JobRaahGet matched free

Jobs

Senior Incident Response Engineer

wattswater · North Andover, MA · United States · On-site

Pay: USD 152,000 – 168,000 a year

Posted Oct 8, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

We’re Watts. Together, we’re reimagining the future of water. We feel proud every day about what we do. We're all part of the same crucial mission, no matter what function we support -- it's to provide safe, clean water for the world, and to protect our planet's most valuable resource. What we do: For 150 years, Watts has built best-in-class products that are trusted by customers in residential and commercial settings across the world. We are at the forefront of innovation, working with cutting-edge technology to provide smart and connected, sustainable water solutions for the future. Watts is a leading brand with a quality reputation — and we have a dynamic future ahead.​ Scope of Position This highly skilled individual, as part of the Information Security team, will serve as a senior technical escalation point for the global Information Security program. This is a hands-on senior individual contributor role responsible for leading complex security investigations, advancing detection engineering capabilities, and providing deep technical expertise across incident response activities. The Senior Incident Response Engineer will own complex investigations from initial escalation through containment, remediation, and closure; investigate security incidents across cloud and enterprise environments; and drive improvements in detection, response, and investigation capabilities. This role will also serve as a technical authority and escalation resource for other members of the Information Security team. This position reports to the Senior Manager, Information Security. This role is hybrid and is based in North Andover, Massachusetts. Primary Job Duties and Responsibilities Serve as the senior technical escalation point for Level 2 and Level 3 security incidents, owning complex investigations end to end through scoping, containment, remediation, and closure. Investigate cloud application compromise and exploitation across AWS, Azure, and GCP, including identity compromise, misconfiguration exploitation, privilege escalation, and data exposure across production and newly acquired environments. Own detection engineering and tuning within CrowdStrike Falcon, including reviewing alert quality and volume, adjusting detections, reducing false positives, and validating the impact of changes before and after implementation. Serve as the primary technical liaison to CrowdStrike Falcon Complete and NG SIEM MDR, managing partner escalations, responding to requests for information, validating partner findings against internal telemetry, and driving service quality. Conduct host, network, identity, email, and cloud forensics to establish root cause, incident scope, persistence, lateral movement, and potential data exposure. Build and maintain detection content, queries, and automation to improve investigation speed, strengthen security monitoring, and reduce manual triage effort. Provide senior technical guidance and escalation support to the…