FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Response Engineer – Cloudflare Managed Defense Center
Cloudflare. Implement mitigation strategies for complex attacks across OSI Layers 3, 4, and 7 using Cloudflare security products .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Managed Detection and Response (MDR) and Application Security, with a strong focus on incident response and customer communication during security incidents. Proficient in network security protocols and tools, ensuring effective monitoring and mitigation of complex attacks.
Highest-signal resume keywords
Managed Detection And Response (MDR)Application SecurityNetwork SecurityPacket CaptureTechnical Communication
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Application SecurityNetwork SecurityIncident ResponseTraffic AnalysisProtocol AnalysisScriptingMonitoring Rules OptimizationDDoS MitigationHTTP Traffic InspectionSecurity Posture Review
Soft Skills
Customer CommunicationTeam CollaborationProblem SolvingAdaptabilityStress Management
Tools & Technologies
Cloudflare Security ProductsTcpdumpWiresharkBurp SuitePrometheusGrafanaREST APIsGraphQL
Certifications & Qualifications
GIACCisco CCNACisco CCNP
Industry Keywords
OSI LayersOWASP Top 10DDoSMITRE ATT&CKEnterprise CDNNext-Generation WAFEdge Network Firewalls
Tech Stack
Tools & technologiesCloudDNSFirewallsGrafanaGraphQLLinuxPrometheusPythonUnix
About the role
Key responsibilities & impact- Implement mitigation strategies for complex attacks across OSI Layers 3, 4, and 7 using Cloudflare security products
- Monitor and investigate proactive alerts using near real-time packet and traffic-flow analysis
- Detect protocol exhaustion and application-layer exploitation and create targeted mitigation rules
- Review alert relevance and urgency, escalate customer-impacting incidents, and meet customer SLAs
- Serve as primary technical contact for enterprise customers during active security incidents
- Communicate with customer technical engineering teams by phone, chat, and email
- Provide continuous proactive monitoring and analysis of security events
- Tune and optimize monitoring rules and alert thresholds to reduce false positives
- Lead customer onboarding sessions and maintain customer-specific runbooks
- Deliver technical monthly security posture reviews and post-incident reports
- Partner with engineering, product, and threat intelligence teams on attack trends, tooling gaps, and product enhancements
Requirements
What you’ll need- 4–7 years of direct, hands-on experience in Managed Detection and Response (MDR), advanced Security Operations, or high-level Technical Support/Incident Response for enterprise infrastructure
- Proven capability in Application Security, including OWASP Top 10 vulnerabilities, L7 WAF, HTTP/S anomalies, and bot mitigation
- Proven capability in Network Security, including L3/L4 volumetric DDoS and protocol abuse
- Working knowledge of MITRE ATT&CK
- Operational understanding of TCP, UDP, ICMP, GRE, BGP, and DNS
- Hands-on packet capture or HTTP traffic inspection experience using tools such as tcpdump, Wireshark, tshark, HAR, or Burp Suite
- Extensive experience managing technical communications with enterprise customers during high-stress active attacks
- Ability and willingness to work 24x7 rotating shifts
- Knowledge of enterprise CDNs, cloud-based DDoS scrubbing centers, next-generation WAFs, and edge network firewalls (preferred)
- Proficiency in Linux/Unix and scripting, including Bash or Python (preferred)
- Experience leveraging agentic AI environments or LLMs to optimize operations (preferred)
- Experience interacting with REST APIs or GraphQL (preferred)
- Experience building or querying Prometheus and Grafana dashboards (preferred)
- GIAC, Cisco CCNA/CCNP, or equivalent hands-on incident response certifications (preferred)
- Offer may be conditioned on authorization to receive technology controlled under U.S. export laws without sponsorship for an export license
Benefits
Comp & perks- Opportunity to work with Cloudflare's global network and security technologies
- Potential in-person interview at a Cloudflare office or hub at the offer stage
- Equal employment opportunity and inclusive workplace
- Reasonable accommodations for qualified individuals with disabilities