Roche
Healthcare
SecurityEngineer-Monitoring&IncidentResponse
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Engineer - Monitoring & Incident Response at Roche. Skills: Monitoring, Incident Response, Vulnerability Management, Exposure Management. Triage critical vulnerabilities. Investigate critical vulnerabilities”
Industry & Context.
Solving complex security challenges
What They're Looking For.
Must Have
5+ years professional experience in information security, Associate Degree in a relevant field, Understanding of web application security concepts, Understanding of network security concepts, Understanding of endpoint security concepts, Understanding of cloud security concepts, Vulnerability management experience, Attack surface management experience, Hands-on scripting or programming experience, Experience validating vulnerabilities, Experience assessing exploitability, Experience supporting security monitoring, Experience supporting incident response, Ability to communicate technical risks effectively
Nice to Have
Exposure to open-source security projects, Exposure to modern AI-assisted engineering workflows, Industry certifications related to offensive security, Industry certifications related to application security, Enterprise cloud security experience
What You'll Do.
Triage critical vulnerabilities
Investigate critical vulnerabilities
Respond to critical vulnerabilities
Evaluate vulnerabilities
Prioritize vulnerabilities
Research emerging threats
Assess exploitability
Collaborate with infrastructure teams
Collaborate with cloud teams
Collaborate with application teams
Collaborate with security teams
Drive remediation activities
Assess company systems
Assess web applications
Engineer vulnerability scanning capabilities
Enhance vulnerability scanning capabilities
Engineer detection capabilities
Enhance detection capabilities
Engineer automation capabilities
Enhance automation capabilities
Engineer monitoring capabilities
Enhance monitoring capabilities
Contribute to security monitoring
Contribute to incident response
Develop detection logic
Develop automation workflows
Support continuous improvement initiatives
How You'll Work.
Team & Collaboration
Collaborative team; Partner with stakeholders globally
Communication Scope
Communicate technical risks
Full Job Description
At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters. ### ### The Position The Global Security Monitoring & Incident Response (MIR) team at Roche is dedicated to protecting our networks, systems, applications, and users from constantly evolving cyber threats. As a Security Engineer within the Vulnerability & Exposure Management team, you will play a critical role in identifying, assessing, prioritizing, and reducing cybersecurity risks across Roche’s global environment. This role goes beyond reviewing scanner outputs. You will help investigate critical vulnerabilities, assess exploitability, improve security tooling and automation capabilities, and partner with stakeholders globally to strengthen Roche’s security posture. You will join a collaborative and highly technical cybersecurity team that values innovation, curiosity, continuous learning, and proactive risk reduction. ## Your Opportunity In this role, you will: * Triage, investigate, and respond to critical vulnerabilities impacting Roche systems and applications * Evaluate and prioritize vulnerabilities identified through security tools and external programs, including bug bounty initiatives * Research emerging threats and assess exploitability against Roche’s attack surface * Collaborate with infrastructure, cloud, application, and security teams to drive remediation activities * Assess company systems and web applications using automated and manual testing approaches * Engineer and enhance vulnerability scanning, detection, automation, and monitoring capabilities * Contribute to security monitoring and inci
Applying for this Security Engineer - Monitoring & Incident Response role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Roche?
Real rants from real employees. Read before you apply.