ClickHouse provides a fast, open-source columnar database and managed cloud service designed for real-time analytics, data warehousing, observability, and AI/ML workloads.
The Security Team is responsible for providing key security capabilities covering application, cloud and enterprise security, incident response, detection and GRC. Our team is looking for an experienced, hands-on security practitioner, who will drive the adoption of modern security processes and tooling, with focus on supporting our detection and incident response capabilities. What you will do: - Develop processes, tooling and automation to scale incident management response and mitigate risks to the business - Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation - Apply a threat modeling centric approach to incident detection and response - Maintain security logging platform - Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management - Handle information security events and incidents across the ClickHouse products and services What you bring along: - Background in product security / red teaming / penetration testing / threat modeling, combined with incident detection and response experience - Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure) - Excellent written and verbal communication skills - Experience securing large-scale customer-facing cloud infrastructures - Significant development and automation experience; preference for Golang and Python Bonus Points: - BS, MS, or PhD in Computer Science or related field - Previous contributions to open source projects - Security or cloud related certifications (AWS, GCP, Azure)