-09-14","last_verified_at":"2026-09-24T23:07:04Z","board_verified":true,"closed_at":null,"days_open":15,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":15},"description":"About Nscale\nNscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical capabilities and directly supports strategic business outcomes, including cost management, rapid innovation, and environmental responsibility.\nWe thrive on a culture of relentless innovation, ownership, and accountability, where every team member takes pride in their work and drives it with excellence and urgency. As an Nscaler, you’ll build trust through openness and transparency, where everyone is inspired to do their best work. If you join our team, you’ll be contributing to building the technology that powers the future.\nAbout the Role\nWe are hiring a Senior Staff Security Engineer, Incident Response to lead the technical response to Nscale's most serious cyber incidents and build the capabilities that make future responses faster, safer and more decisive.\nThis hands-on senior individual contributor role sits in Cyber Defence and reports to the Director of Cyber Defence. You will work across Security Operations, Detection and Security Data Engineering, Product, Platform, Identity, Enterprise and Infrastructure teams, and Offensive Security.\nDuring a major incident, you will be the technical incident commander, setting the investigation strategy, directing technical workstreams and providing the evidence leaders need to make decisions. Between incidents, you will turn lessons from incidents and offensive testing into durable defensive capability, including safe AI-assisted and agentic response workflows.\nWhat you'll be doing\nTechnical incident command\nLead the technical response to high-severity incidents across enterprise, identity, endpoint, cloud, product, production, data centre and operational technology environments.\nSet investigation hypotheses and evidence priorities; direct workstreams; reconstruct attack paths; analyse persistence and root cause; and establish credible scope.\nDevelop technical options and success criteria for containment, eradication, credential and session invalidation, recovery validation and heightened monitoring.\nConduct hands-on investigations across Linux and Windows hosts, cloud control planes, identity systems, networks, applications and containers.\nLead post-incident technical reviews that result in permanent engineering improvements.\nResponse engineering\nBuild a response-engineering roadmap that turns recurring manual investigation and containment work into tested, version-controlled and observable capabilities.\nAutomate evidence collection, enrichment, correlation, timeline generation, blast-radius analysis, asset and owner attribution, remediation tracking and response recommendations.\nCreate executable playbooks for identity compromise, cloud control-plane intrusion, destructive attacks and ransomware, insider threat, supply-chain compromise, data exfiltration and production compromise.\nAdversary-informed defence\nTurn red-team findings, incident evidence and threat intelligence into detections, preventive controls, response actions and regression tests.\nDrive remediation campaigns for vulnerabilities and attack paths that span engineering organisations, with clear ownership, measurable closure and executive visibility where needed.\nRun technical readiness exercises that test Nscale's ability to detect, investigate, contain and recover from realistic attacks before they reach production.\nAgentic response and team development\nDefine safe AI-assisted and agentic response workflows with scoped access, human approval for consequential actions, evidence provenance, output validation, auditability, rollback and emergency-stop controls.\nMentor incident responders, SOC analysts, security engineers and service owners in adversary behaviour, investigation methods and technical decision-making.\nParticipate in the incident-response on-call rotation.\nKPIs\nTime to credible scope\nTime to contain and eradicate\nShare of investigative and response steps safely automated\nClosure of post-incident engineering actions\nAbout You\nYou have 10+ years in incident response, security engineering, offensive security, detection engineering, vulnerability management or a closely related technical security role.\nYou have led the technical response to complex, high-severity incidents in cloud-scale, hybrid or globally distributed environments.\nYou understand attacker behavior including credential and session theft, privilege escalation, persistence, lateral movement, command and control, defence evasion, data exfiltration and destructive activity.\nYou have investigated Linux and Windows hosts, cloud environments, identity systems, network activity and related security telemetry.\nYou can establish incident scope and make sound containment decisions from incomplete or conflicting evidence.\nYou have strong software engineering or scripting ability and have built reliable security tooling, integrations or automation.\nYou have turned offensive findings, incidents or vulnerability intelligence into durable detections, controls, remediation mechanisms and validation tests.\nYou can lead urgent remediation across teams without direct reporting lines and communicate technical conclusions, uncertainty and trade-offs to engineers, executives and other stakeholders.\nYou build repeatable mechanisms and develop the wider team rather than becoming a single point of failure.\nWhat we can offer you\nAt Nscale, you'll find a collaborative, supportive, and innovative environment where your contributions spark real impact. We're building something extraordinary, and we want you at the core.\nHighly competitive US compensation package (base + bonus + equity), with performance reviews every 12 months. \nJoin one of the fastest-growing AI infrastructure companies - your chance to directly shape how global AI capacity is planned and deployed. \nExpect a dynamic progression plan tailored to your ambitions. Grow by leading critical cross-functional initiatives and shaping capital strategy - always with our full support.\nHuman-First Flexibility: We treat you as humans first. Our flexible workplace trusts Nscalers to deliver, giving you the autonomy to shape your day around life's moments.\nEqual Opportunities Statement\nWe strongly encourage applications from people of colour, the LGBTQ+ community, people with disabilities, neurodivergent people, parents, carers, and people from lower socio-economic backgrounds.\nIf there’s anything we can do to accommodate your specific situation, please let us know.\nThe responsibilities outlined in this job description are not exhaustive and are intended to provide a general overview of the position. The employee may be required to perform additional duties, tasks, and responsibilities as assigned by management, consistent with the skills and qualifications required for the role.\nFor information on how Nscale handles candidate personal data, please see our Employee & Candidate Privacy Notice: Here.\nThe range below reflects the base salary for the position. Actual compensation may vary based on job-related factors such as skill set, experience, education, and location. In addition to base salary, this role may be eligible for bonus, equity, and/or commission programs. Nscale may offer a competitive benefits package including medical, dental, vision, flexible paid time off, parental leave, and retirement plan participation.\nSalary Range\n$190,000—$240,000 USD\nFor information on how Nscale handles candidate personal data, please see our Employee & Candidate Privacy Notice: Here.\nNscale does not accept unsolicited candidate submissions from recruitment agencies.","description_format":"text","description_chars":7814,"description_truncated":false,"requirements":{"experience_years_min":10,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Equity","Flexible schedule","Parental leave","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Incident Response","Information Technology","Data Centers","Cloud Computing"],"lifecycle":[{"event":"open","at":"2026-09-10T20:22:42Z"}],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":14,"expected_fill_days":56,"reasons":["conf:3","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/nscale-senior-staff-security-engineer-incident-response","json_url":"https://alion.io/job/nscale-senior-staff-security-engineer-incident-response.json","meta":{"generated_at":"2026-09-25T00:38:05Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":538,"day_limit":5000,"remaining_today":4462,"minute_limit":60,"resets_at":"2026-09-26T00:00:00Z"}}}