RefolkCandidates
Open nowEngineeringENG

Senior Incident Response Engineer

Kong · Milano, Milano

Location
Milano, Milano, Italy
Workplace
Hybrid
Employment
Full time
Level
Senior
Posted
8 months ago

About this role

Are you ready to unlock intelligence?

If you don’t think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we’re looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others.

About the Role:

This position will build a working leader reporting to the security manager, who is responsible for creating a collaborative environment between Kong Inc. Security and all impacted business/engineering teams by working together in the effective incident detection, response, recovery, identification, and protection. Stakeholder management and clean thinking under pressure are critical requirements for the role, together with a strong passion for Cyber Security and its fantastic ability to make a real difference in protecting customers, partners and employees.

The company's leadership team, and a cross-functional team of skilled engineers from various perspectives, all working with a singular focus of maintaining our customer's trust. You'll be exposed to the reality of how Kong functions on a technical and process level and will build a comprehensive base of knowledge around how it all works together. In doing so, you'll be playing a role in keeping Kong secure and compliant, bringing security to our company's forefront.

What You’ll Do:

  • Execute, develop and document incident handling guides and processes for Kong.

  • Prioritizes events using existing tools to correlate data to reduce false positives and detect threats.

  • Analyze and tune security alerts and interpret events, as well as create new signals based on signatures and behavioral activities.

  • Respond to security incidents and perform forensics on IT systems as necessary.

  • Guide/lead mitigation strategies for identified vulnerabilities and threats.

  • Design, automate and maintain a portfolio of security alerts, automated actions, and escalation workflows supporting a high-performing 24/7 incident response capability.

  • Conduct threat hunting activities, anticipate future threats, and maintain forward-thinking strategies for tools/technology/processes that combat sophisticated threat actors.

  • Assist with implementation of counter-measures or mitigating controls.

  • Develop and maintain Incident Response capabilities in public cloud environments.

  • Prepare incident reports of analysis methodology and results.

  • Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information.

  • Partner with key stakeholders and communicate effectively to improve preparation, identification, analysis, containment, and post-mortem activities feedback loop.

  • Develop monthly reporting dashboards and metrics on incidents and response capabilities.

  • Prepare executive summaries and conduct briefings on significant investigations.

What You’ll Bring:

  • Experience in crisis management, namely in preventing incidents from becoming a crisis.

  • Insight of using incidents as opportunities by leveraging Incidents to drive innovation, situation awareness, and fixes.

  • Passion for automation, delegation, and scalability via playbooks and highly effective processes.

  • Drive for automating processes and workflows to detect, contain and eliminate active malicious agents.

  • Expertise in building and operating security information/event management systems (SIEM), centralized logging, and enrichment solutions (Endpoint protection/detection, Panther, Crowdstrike, AWS Security Hub, codebase infrastructure, build infrastructure).

  • Practical experience working with cloud technologies; ability to build and deploy a solution using Terraform.

  • Experience with building and deploying solutions (Ansible, Terraform).

  • Competency in Linux, windows;

  • Ability to automate workflows via Python or javascript scripting languages.

#LI-EA1

About Kong:

Kong Inc., a leading developer of API and AI connectivity technologies, is building the infrastructure that powers the agentic era. Trusted by the Fortune 500 and startups alike, Kong's unified API and AI platform, Kong Konnect, enables organizations to secure, manage, accelerate, govern, and monetize the flow of intelligence across APIs and AI models. For more information, visit www.konghq.com.

As published by Kong. Applications are handled on their site.

Skills this posting mentions

Incident ResponseComputer SecurityTerraform

About Kong

No AI without APIs. Kong Inc., a leading developer of API and AI connectivity technologies, is building the connectivity layer for AI. Trusted by the Fortune 500 and AI-native startups alike, Kong’s unified API and AI platform enables organizations to secure, manage, accelerate, govern, and monetize the flow of intelligence across APIs and AI traffic - on any model, any cloud.

All 95 openings at Kong

One click, then it is written

Apply to Kong with a resume written for this role.

Queue Senior Incident Response Engineer and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Kong’s form for you.

  1. 01Drop your resume

    A PDF or a LinkedIn URL. About a minute, once.

  2. 02I rank the openings

    Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.

  3. 03Each one is written up

    Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.

  • 25 sent a week, free
  • No card
  • Nothing sent until you say so

More roles at Kong

See all

Similar roles elsewhere

See more

Put this to work

Paste your career in once. Every application after that is written for you.

Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.

  1. 01Drop your resume

    A PDF or a LinkedIn URL. About a minute, once.

  2. 02I rank the openings

    Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.

  3. 03Each one is written up

    Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.

  • New matches ranked and written before you are up.
  • Every bullet stays inside what your history supports. Nothing invented.
  • Queued, submitted, interviewing, offer: one screen, not a spreadsheet.

500 free credits on sign-up. No card. Nothing is sent until you say so.

Listed from the job board Kong publishes. Refolk is not the employer and does not handle their hiring. Applications go to Kong directly.