
Stripe · Dublin
WHO WE ARE ABOUT STRIPE Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the mos...
Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the
most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our
mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an
unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.
The Security Incident Response team is responsible for triaging and assessing the severity of incoming security alerts, responding
with initial containment measures and escalating as needed to incident responders for further investigation and resolution. They
analyze a variety of data sources to identify potential threats, collect requirements for operational enhancements to detection
and response systems, and generally scale security processes. From external attacks to insider threats, our goal is to respond
with speed and precision, remediate, and support the incident postmortem process. The team is distributed globally and regularly
coordinates with stakeholders in North America, Europe, and Asia.
You will leverage your security management experience to improve incident response capabilities at Stripe. You will manage a team
of security analysts, investigators, and responders on the front lines of the incident response process, hiring, training, and
evaluating their performance, providing technical guidance where needed, developing clear and consistent response procedures, and
ensuring timely and effective resolution of casework. You will also collaborate with various internal stakeholders, including the
Security Analytics and Detection teams, and make continuous improvements to Stripe’s security incident response function.
relevant security roadmaps
stakeholders
data at scale while protecting Stripe networks, systems, and data from threats
We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you
are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
of security analysts or engineers
information to leadership
security, digital forensics, and incident response investigations
identity management, cloud security, vulnerability management, incident response, and threat intelligence.
etc.)
Squarespace is looking for a Security Engineer with a focus on Investigations and Incident Response to join a dedicated team responsible for monitoring and responding to attacks on our platform. You'll partner with teams across the organization as you investigate security events specific to our platform and corporate environment. This is a hybrid role working from our Dublin office 3 days per week and you will report to the Detection and Response Manager. YOU’LL GET TO… * You will investigate security events through our SIEM and SOAR technology * Design alerts to monitor both our customer and corporate environments for anomalous behavior * Share insights gleaned from SOAR case work with relevant security team members in order to drive more security feature implementation to the product or corporate environment * You will respond to ongoing incidents, investigate historical compromises, and provide adept analysis and findings * Establish strategies for threat detection, alerting, and response * You will initiate reactive threat hunting engagements by performing endpoint, network, application, and log analysis * Establish processes and build 'playbooks' of operational response to security events and/or incidents * Familiarity with Threat Intelligence and keeping up-to-date on modern threats and InfoSec news * Build and support security-focused tools and services * Provide Mentorship and technical expertise to junior team members to assist their technical development WHO WE’RE LOOKING FOR * 5+ years experience in the security industry * Certifications (preferred not required): OSCP, OSCE, OSWP * Experience working with SIEM and SOAR technologies * Knowledgeable of cloud & container security, and infrastructure as code * Working understanding of malware analysis, reverse engineering, and host-based and memory forensics * Proficiency in programming or scripting languages (preference to Python, Go, JavaScript, or Bash) is a plus * Knowledge of network and web related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP/HTTPS) and how to keep them secure * Familiarity with red & purple team exercises, adversary resilience, and cyber deception * Experience working with cloud technologies (eg. Amazon Web Services, Google Cloud Platform, etc.) and Networking and Web Application security BENEFITS & PERKS * Health insurance with 100% covered premiums for you, your spouse or partner and your dependent children including medical, dental, and vision * Life and Income Protection * Fertility and adoption benefits * Headspace mindfulness app subscription * Global Employee Assistance Program * Pension benefits with employer match * Flexible paid time off * 26 weeks paid maternity leave & 12 weeks paid paternity leave * 2 weeks paid family care leave * Annual Tax-Free Stipend * Education reimbursement * Employee donation match to community organizations * 7 Global Employee Resource Groups (ERGs) * Free lunch and snacks * Close proximity to cultural landmarks such as Dublin Castle and St. Patrick's Cathedral CASH COMPENSATION RANGE: €70,000 - €107,800 EUR The base salary for this position will vary based on job-related criteria including relevant skills, experience, and location, among other factors. In addition to the cash compensation above (which includes base salary and, where applicable for eligible roles, may include overtime pay), Squarespace employees are eligible to be granted an option to purchase our common stock. ABOUT SQUARESPACE Squarespace is a design-driven platform helping entrepreneurs build brands and businesses online. We empower millions of customers in more than 200 countries and territories with all the tools they need to create an online presence, build an audience, monetize, and scale their business. Our suite of products range from websites, domains, ecommerce, and marketing tools, as well as tools for scheduling with Acuity and creating and managing social media presence with Bio Sites and Unfold. Our team of more than 1,700 is headquartered in New York City, with offices in Dublin, Ireland, and Aveiro, Portugal. For more information about our company, visit https://www.squarespace.com/about/careers. OUR COMMITMENT Today, more than a million people around the globe use Squarespace to share different perspectives and experiences with the world. Not only do we embrace and celebrate the diversity of our customer base, but we also strive for the same in our employees. At Squarespace, we are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity or expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or other class protected by applicable law. We are proud to be an equal opportunity workplace. Thank you in advance for providing the following details about your work history from your resume! This helps us ensure that your candidate information is accurate and consistent during the hiring process. Squarespace will never solicit your personal banking information or ask you to transfer money in connection with a job offer or interview. We also will not reach out to you via phone or SMS without your permission or knowledge. If you plan to use AI in any capacity during your candidate journey, please review our Candidate AI Policy.
JOIN US IN BUILDING THE FUTURE OF FINANCE. Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading. ABOUT THE TEAM + ROLE We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards. The Security Operations (SecOps) team protects Robinhood and its customers by detecting, investigating, and responding to security threats across our production systems, endpoints, and cloud environments. We combine detection engineering, incident response, and threat intelligence to identify emerging risks, strengthen our defenses, and reduce the impact of attacks before they reach our customers. As we continue to evolve our security platform, we're embracing AI and automation to help our teams move faster, uncover threats more effectively, and scale our defenses against increasingly sophisticated adversaries. As the Manager of Response, Automation, Intelligence and Detection Engineering (RAID) within SecOps, you will lead teams across North America, shaping the strategy, execution, and long term evolution of our defensive security capabilities. You'll be responsible for building high performing teams, maturing our detection and incident response programs, and ensuring we stay ahead of an increasingly sophisticated threat landscape. Working closely with Security, Engineering, Infrastructure, and Trust & Safety, you'll translate emerging threats into scalable defenses while championing the use of AI, automation, and modern engineering practices to transform how we detect, investigate, and respond to security events. This is a highly visible leadership role where your decisions will directly influence Robinhood's security posture and help protect millions of customers. This role is based in our Menlo Park, CA or Denver, CO office(s), with in-person attendance expected at least 5 days per week. At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams. Applications for this role will be accepted through July 31, 2026. Please connect with your recruiter for more information about this role’s application window. WHAT YOU’LL DO * Lead the Detection & Response and Threat Intelligence organizations across North America, setting the technical vision, organizational strategy, and execution priorities for both teams. * Mature Robinhood's detection and incident response capabilities by improving detection coverage, response workflows, operational readiness, and measurable security outcomes. * Define and track operational metrics such as detection coverage, response time, investigation quality, and control effectiveness, using data to continuously improve team performance. * Lead security incident response for high-severity events, serving as an Incident Commander when needed and ensuring thorough post-incident reviews that drive lasting improvements. * Partner with Security Engineering, Infrastructure, Product Security, Trust & Safety, and Engineering leaders to translate emerging threats into scalable detection, response, and prevention capabilities. * Drive adoption of automation, AI, and modern engineering practices to improve analyst productivity, accelerate investigations, and scale security operations. * Contribute to long-term security strategy, annual planning, budgeting, and organizational design as the Detection & Response program continues to grow. WHAT YOU BRING * 8+ years of experience in security operations, incident response, detection engineering, threat intelligence, or a closely related security discipline. * 4+ years of experience leading high-performing security engineering or security operations teams, including hiring, coaching, and organizational development. * Demonstrated experience building and scaling detection and response programs, including incident response, detection engineering, operational processes, and security metrics. * Experience leading high-severity security incidents and coordinating cross-functional response efforts involving engineering, communications, legal, and executive stakeholders. * Strong technical foundation across modern cloud environments, endpoint security, identity systems, SIEM, EDR, and detection engineering practices, with the ability to provide technical leadership without needing to be the primary implementer. * Experience applying automation, AI, or software engineering practices to improve the scale and effectiveness of security operations. * Excellent communication and stakeholder management skills, with the ability to influence engineering leaders and clearly communicate technical risk to executive audiences. * Demonstrated ability to balance strategic planning with operational execution in a fast-paced, high-growth environment. LEADERSHIP EXPECTATIONS Our ambitious roadmap requires a great culture shaped by exceptional leaders. Here’s what we expect from them: * Drive high performance by setting clear, focused goals, giving real-time feedback, stretching top talent, and scaling impact through focus, innovation, and tech. * Hire and retain top talent by setting a high bar, hiring only those who raise it, investing in onboarding, and addressing talent issues quickly and fairly. * Create community by connecting work to purpose, removing friction while prioritizing safety, building trust and inclusion, and leading from the front with integrity. WHAT WE OFFER * Challenging, high-impact work to grow your career. * Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching. * Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents. * Lifestyle wallet — a highly flexible benefits spending account for wellness, learning, and more. * Employer-paid life & disability insurance, fertility benefits, and mental health benefits. * Time off to recharge including company holidays, paid time off, sick time, parental leave, and more! * Exceptional office experience with catered meals, events, and comfortable workspaces. In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits. Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process. Base Pay Range: Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC) $217,000—$255,000 USD Zone 2 (Denver, CO; Westlake, TX; Chicago, IL) $190,000—$224,000 USD Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL) $169,000—$199,000 USD Click here to learn more about our Total Rewards, which vary by region and entity. If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application. Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.
DU PASST PERFEKT ZU UNS: Du passt perfekt zu uns, wenn Du in kritischen Momenten einen kühlen Kopf bewahrst, komplexe Sicherheitsvorfälle souverän analysierst und mit Leidenschaft daran arbeitest, Unternehmen widerstandsfähiger gegen Cyberangriffe zu machen. Als Senior Incident Response Manager bist Du bei uns nicht nur Problemlöser, sondern auch Impulsgeber für Prävention und Weiterentwicklung – immer mit dem Ziel, unsere Kunden bestmöglich zu schützen. Wenn Du gerne Verantwortung übernimmst, Teamarbeit schätzt und ein Umfeld suchst, in dem Dein Know-how wirklich den Unterschied macht, dann freuen wir uns darauf, Dich kennenzulernen! DEINE AUFGABEN: * Führung, Steuerung und Bearbeitung von Incident-Response-Einsätzen – vom ersten Alarm und Aufnahmegespräch bis zum Abschlussbericht * Schnelle Analyse und Eindämmung von IT-Sicherheitsvorfällen (Rapid Response) auf System-, Netzwerk- und Applikationsebene durch die Anleitung von Kunden sowie deren Dienstleistern * Erstellung und Umsetzung von Maßnahmenplänen zur Begrenzung von Schäden und Wiederherstellung betroffener Systeme * Erstellung von Berichten, inkl. forensischer Abschlussberichte * Koordination von Maßnahmen und Vorgehen zwischen Versicherern, Versicherungsnehmern und deren IT-Dienstleistern * Dokumentation und forensische Aufbereitung von Vorfällen zur Beweissicherung und Ursachenermittlung * Weiterentwicklung von Incident-Response-Prozessen und Playbooks zur kontinuierlichen Optimierung der Reaktionsfähigkeit * Durchführung von Post-Incident-Analysen (Lessons Learned) und Entwicklung von Präventionsmaßnahmen * Enge Zusammenarbeit mit internen IT-Teams, Fachabteilungen und externen Partnern im Rahmen von Incident-Management-Prozessen * Gemeinsamer Ausbau und Pflege der bestehenden Incident-Response-Toollandschaft zusammen mit dem Rest des Incident Response Management-Teams (Weitere Erhöhung des Automatisierungsgrades und weiterer Einsatz von KI) DEINE ERFAHRUNGEN UND FÄHIGKEITEN: * Mindestens 5 Jahre einschlägige Erfahrung im Bereich Incident Response, Cyber Defense, Blue Team oder IT-Forensik * Tiefe operative Erfahrung in der schnellen Analyse, Eindämmung und Behebung von Cybersecurity-Vorfällen * Fundierte Kenntnisse aktueller Angriffstechniken (z. B. Ransomware, Phishing, APTs) und Verteidigungsmaßnahmen * langjährige und tiefgehende Erfahrung im IT-Forensik-Bereich (u.a. Malwareanalyse) * Gutes Verständnis von Netzwerktechnologien, Betriebssystemen (Windows, Linux) und Cloud-Umgebungen (M365, AWS, Azure, GoogleCloud) * Fähigkeit, auch unter hohem Zeitdruck strukturiert und entschlossen zu handeln * Sehr gute und zielgerichtete Kommunikationsfähigkeit, insbesondere zur Vermittlung komplexer Sachverhalte an Management (C-Level) bis hin zu IT-Fachbereichen / Dienstleister und nicht IT-affinen Mitarbeitenden * Beratung von Kunden nach IT-Sicherheitsvorfällen und Erstellung und Erweiterung von IT-Sicherheitskonzepten * Verhandlungssichere Deutschkenntnisse (C1 oder Muttersprache) und gute Englischkenntnisse (mindestens B-Level) sind Voraussetzung Wünschenswerte Zusatzqualifikationen: * Erfahrung im Umgang mit SIEM-, EDR- und Forensik-Tools (z. B. Windows Defender for Business, Splunk, CrowdStrike, Velociraptor, X-WAYS, KAPE, Hayabusa, SOF-ELK, OpenRelik etc.) * Erfahrung mit Threat Hunting und Threat Intelligence Integration GRÜNDE FÜR EINE ZUSAMMENARBEIT MIT UNS: * Remote first, arbeite in Deutschland wo Du willst, solange Du stabiles, schnelles Internet hast und Datenschutz sowie IT-Security gewährleistet sind * Eine zentrale Rolle in unserem Incident-Response-Team mit echtem Impact, helfe jeden Tag unseren Kunden aus kritischen Lagen * Viel Gestaltungsspielraum bei Prozessen, Tools und Methoden * Tolle Kollegen mit viel Erfahrung im Team * Regelmäßige Teamevents WARUM DU PERSEUS LIEBEN WIRST... Was Du von uns erwarten kannst: * Wir pflegen eine Kultur des Zuhörens und respektieren Deine Ideen zu Technik und Prozessen - Feedback schätzen wir! * Wir sind agil im wahrsten Sinne des Wortes, ganzheitlich und menschlich in der Art, wie wir unsere Arbeit angehen. * Wir leben eine Kultur der selbständigen Arbeit, in der Du dich auf die Verbesserung Deiner Fähigkeiten und das Erzielen von Ergebnissen konzentrieren kannst. * Wir lieben solide Entwicklungsarbeit, unabhängiges Denken, an der Spitze von Wissenschaft und Technologie zu stehen und den bestehenden Stand der Dinge zu hinterfragen. * Wir respektieren Vielfalt sowie Inklusion und heißen Menschen mit unterschiedlichem Hintergrund, verschiedenen Ideen und Stilen, unterschiedlichen Denk- und Arbeitsweisen herzlich willkommen. Was sonst noch für Dich drin ist: * Kontinuierliche Weiterentwicklung durch unsere Learning Culture – mit einem persönlichen Lern- und Konferenzbudget, Büchern, Online-Kursen sowie regelmäßigen Workshops und bereichsübergreifenden Sessions mit dem gesamten Team. * Zusammenarbeit in einem großartigen Team in unserem zentral gelegenen Büro im Herzen von Kreuzberg. * Freu dich auf attraktive Zusatzleistungen – darunter ein vergünstigtes Deutschlandticket für das Berliner Office, 50 € monatlichen Verpflegungszuschuss und regelmäßige Team-Events, bei denen wir unsere Erfolge gemeinsam feiern.