

Search by job, company or skills
What You'll Do:
The 24x7 Security Operations team monitors, analyzes, and responds to security events across Linux, MacOS, and Kubernetes environments to protect CoreWeave's infrastructure and ecosystem.
About the role:
As a Security Operations Engineer II, you will specialize in security event triaging and incident response. You will independently perform triage, escalation, and first-line incident response on day-to-day security events, and contribute to detection and response capabilities under the guidance of senior engineers. In this role, you will be part of a 24/7/365 SOC requiring rotating on-call coverage for overnights and weekends (compliant with local labor regulations), utilize SIEM/EDR tools, support containment/remediation, contribute to detections-as-code, maintain runbooks, and collaborate across threat intelligence and detection engineering teams.
Who You Are:
Preferred:
Wondering if you're a good fit
We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams—even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk.
Why CoreWeave
At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values:
We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organisation's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us!
The starting salary will be determined by job-related knowledge, skills, experience, and the market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility).
Job ID: 152483111
Skills:
Linux, Vpns, Ids, Siem, Proxies, Ips, Network Protocols, Macos, Firewalls, Kubernetes, EDR
Skills:
Microsoft 365, Vulnerability Management, Linux, Windows, Azure, SIEM platforms, Incident Investigation, Security Monitoring, AI-assisted security operations
Skills:
PowerShell, Gcp, Splunk, Azure, Python, AWS, EDRs, KQL, MITRE ATT CK, Elastic, SIEM platforms, SPL, YARA, Jupyter Notebooks, Sigma, Cyber Kill Chain, nist
Skills:
Vpn, Dlp, Ids, Siem, Ips, Firewalls, Mail Gateways, CASB, EDR, SWG, vulnerability scanners
Skills:
cloud security, Vulnerability Management, PowerShell, Incident Response, Siem, Threat Intelligence, Python, Microsoft 365 security ecosystem, KQL, Defender XDR, SOAR, external attack surface management, identity security, EDR, Microsoft Sentinel, MDR