Lead Security Incident Response Engineer

Remote from
USA flag
USA
Salary, yearly, USD
126,000 - 193,000
Employment type
Full Time,
Job posted
Apply before
12 Aug 2025
Experience level
Senior
Views / Applies
12345 / 123

About Motive

Motive creates software to help trucking companies improve safety and efficiency with products like Hours of Service monitoring and GPS tracking.

Actively Hiring
Verified job posting
This job post has been manually reviewed for authenticity and compliance.

Who we are:

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves more than 100,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

Visit gomotive.com to learn more.

About the Role: 

Motive is looking for a passionate Lead Security Incident Response Engineer to join our Security Engineering team. This team is responsible for the overall security and privacy of all products and services offered by the company. As the Lead Incident Response Engineer, you will be a foundational member, focused on designing, building, and maturing our incident detection and response program. You will be responsible for creating and implementing strategies to identify, analyze, contain, eradicate, and recover from security incidents effectively. This role requires a blend of hands-on technical expertise, strategic program development, and strong cross-functional collaboration.

In this position you will be expected to:

  • Design, implement, and continuously improve our incident detection and response capabilities, including security monitoring, alert tuning, and threat hunting.
  • Develop and refine incident response policies, processes, and playbooks.
  • Lead technical investigations into security incidents from initial alert through to post-mortem analysis and remediation.
  • Drive automation initiatives within the incident response lifecycle, leveraging scripting and SOAR platforms to enhance efficiency and reduce manual effort.
  • Collaborate closely with engineering, operations, and product teams to integrate security best practices, enhance logging, and ensure swift remediation of vulnerabilities identified during incidents.
  • Contribute to the continuous improvement of our security posture by identifying systemic weaknesses and advocating for preventative controls.

What you’ll do:

  • Build, mature, and operate a robust incident detection and response program, encompassing people, processes, and technology.
  • Develop and implement advanced detection methodologies, rules, and alerts to identify sophisticated threats rapidly.
  • Lead and manage the full lifecycle of security incidents, from initial detection and triage to containment, eradication, recovery, and thorough post-incident review.
  • Architect and implement security automation solutions to streamline incident response workflows, enrich alerts, and facilitate faster remediation.
  • Proactively engage in threat hunting activities to uncover hidden threats and vulnerabilities across our multi-cloud environment.
  • Provide expertise and guidance during critical security events, acting as a primary point of contact for technical incident management.
  • Document incident findings, lessons learned, and contribute to the development of actionable intelligence to prevent future occurrences.

What we’re looking for:

  • Proven ability to manage yourself, prioritize tasks, and produce high-quality results in a fast-paced environment.
  • 5+ years of experience in incident response, security operations, or a closely related security discipline.
  • Strong proficiency in scripting languages (e.g., Python, Go, PowerShell) for automation, data analysis, and security tooling development.
  • In-depth understanding and hands-on experience with security tooling and platforms, including SIEM (Security Information and Event Management), SOAR (Security Orchestration, Automation, and Response), EDR (Endpoint Detection and Response), network forensics tools, and cloud security monitoring solutions.
  • Demonstrated experience building, maturing, and scaling incident response programs, including detection engineering, playbook development, and conducting incident post-mortems.
  • Expert knowledge of common attack techniques (e.g., MITRE ATT&CK framework), threat intelligence methodologies, and digital forensics principles.
  • Strong understanding of cloud security best practices and experience securing environments in public clouds (AWS, Azure, GCP).
  • Experience with container orchestration technologies (Docker, Kubernetes) and securing microservices architectures.
  • Strong communication and collaboration skills, comfortable working cross-functionally with a track record of delivering results.
  • Ability to design and write program/design specifications for self and others, with a focus on comprehensive documentation.
  • Self-starting and independent; able to manage and drive complex projects to completion based on defined specifications.
  • Able to work across team boundaries, reach consensus amongst disparate viewpoints, and graciously receive feedback.
  • Understanding of data structures and their application in security analytics and incident investigations.

As a bonus:

  • Relevant industry certifications (e.g., GCIH, GCFA, GCTI, CySA+, CISSP).
  • Experience in a highly regulated industry or with compliance frameworks (e.g., SOC 2, ISO 27001).
  • Familiarity with serverless architectures and their security implications.

Pay Transparency
Your compensation may be based on several factors, including education, work experience, and certifications. For certain roles, total compensation may include restricted stock units. Motive offers benefits including health, pharmacy, optical and dental care benefits, paid time off, sick time off, short term and long term disability coverage, life insurance as well as 401k contribution (all benefits are subject to eligibility requirements). Learn more about our benefits by visiting Motive Perks & Benefits.
The compensation range for this position will depend on where you reside. For this role, the compensation range is:

United States$126,000—$193,000 USD

Creating a diverse and inclusive workplace is one of Motive’s core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. 

Please review our Candidate Privacy Notice here .

UK Candidate Privacy Notice here.

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive’s policy to require that employees be authorized to receive access to Motive products and technology. 

#LI-Remote

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

FacebookTwitterLinkedIn

How to apply

Did you apply? Let us know, and we’ll help you track your application.

See a few more

Similar Software Engineering remote jobs

Job Search Safety Tips

Here are some tips to help you search and apply for jobs safely:
Watch out for suspicious jobs Don't apply for jobs that offer high pay for little work or offer to hire you without an interview. Read more ›
Check the employer's profile Make sure you're applying for a trustworthy job by visiting the employer's profile and learning more about them. Read more ›
Protect your information Don't share personal details like your bank account or government-issued ID on suspicious websites or messengers. Read more ›
Report jobs that feel unsafe If you see a job that seems misleading, inappropriate or discriminatory, report it for going against our policies and we'll review it.

Share this job

FAQ

What position is Motive hiring for?

Motive is hiring a remote Lead Security Incident Response Engineer from 🇺🇸 USA

What type of employment does Motive offer?

This is a Full Time role.

Network

Jobicy+ Subscription

Jobicy

562 subscribers are already enjoying exclusive, experimental and pre-release features.

Free

USD $0/month

For people just getting started

  • • Unlimited applies and searches
  • • Access on web and mobile apps
  • • Weekly job alerts
  • • Access to additional tools like Bookmarks, Applications, and more

Plus

USD $8/month

Everything in Free, and:

  • • Ad-free experience
  • • Daily job alerts
  • • Personal career consultant
  • • AI-powered job advice
  • • Jobs views and applies stats
Go to account ›