Skip to main content
MoonHub
MoonHubCrypto Command Center
Discover
  • Dashboard
  • Crypto News
  • Featured
Opportunities
  • Hackathons
  • Grants
  • Job Board
  • Airdrops
  • Bug Bounties
Learn
  • Guides
  • Courses
  • Events
Community
  • Advertise
  • Submit
  • Moonsters Only
Me
  • Account

Crypto news, resources, and opportunities.

MoonHub
Jobs/Senior Security Engineer, Detection & Response

Block

Senior Security Engineer, Detection & Response

Open
unspecified

Block

Company

Bay Area, CA, United States of America

Location

Not specified · unspecified

Role

About the Role

<p>Block is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams — People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more — provide support and guidance at the corporate level. They work across business groups and around the globe, spanning time zones and disciplines to develop inclusive People policies, forecast finances, give legal counsel, safeguard systems, nurture new initiatives, and more. Every challenge creates possibilities, and we need different perspectives to see them all. Bring yours to Block.</p> <h4><strong>The Role</strong></h4> <p>Block’s Detection and Response Team (DART) investigates and responds to threats across our products and systems. Within DART, the Computer Security Incident Response Team (CSIRT) leads complex investigations and coordinates the response to security incidents across the company. You’ll establish what happened, determine the scope and impact, guide containment and recovery, and keep responders and stakeholders aligned.</p> <p>You’ll be a trusted resource for your peers, contributing technical judgment and direction to complex investigations and helping the team make sound decisions. You’ll partner closely with engineers, other security teams, Legal, Privacy, and business leaders. Between incidents, you’ll innovate by building the tools, workflows, and procedures that make our response stronger.</p> <h4><strong>You Will</strong></h4> <ul> <li>Command complex, high-impact security incidents from initial assessment through containment, recovery, and closure.</li> <li>Investigate threats across endpoint, identity, cloud, SaaS, network, and application systems and drive containment and remediation with system owners, weighing urgency, evidence preservation, and business impact.</li> <li>Reconstruct timelines, preserve evidence, and determine the scope and impact of incidents.</li> <li>Coordinate containment and remediation with system owners while balancing urgency and business impact.</li> <li>Keep incident priorities, decisions, owners, and handoffs clear across teams and time zones.</li> <li>Lead post-incident reviews and drive findings, uncertainty, and response decisions to technical teams and business partners.</li> <li>Write code, queries, and automation that accelerate evidence collection, analysis, and response. Partner with triage, detection, threat intelligence, and infrastructure teams to address missing telemetry, improve detections, and remove recurring manual work.</li> <li>Lead post-incident reviews and drive improvements to completion.</li> <li>Mentor responders and participate in the incident response on-call rotation.</li> </ul> <h4><strong>You Have</strong></h4> <ul> <li>6+ years of hands-on incident response and digital forensics experience.&nbsp;</li> <li>Experience commanding major security incidents involving multiple teams and competing priorities.</li> <li>Strong knowledge of attacker behavior and depth in several areas of identity, endpoint, cloud, network, or application security.</li> <li>Strong SQL/database understanding and log-analysis skills, and practical programming or scripting ability, such as Python. You can analyze large, messy datasets and build reliable tools that improve investigations and response, both with and without AI.</li> <li>An established AI-assisted workflow and actively develop AI-based systems and processes that improve incident coordination and case management.</li> <li>Clear communication and sound judgment when working with technical teams, executives, and sensitive information.</li> <li>An engineering mindset and a track record of turning incident response lessons into lasting improvements.</li> <li>A need to build: developing systems and workflows that improve incident response and connect with our broader investigation, automation, and case management capabilities.</li> </ul> <p>We’re working to build

Posting date not supplied

Apply Now

© 2026 MoonHub. Curated Web3 signal, not financial advice.

Submit opportunityAdvertiseStatusPrivacyTermsCookies