Airkit logo

Incident Responder

Airkit

McLean, VAPer DiemPosted 1w agoStill listed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
McLean, VA
Schedule
Per Diem
Work Authorization
US work authorization required

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

Public Trust clearance

Job overview

Salesforce is seeking an Incident Responder to join its Computer Security Incident Response Team, providing 24x7 security monitoring and rapid incident response to protect company and customer data, operating from a 24x7 operations center with shift work including on‑call and weekends.

Skills & qualifications

RequiredNice to have

Skills

Information Security KnowledgeNetwork FundamentalsDNSHTTPHTTPS/TLSSMTPmacOS AdministrationMicrosoft Windows AdministrationLinux/Unix AdministrationIncident Response PhasesRelationship BuildingIntrusion Detection/Response ToolsWAFsFirewallsProxiesAntivirusFile Integrity MonitoringOS LogsCompTIA Security+BTL1SANS GCFAGCIH

Qualifications

U.S. CitizenshipNo Dual CitizenshipMinimum Background Investigation for Moderate Public Trust2+ Years IT Operations Experience or 1+ Years Security Operations ExperienceDegree in Computer Science Cybersecurity or Related FieldFoundational Understanding of GenAI Agentic AI and Prompt Engineering

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
Paid Time Off
Parental Leave
401(k) Match

Full job description

Description Job Description:

The Experience

Salesforce is seeking an Incident Responder to join our Computer Security Incident Response Team (CSIRT). The CSIRT provides around-the-clock security monitoring and rapid incident response across all Salesforce environments, acting as the last line of defense protecting company and customer data from security threats. As a key member of the Global CSIRT, you'll help protect Salesforce's critical infrastructure and customer data from evolving threats. This role operates from our 24x7 operations center and requires shift work, including on-call shifts and weekends.

What You'll Actually Be Doing

  • Perform CSIRT's Tier 1 monitoring function around the clock, triaging and prioritizing security alerts to identify threats requiring escalation.
  • Support containment, eradication, and recovery efforts during security incidents, following established playbooks and guidance from senior team members.
  • Collaborate with engineering, business, and security teams to coordinate response efforts and drive organizational security improvements.
  • Document findings clearly and keep stakeholders informed with accurate incident notes and summaries throughout the response process.

You're Our Person If...

  • You have 2+ years of experience in an IT operations environment, or 1+ years of specialized security operations experience.
  • You have foundational knowledge of information security, including current threats, best practices, network fundamentals, and common internet protocols (DNS, HTTP, HTTPS/TLS, SMTP).
  • You understand operating system administration and security controls for macOS, Microsoft Windows, and Linux/Unix, along with core concepts of incident response (phases of response, vulnerabilities vs. threats vs. actors, and Indicators of Compromise).
  • You're able to build strong working relationships across internal and external teams, and hold U.S. citizenship (born or naturalized, no dual citizenship) with the ability to pass a Minimum Background Investigation for a Moderate Public Trust position with the U.S. federal government.

Even Better If...

  • You have hands-on experience with security infrastructure such as intrusion detection/response tools, WAFs, firewalls, proxies, antivirus, file integrity monitoring, and OS logs.
  • You have an in-depth understanding of the information security threat landscape, including attack vectors, tools, and best practices.
  • You've contributed to cross-functional, global security projects and enjoy continuously learning new skills and processes.
  • You hold relevant certifications (e.g., CompTIA Security+, BTL1, SANS GCFA, GCIH) or have a degree in Computer Science, Cybersecurity, or a related field, plus foundational understanding of GenAI, Agentic AI, and prompt engineering.

This candidate must be a U.S. citizen (U.S. born or naturalized) who does not hold dual citizenship and agrees to complete a U.S. federal government Minimum Background Investigation (MBI) for a Moderate Public Trust position. In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.