Senior Security Engineer IR at Twilio - Remote US — Columbus
Traveler-Friendly Insight
Remote-First, But US-Only: This role is explicitly US-based remote, so international digital nomads or non-US residents are not eligible. Within the US, the role excludes six high-cost states (CA, CT, NJ, NY, PA, WA), which ironically opens it up to lower-cost states — great news for nomads who base themselves in places like Texas, Florida, or Colorado.
On-Call Rotation = Fixed Availability Windows: The job requires participation in an on-call rotation for security incident response. This is a significant constraint for nomads — irregular time zones or spotty connectivity could be a real problem. You'll need reliable, high-speed internet and should plan travel around your on-call schedule, not the other way around.
Salary vs. Nomad Cost of Living: Even at the lower end ($141,520/year), this salary goes extremely far in affordable US states. Domestically, states like Tennessee, Georgia, or New Mexico offer strong quality of life at a fraction of coastal costs. Note that the salary bands are US-referenced; non-US candidates are not eligible.
- Occasional Travel Required: Team and project in-person meetups are expected, so budget for periodic domestic travel — typically reimbursed by employers like Twilio.
- Equipment & Setup: No explicit home-office stipend is mentioned, but Twilio's remote-first culture suggests standard remote work support.
Bottom line: this role suits US-based nomads who can maintain on-call reliability and are flexible about which states they reside in. It's not suitable for location-independent workers outside the US.
Headquarters: Remote - US
Who We Are
At Twilio, we're shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences.
Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you're part of a vibrant team with diverse experiences making a global impact each day. As we continue to revolutionize how the world interacts, we're acquiring new skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands.
We use Artificial Intelligence (AI) to help make our hiring process efficient. That said, every hiring decision is made by real Twilions!
See Yourself at Twilio
Join the team as Twilio's next Senior Security Engineer, Incident Response.
About the Job
The Security Incident Response Team (SIRT) is looking for a Senior Security Engineer who is passionate about solving Twilio's mission of security and reliability. You will work across the organization to lead the technical response to security events and incidents across Twilio's global infrastructure, services, and applications — effectively conducting triage, containment, remediation, and driving post-incident betterments. You will work within a team that partners with R&D Engineering and R&D Business teams to develop scalable processes and technical solutions.
You will be a valued member of a team of deeply technical Security Engineers, focused on creating bespoke and standard security response processes, enhancing capabilities for threat mitigation and incident response, and automating as much as possible. You will help grow our global, scaled team and program.
Responsibilities
In this role, you'll:
- Be an Owner: Lead and support the response to all security events and incidents across Twilio's complex global infrastructure, services, and applications.
- Write It Down: Be responsible for documentation of incidents and projects you work on; craft best practices as runbooks and standard operating procedures to share knowledge across teams.
- Wear the Customer's Shoes: Work cross-collaboratively to understand and help solve challenges related to a broad spectrum of threat actors and activity.
- Ruthlessly Prioritize: Work to improve Twilio's security and reliability posture by driving identified betterments from security events and incidents.
- Don't Settle: Rapidly acquire new technical skills and knowledge in a fast-paced, highly disruptive industry environment.
- Draw the Owl: Own the security incident lifecycle, respond to incidents, participate in on-call rotation, and participate in RCAs for security incidents.
- Empower Others: Build, cultivate, and maintain positive relationships with internal customers to identify and facilitate solutions that increase the team's impact.
- Be Inclusive: Provide mentorship, support, and care for the team in a way that enables long-term career development, happiness, and success at scale.
Qualifications
Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
Required:
- 5+ years of security incident response experience in a production-cloud environment
- Subject-matter expert on security issues and technologies
- Ability to utilize AI for comprehensive, complex security incident response activities delivering high-fidelity detections
- Advanced knowledge of service-oriented architectures, as well as experience with security tools and technologies fit for a cloud environment
- Experience working across a technology stack on difficult security challenges and initiatives
- Experience with SIEM platforms and the ability to extend their functionality
- Experience with SOAR tools and automating manual security processes
- Experience in AWS, GCP, or other large cloud platforms
- Excellent written and verbal communication skills
- Ability to influence and build effective working relationships at every level of the organization
Desired:
- AI Model Security & Posture Management: Support implementation of controls and safeguards to prevent AI vulnerabilities such as prompt injections, model evasion, and data poisoning.
- AI-Driven Threat Response: Utilize GenAI and LLM-based security use cases to rapidly interpret alerts, reduce false positives, and contextualize threat data.
- Artifact & Evidence Triage: Collect intrusion artifacts and forensically sound images to analyze malware, trojans, and source code.
- Threat Intelligence Integration: Monitor external vendor data and threat intelligence to analyze trends and proactively defend against emerging risks.
Location
This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, or WA.
Travel
We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.
What We Offer
Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.
Compensation
Please note this role is open to candidates outside of California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State. The information below is provided for candidates hired in those locations only.
The estimated pay ranges for this role are as follows:
- Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont, or Washington D.C.: $141,520 – $176,900
- Based in New York, New Jersey, Washington State, or California (outside the San Francisco Bay Area): $149,840 – $187,300
- Based in the San Francisco Bay Area, California: $166,400 – $208,000
- This role may be eligible to participate in Twilio's equity plan and corporate bonus plan. All roles are generally eligible for: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, and paid parental leave.
The successful candidate's starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
Application Deadline
Applications for this role are intended to be accepted until August 30th, but may change based on business needs.
Twilio thinks big. Do you?
We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts.
So, if you're ready to unleash your full potential, do your best work, and be the best version of yourself, apply now! If this role isn't what you're looking for, please consider other open positions.
Twilio is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local law. Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Additionally, Twilio participates in the E-Verify program in certain locations, as required by law.
To apply: https://weworkremotely.com/remote-jobs/twilio-senior-security-engineer-incident-response