Affirm is a financial services company that is on a mission to provide its customers with “honest financial products that improve lives.” As an employer, Affirm maintains a rem
Senior Security Operations Engineer, Incident Response
Location
Canada
Posted
20 days ago
Salary
$150K - $200K / year
Seniority
Senior
Job Description
Senior Security Operations Engineer, Incident Response
Affirm
• Lead security incidents end-to-end, from detection and triage through containment, remediation, and post-incident review. • Act as incident commander, driving clear decisions and alignment across teams during high-pressure situations. • Conduct hands-on investigations across cloud and endpoint environments to determine root cause and impact. • Partner with Observability & Automation to improve detections, reduce noise, and build automated response playbooks. • Contribute to and refine incident response playbooks, runbooks, and documentation to improve readiness and consistency. • Collaborate with Security, Infrastructure, and Product teams to identify gaps and strengthen the incident response lifecycle. • Communicate effectively during incidents, providing clear updates to both technical and non-technical stakeholders.
Job Requirements
- 5+ years of experience in Security Operations or Detection & Response, with strong hands-on incident response in cloud environments (AWS and EKS experience strongly preferred).
- Proven ability to lead security incidents, including containment and remediation, in fast-moving environments.
- Strong investigative and analytical skills, with the ability to synthesize signals from multiple data sources.
- Experience with security tooling such as SIEM and EDR platforms (e.g., Splunk, Elastic, SentinelOne, CrowdStrike, or similar).
- Solid understanding of cloud security concepts and their application in real-world scenarios.
- Strong communication skills, with the ability to clearly convey information across technical and non-technical audiences.
- Experience building or improving automation for incident response workflows (e.g., scripting in Python; infrastructure-as-code is a plus).
Benefits
- Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
- Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
- Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
- ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Senior Manager, US Security Operations
UnitedHealth GroupUnitedHealth Group is a healthcare and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of
Role Description The Senior Manager, U.S. Security Operations, West is accountable for the representation of Corporate Security and its workplace security programs for the business segments in the identified West region of the United States. The Senior Manager will: - Implement the short-to long-term vision, mission, and enterprise strategy of Corporate Security. - Lead security solutioning with business leaders. - Provide business leaders with relevant security incident reporting metrics and actionable data. - Coordinate business requirements with the Global Risk Management CoE to enhance security measures. - Champion security awareness, physical security, and proactive security training initiatives. - Raise potential obstacles/opportunities for enhancing security risk management enterprise-wide. - Ideate and innovate solutions to complex strategic problems. - Cultivate a security culture through security education. - Drive compliance with relevant global security regulations, company standards, values, and industry best practices. The Senior Manager will support the overall Corporate Security mission and enable the success, sustainability, and scalability of the entire enterprise workplace security program. This role includes building and maintaining solid internal partnerships with key stakeholders. Qualifications - 5+ years of relevant security experience in the private and/or public sector. - Experience managing workplace security operations and programs. - Demonstrated experience in managing complex security risks. - Experience dealing with incidents and critical events. - Critical understanding of confidentiality and situational sensitivity. - Proficient using MS Office Suite (Word, Excel, PowerPoint, Outlook, etc). - Proven ability to navigate high levels of ambiguity and make critical decisions rapidly. - Proven superior problem-solving and critical thinking ability. - Proven solid leadership engagement, communication, and presentation skills. - Proven high levels of integrity and credibility. Requirements - Work remotely from anywhere within the U.S. (Minneapolis or Washington, D.C. area requires in-office work a minimum of four days per week). - After hours on-call availability and up to 25% travel. - Other duties as required. Benefits - Comprehensive benefits package. - Incentive and recognition programs. - Equity stock purchase. - 401k contribution (subject to eligibility requirements). - Salary range: $91,700 to $163,700 annually based on full-time employment. Application Deadline This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected.
• Accurately review, validate, and process high-volume sales orders, change requests, and cancellations received from the Sales team or customers into the system (e.g., SAP, Oracle, Salesforce). • Verify all critical order elements, including product codes, pricing, quantity, delivery dates, shipping instructions, and customer account details, ensuring alignment with the sales quote and company policy. • Ensure all necessary contractual documentation, customer-specific terms, and internal approvals (e.g., credit checks, legal review) are attached or referenced before finalizing the order. • Proactively communicate with the Sales team, Finance, and Inventory regarding any discrepancies found in pricing, product availability, delivery timelines, or incomplete documentation to resolve issues quickly and prevent order delays. • Maintain the integrity of customer and order data within the ERP/CRM system, performing regular audits and updates as required. • Identify bottlenecks or inefficiencies in the order creation process and recommend solutions to standardize and streamline workflows for faster processing. • Assist in generating reports related to order volumes, processing times, and common data errors to support Sales Operations analysis.
Technical Lead, Offensive Cyber Security Operations
Edwards LifesciencesGlobal leader in the medical device industry with a patient-focused culture of innovation
• Plan, lead, and execute high-impact offensive cyber operations, including penetration tests and red team operations • Continuously evolve offensive security capabilities and operations • Partner closely with cybersecurity and business teams to maximize defensive outcomes • Clearly communicate complex technical findings, impact, and recommendations
Staff SOC Engineer – Security Telemetry, Detection Platforms
RGA - Reinsurance Group of AmericaReinsurance Group of America (RGA), founded in 1973 and headquartered in Chesterfield, Missouri, is a global provider of health and life insurance. RGA has prov
• administer and engineer improvements to enterprise security telemetry and detection platforms—including Splunk Cloud, Cribl Cloud, CrowdStrike Falcon, and Tines • implement secure by default telemetry patterns and logging standards across operating systems, cloud, and network data sources • design, build, and maintain Cribl Cloud pipelines for secure, cost managed, and high throughput log routing • engineer Splunk Cloud content with an emphasis on signal quality, performance, and SLO/KPI driven cost control • define and maintain role-based access controls (RBAC) • contribute to integration and automation across SOC tooling and enterprise systems • participate in incident response by developing targeted searches, conducting log analysis, and identifying root causes


