Principal Incident Response Engineer
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 43d ago
The date the source published, not the day we noticed it (2026-08-20). Last seen at its source just now.
We have tracked this listing since 23 Sep 2026 (8 days). The employer's own board has carried it every time we have read it, most recently just now.
Is it remote?
The listing says yes
The location field doesn't say remote, so our assessment is based on the title or the description. Read the listing before applying.
Who may apply?
United States
The description states no restriction of its own. This is the source's own tag.
Pay
$117.2k–157.5k/yr
Read out of the job description by us, not from a structured field. Shown in the posting's own currency and period; we never convert.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
workday employer's own board first seen 8d ago · last seen just now
- location not stated
The listing
About the role:
We are looking for an accomplished, high-performing Principal Incident Response Engineer for our Threat Detection & Response team with experience performing digital forensics, incident response, and threat hunting.
The Principal Incident Response Engineer is responsible for ensuring the confidentiality, integrity, and availability of critical information and IT assets. This role requires a deep understanding of cybersecurity principles, incident response methodologies, digital forensics, and the ability to work efficiently under pressure.
What you'll be doing:
- Conduct in-depth analysis of security events and indicators to determine the nature and severity of incidents.
- Respond promptly to security incidents, following established incident response procedures.
- Serve as the technical lead for high-severity security incidents. Coordinate and collaborate with cross-functional teams to contain and mitigate cyber threats effectively.
- Perform forensic investigations to determine the root cause of incidents and develop appropriate remediation strategies across on-prem, hybrid, and cloud workloads
- Lead regular intelligence-driven threat hunt activities to identify and investigate gaps in detection.
- Partner with detection engineering to increase coverage across MITRE ATT&CK framework
- Identify, scope, and support the development of AI/LLM workflows to enhance incident detection and response capabilities.
- Collaborate with other forensic analysts, law enforcement officers, and legal experts to identify methods and procedures for recovery, preservation, and presentation of computer evidence, ensuring proper precautions are taken in the preservation and prevention of spoliation of electronic evidence.
- Support On-call rotation as applicable
What we'll want you to have:
- 8+ years of cyber incident response experience in a relevant environment. Cyber industry certifications are highly desirable (CISSP, GCIH, GFCA, GREM, ECIH).
- Subject matter expertise with security tools and technologies, such as SIEM, IDS/IPS, EDR, and cloud monitoring solutions.
- Strong knowledge of incident response methodologies, including containment, eradication, recovery, and common security frameworks (NIST, SANS, CSA).
- Ability to acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts.
- Experience with forensic tools, such as Encase, FTK, Axiom, and Cellebrite to carry out digital forensic investigations.
Stay up to date on everything Blackbaud, follow us on Linkedin, Twitter, Instagram, Facebook and YouTube
Blackbaud powers social impact through purpose‑driven technology and responsible AI. Guided by our Intelligence for Good® vision, we’re building a culture where innovation, trust, and human expertise come together to help organizations make a greater difference in the world.
Blackbaud is proud to be an equal opportunity employer and is committed to maintaining a diverse and inclusive work environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.
The starting base pay is $117,200.00 to $157,500.00. Blackbaud may pay more or less based on employee qualifications, market value, Company finances, and other operational considerations.Benefits Include:
Medical, dental, and vision insurance
Remote-flexible workforce
Wellness Programs
401(k) program with employer match
Flexible paid time off
Generous Parental Leave
Donations for Doers
Pet insurance, legal and identity protection
Tuition reimbursement program