You and the process

With a person
Anna, in-house recruiter
9 years hiring engineers
30 minutes with a real recruiter
They read your CV with you, on a call, and say where the offers are being lost.
Didn’t find what you were looking for? Tell us what to build
Be the first to open itNo views yet
1Password

Staff Security Engineer, Security Incident Response

  • Remote
  • 6+ years

Salary

$192,000/ year

AI summary

For members

The whole posting in a few lines. Sign up to read it here and on every role you open.

Sign Up to Read

Description

1Password is growing. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing.

About 1Password

At 1Password, we’re building the foundation for a safe, productive digital future. Our mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application sign-in is secure, and every device is trusted. We innovated the market-leading enterprise password manager and pioneered Unified Access Management, a new cybersecurity category built for the way people and AI agents work today. As one of the most loved brands in cybersecurity, we take a human-centric approach in everything from product strategy to user experience. Over 180,000 businesses, from Fortune 100 leaders to the world’s most innovative AI companies, trust 1Password to help their teams securely adopt the SaaS and AI tools they need to do their best work.

If you're excited about the opportunity to contribute to the digital safety of millions, to work alongside a team of curious, driven individuals, and to solve hard problems in a fast-paced, dynamic environment, then we want to hear from you. Come join us and help shape a safer, simpler digital future.

As a Staff Security Engineer on Security Incident Response, you'll serve as a senior technical leader and builder for the team, helping shape both how we respond to incidents today and how our response capabilities evolve over time.This role is about advancing what the team is capable of, not just responding when something breaks. You'll design and build the AI-assisted systems that extend the team's reach, lead the response to the most complex incidents, and own programs that make the organization more prepared over time, from tabletop exercises and gamedays to the continued advancement of threat hunting and insider risk capabilities.

You bring engineering depth, sound incident judgment, and the ability to plan, and deliver complex work against a longer-term maturity roadmap not just execute against a queue.

This is a senior individual contributor role with organization-wide impact on how 1Password investigates, contains, and learns from security incidents.

This role reports to the Manager, Security Incident Response.

How we’re using AI today

Our Engineering, Product, and Design teams are thoughtfully integrating AI across the full software and product development lifecycle to move faster without sacrificing quality or security. In practice, that looks like engineers using AI-assisted coding tools to accelerate reviews and catch bugs earlier, product managers synthesizing user research at scale, and designers rapidly prototyping and iterating with AI-generated mockups. We approach AI the same way we approach security: with clear principles, human accountability at every consequential decision point, and rigorous evaluation before anything ships to customers.

This is a remote opportunity within Canada and the US.

Requirements

  • Significant experience leading complex, high-severity security incidents across multiple environments, including serving as an incident commander or equivalent technical lead.
  • Experience designing and building AI-assisted or agentic automation for security operations (triage, investigation, containment), with sound judgment about where automation should and shouldn't hold decision authority.
  • Strong software engineering skills, and experience building production tooling, automation, or systems rather than only operating existing security platforms.
  • Experience owning a security program or capability roadmap end to end, including planning, sequencing, and delivering multi-quarter work.
  • Strong understanding of cloud-native, SaaS, and identity-driven attack techniques and response approaches.
  • Experience designing and running tabletop exercises, gamedays, or comparable readiness programs and translating findings into improvements..
  • Strong written and verbal communication skills, including the ability to represent technical tradeoffs to senior leadership and cross-functional stakeholders.
  • Experience mentoring engineers or otherwise raising the technical and investigative capabilities of a team.
  • How you'll work:
  • You look for opportunities to build systems that scale the team's capabilities rather than relying on repeated manual effort, and you're interested in thoughtfully applying AI and automation where they can improve security outcomes.
  • An experienced incident commander who brings structure to complex incidents, makes sound decisions with incomplete information, and helps teams move forward during high-pressure situations.
  • You're comfortable taking ownership of a capability from strategy through execution, including defining priorities, sequencing work, navigating dependencies, and delivering against a longer-term roadmap.
  • You can operate as a technical partner to leaders and cross-functional teams, independently representing technical priorities, risks, and tradeoffs.
  • You value continuous improvement and contribute to an environment where teams can examine incidents, decisions, and failures openly and turn what they learn into stronger systems and practices.
  • What you can expect:
  • Serve as incident manager and technical escalation point for complex, high-severity events, bringing structure, sound judgement, and clear decision-making under pressure.
  • Design and build AI-assisted and automated systems that improve how quickly and consistently the team can triage, investigate, and contain incidents.
  • Establish appropriate safety controls, approval gates, auditability, and rollback mechanisms for automated and AI-assisted actions, ensuring high-impact decisions remain appropriately human-controlled.
  • Own the team's readiness programs, including tabletop exercises and incident gamedays, from scenario design and execution through debriefing and translating finishes into concrete (or measurable) improvements
  • Advance the team’s threat hunting and insider risk capabilities by identifying opportunities, defining priorities, and delivering roadmap work that improves investigative depth and coverage
  • Plan, sequence, and deliver multi-quarter initiatives that mature the team's capabilities, bringing project management discipline to work that doesn't fit neatly into a sprint.
  • Mentor and provide technical leadership to other engineers, strengthening engineering rigor and investigative judgement across the team.
  • Partner with Security Operations, Product Security, and Engineering teams to close gaps surfaced through investigations, hunting, and simulations.
  • Foster psychological safety and blameless learning across incident retrospectives, gamedays, and tabletop debriefs.
  • Extend strong incident response practices beyond the immediate team by building reusable systems, tooling, and operating patterns that strengthen response capabilities across areas such as PSIRT, Privacy, and Engineering.
  • USA-based roles only: The annual base salary for this role is between $192,000 USD and $278,000 USD, plus immediate participation in 1Password's benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.
  • Canada-based roles only: The annual base salary for this role is between $167,000 CAD and $242,000 CAD, plus immediate participation in 1Password’s generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.
  • At 1Password, we approach each individual's compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.
  • This posting is for an existing vacancy.
  • Our culture
  • At 1Password, we prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with our core values: keep it simple, lead with honesty, and put people first.
  • You’ll be part of a team that challenges the status quo, and is excited to experiment and iterate in search of the best solution. That said, 1Password is not for everyone . Our work is demanding, we strive for excellence, and the pace is fast. We need people who are keen to take on challenging problems, who seek feedback to grow, and who are driven to make an impact. If you're looking for a place where you can settle into a comfortable routine, this might not be the right fit for you. We’re looking for individuals who are proven experts in their fields, as well as those who are highly adaptable, can thrive in ambiguity and through change, are curious, and above all deliver results.

Conditions

We are committed to leveraging cutting-edge technology—including AI—to achieve our mission. We also understand that thinking critically about AI in its current forms will help us create better solutions for our customers and ourselves with its future forms, which will help us continue to close the gap between security and privacy and achieve our mission. We want team members at all levels to take the approach of actively learning AI best practices, identifying opportunities to apply AI in meaningful ways, and driving innovative solutions in their daily work. Embracing the future of AI isn't just encouraged—it's an essential part of how we will be successful at 1Password.

This approach extends to our hiring process—candidates are welcome to use AI tools responsibly and thoughtfully during the application process. To us, this means we do ask that you join live interviews without using AI tools so we can get to know how you communicate, solve problems, and collaborate with others.

Our approach to remote work

We believe in the power of remote work, but recognize that in-person connection is important to help us achieve our mission. While we are a remote-first company, travel for in-person engagement is a part of almost all roles, and we require our employees to be ready and willing to take part. Frequency will depend on role and responsibilities, and may include, but is not limited to: annual department-wide offsites, team meetings, and customer/industry events.

Benefits

  • We believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer:
  • Health and wellbeing
  • Maternity and parental leave top-up programs
  • Competitive health benefits
  • Generous PTO policy
  • Growth and future
  • RSU program for most employees
  • Retirement matching program
  • Free 1Password account
  • Community
  • Paid volunteer days
  • Peer-to-peer recognition through Bonusly
  • Remote-first work environment
  • Some roles in our GTM team are currently being hired for in-person hybrid work in Toronto and Austin. These roles will specify on the posting.
  • You belong here.
  • 1Password is proud to be an equal opportunity employer. We are committed to fostering an inclusive, diverse and equitable workplace that is built on trust, support and respect. We welcome all individuals and do not discriminate on the basis of gender identity and expression, race, ethnicity, disability, sexual orientation, colour, religion, creed, gender, national origin, age, marital status, pregnancy, sex, citizenship, education, languages spoken or veteran status. Be yourself, find your people and share the things you love.
  • Accommodation is available upon request at any point during our recruitment process. If you require an accommodation, please speak to your talent acquisition partner or email us at nextbit@agilebits.com and we’ll work to meet your needs.
  • Remote work is a part of our DNA. Given that our company was founded remotely in 2005, we can safely say we're experts at building remote culture. That said, remote work at 1Password does mean working from your home country. If you've got questions or concerns about this, your talent partner would be happy to address them with you.

Where you’d work

Fully remote

You can work from

  • United States
  • Canada

About the company

1Password

  • Industry: Cybersecurity

21 of their 21 open roles are remote

Your chances

Worth a look before you spend an evening tailoring a CV for it.

  • 21 checks run
  • 2 red flags

Still hiring?

14 checks

1 red flag

How crowded?

7 checks

1 red flag

Fits Me

How well does this role fit you?

Answer a few questions or drop your CV, and every role gets a fit score with the reasons, this one first.

  • Your field
  • Level
  • Stack
  • Work model
  • Salary floor
  • Must-haves
Details12 facts · Role, Location, Compensation, Employment, Company
Seniority
Staff
Type
Full-time
Equity
Equity offered
Industry
Cybersecurity
Specialty
Security
Region
Canada
Show 6 more factsShow less

Role

Category
DevOps & Infrastructure
Specialty
Security
Seniority
Staff
Experience
6+ years

Location

Work model
Remote
Region
Canada
Remote from
  • United States
  • Canada

Compensation

Salary
$192,000 / year
Pay period
Annual
Equity
Equity offered

Employment

Type
Full-time

Company

Industry
Cybersecurity

Something wrong with this vacancy?

Similar vacancies

  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer, New Grad

    Salary by agreement

    • Office · Dublin
    • Junior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Senior Security Operations Analyst

    Salary by agreement

    • Hybrid · Wellington, Auckland
    • Senior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Platform Security Engineer

    £90,000 - 160,000 / year

    • Hybrid · London
    • Mid-Level
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer

    $275,000 - 345,000 / year

    • Office · London

Share this vacancy

What's wrong with it?

The employer never sees who reported.

Reason