Senior Security Investigator

Uber

Hybrid

Quick summary

Work type
Hybrid
Location
Seattle, WASan Francisco, CASunnyvale, CA
Posted
12 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $167k
$121k most similar roles pay here $208k

This listing doesn't post a salary. Most similar roles pay $139,531–$195,110.

Based on 240 similar postings.

Employer

About Uber

Uber Technologies, Inc. is the world’s largest, San Francisco-based mobile technology platform facilitating on-demand ride-hailing, food delivery (Uber Eats), and freight transportation across approximately 70 countries.

Uber currently has 49 open roles on FindRole.

Most-posted roles

View all roles at Uber

At a glance

TL;DR · Senior Security Investigator

As a Senior Security Investigator on Uber’s CyberSecurity Incident Response team (CIRT), you will lead complex security investigations and perform deep forensic analysis across endpoints, cloud environments, identity systems, networks, and application logs to uncover root causes and attack paths. You will own the development of automation tools to enhance evidence collection and decision-making at a global scale while partnering with Threat Intelligence and Detection Engineering teams to improve detection and response capabilities. Additionally, you will mentor investigators and analysts, provide technical guidance, and elevate investigative rigor through continuous methodology evolution. Ideal candidates have 5+ years of experience in security investigations within large-scale environments, expertise with forensic tooling and SIEM platforms like AWS/GCP/Azure, and hands-on experience building automation using Python or similar frameworks. Experience with GenAI for incident response is a plus.

What you'll do

  • Lead complex security investigations and perform deep forensic analysis across various environments.
  • Own and build automation and tooling to accelerate evidence collection and decision-making at scale.
  • Improve detection and response capabilities by partnering with Threat Intelligence and Platform teams.
  • Mentor investigators and analysts, providing technical guidance and elevating investigative rigor.
  • Evolve investigation methodology by analyzing trends and embedding lessons learned into the security ecosystem.
  • Lead major cross-functional initiatives to strengthen investigative readiness and threat-hunting capabilities.

What we're looking for

  • 5+ years of experience in Security Investigations, Incident Response, Threat Hunting, or Digital Forensics.
  • Proven expertise with forensic tooling, log analysis, SIEM platforms, EDR solutions, and cloud investigation workflows.
  • Strong understanding of attacker TTPs, modern threat landscape, and frameworks like MITRE ATT&CK.
  • Hands-on experience building automation using Python, APIs, SOAR, or equivalent frameworks.
  • Ability to lead complex investigations end-to-end and communicate findings effectively to senior leadership.

More like this

Similar roles

Security Specialist

Anduril Industries

Ashville, OH 24 days ago $98,000$129,000
COMSEC NISPOM JSIG DoD 5205.07 DoD 5105.21 ICDs SEADs 32 CFR Part 117 NSA CSS SCRM NIST SP 800-171 CMMC DFARS DISS SIMS MS Office Suite KMI Course IAEC 2112/2110

Senior Security Engineer

CoStar Group

Arlington, VA +1 38 days ago
AWS NGFW Python CASB SSE Terraform Azure DevOps CI/CD Subnetting Routing Network Isolation Identity-Driven Security SSO OAuth API Tokens Service Principals AI Security Threat Modeling Risk Assessment
Hybrid

Senior Security Engineer

Adobe

Seattle +1 16 days ago $180,600$261,450
Entra ID AD Okta SailPoint Zero Trust RBAC ABAC M365 Slack GitHub Workday Google Python PowerShell Terraform Teleport Vault SPIFFE SPIRE CI/CD

Senior Security Engineer

Adobe

Lehi +2 16 days ago $180,600$261,450
Entra ID AD Okta SailPoint Zero Trust RBAC ABAC M365 Slack GitHub Workday Google Python PowerShell Terraform Teleport Vault SPIFFE SPIRE CI/CD

Senior Security Engineer

CVS Health

Remote (Woonsocket, RI) 6 days ago
CI/CD Jenkins Git Python Spring Boot Docker Kubernetes MySQL NoSQL AWS Azure GCP OCI Redis JIRA Rally Confluence
Remote

Senior Lead Security Engineer

JPMorgan Chase

Plano, TX 1 day ago
OAuth SAML Python Java Go C# C++ Cloud AI Machine_Learning Threat_Modeling Vulnerability_Assessment Penetration_Testing HTTP HTTPS SSL_TLS API_Gateway SSE CASB SIEM Custom_Proxy VPM