Lead Security Incident Response Engineer

Sorry, this job was removed at 04:21 p.m. (CST) on Tuesday, Oct 07, 2025
Easy Apply
Hiring Remotely in United States
Remote
126K-193K Annually
Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Unlock the potential of the physical economy.
The Role

Who we are:

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves nearly 100,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

Visit gomotive.com to learn more.

About the Role: 

Motive is looking for a passionate Lead Security Incident Response Engineer to join our Security Engineering team. This team is responsible for the overall security and privacy of all products and services offered by the company. As the Lead Incident Response Engineer, you will be a foundational member, focused on designing, building, and maturing our incident detection and response program. You will be responsible for creating and implementing strategies to identify, analyze, contain, eradicate, and recover from security incidents effectively. This role requires a blend of hands-on technical expertise, strategic program development, and strong cross-functional collaboration.

In this position you will be expected to:

  • Design, implement, and continuously improve our incident detection and response capabilities, including security monitoring, alert tuning, and threat hunting.
  • Develop and refine incident response policies, processes, and playbooks.
  • Lead technical investigations into security incidents from initial alert through to post-mortem analysis and remediation.
  • Drive automation initiatives within the incident response lifecycle, leveraging scripting and SOAR platforms to enhance efficiency and reduce manual effort.
  • Collaborate closely with engineering, operations, and product teams to integrate security best practices, enhance logging, and ensure swift remediation of vulnerabilities identified during incidents.
  • Contribute to the continuous improvement of our security posture by identifying systemic weaknesses and advocating for preventative controls.

What you’ll do:

  • Build, mature, and operate a robust incident detection and response program, encompassing people, processes, and technology.
  • Develop and implement advanced detection methodologies, rules, and alerts to identify sophisticated threats rapidly.
  • Lead and manage the full lifecycle of security incidents, from initial detection and triage to containment, eradication, recovery, and thorough post-incident review.
  • Architect and implement security automation solutions to streamline incident response workflows, enrich alerts, and facilitate faster remediation.
  • Proactively engage in threat hunting activities to uncover hidden threats and vulnerabilities across our multi-cloud environment.
  • Provide expertise and guidance during critical security events, acting as a primary point of contact for technical incident management.
  • Document incident findings, lessons learned, and contribute to the development of actionable intelligence to prevent future occurrences.

What we’re looking for:

  • Proven ability to manage yourself, prioritize tasks, and produce high-quality results in a fast-paced environment.
  • 5+ years of experience in incident response, security operations, or a closely related security discipline.
  • Strong proficiency in scripting languages (e.g., Python, Go, PowerShell) for automation, data analysis, and security tooling development.
  • In-depth understanding and hands-on experience with security tooling and platforms, including SIEM (Security Information and Event Management), SOAR (Security Orchestration, Automation, and Response), EDR (Endpoint Detection and Response), network forensics tools, and cloud security monitoring solutions.
  • Demonstrated experience building, maturing, and scaling incident response programs, including detection engineering, playbook development, and conducting incident post-mortems.
  • Expert knowledge of common attack techniques (e.g., MITRE ATT&CK framework), threat intelligence methodologies, and digital forensics principles.
  • Strong understanding of cloud security best practices and experience securing environments in public clouds (AWS, Azure, GCP).
  • Experience with container orchestration technologies (Docker, Kubernetes) and securing microservices architectures.
  • Strong communication and collaboration skills, comfortable working cross-functionally with a track record of delivering results.
  • Ability to design and write program/design specifications for self and others, with a focus on comprehensive documentation.
  • Self-starting and independent; able to manage and drive complex projects to completion based on defined specifications.
  • Able to work across team boundaries, reach consensus amongst disparate viewpoints, and graciously receive feedback.
  • Understanding of data structures and their application in security analytics and incident investigations.

As a bonus:

  • Relevant industry certifications (e.g., GCIH, GCFA, GCTI, CySA+, CISSP).
  • Experience in a highly regulated industry or with compliance frameworks (e.g., SOC 2, ISO 27001).
  • Familiarity with serverless architectures and their security implications.

Pay Transparency
Your compensation may be based on several factors, including education, work experience, and certifications. For certain roles, total compensation may include restricted stock units. Motive offers benefits including health, pharmacy, optical and dental care benefits, paid time off, sick time off, short term and long term disability coverage, life insurance as well as 401k contribution (all benefits are subject to eligibility requirements). Learn more about our benefits by visiting Motive Perks & Benefits.
The compensation range for this position will depend on where you reside. For this role, the compensation range is:

United States
$126,000$193,000 USD

Creating a diverse and inclusive workplace is one of Motive's core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. 

Please review our Candidate Privacy Notice here .

UK Candidate Privacy Notice here.

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive's policy to require that employees be authorized to receive access to Motive products and technology. 

#LI-Remote

What the Team is Saying

Laura
Valerie
Angie
Brad
Breanna
Greg

Similar Jobs

Motive Logo Motive

Corporate Communications Manager

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
88K-134K Annually

Motive Logo Motive

Scientist

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
200K-220K Annually

Motive Logo Motive

Program Manager

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
76K-116K Annually

Motive Logo Motive

Operations Manager

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
126K-180K Annually
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
4,000 Employees
Year Founded: 2013

What We Do

Motive builds technology to improve the safety, productivity, and profitability of businesses that power the physical economy. The Motive Automated Operations Platform combines IoT hardware with AI-powered applications to automate vehicle and equipment tracking, driver safety, compliance, maintenance, spend management, and more. Motive serves more than 120,000 businesses, across a wide range of industries including trucking and logistics, construction, oil and gas, food and beverage, field service, agriculture, passenger transit, and delivery. Visit gomotive.com to learn more.

Why Work With Us

We work hard, with humility and we see our efforts rewarded in tangible ways every day. At Motive, you’ll have the chance to make a difference for the drivers who keep our world moving. We trust each other to do great work because together we can achieve collective goals that reach beyond the physical economy.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Motive Offices

Remote Workspace

Employees work remotely.

Typical time on-site: None
HQSan Francisco, CA
Company Office Image
MX
GB
Austin, TX
Bengaluru, IN
Buffalo, NY
Nashville, TN
Taipei City, Taiwan
Vancouver, BC
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account