Skip to content
SnowflakeSnowflakeUnited States

Security Engineer - Threat Detection

Builds and evolves AI-assisted threat detection, automation, and analytics at cloud scale. Requires 8+ years of security engineering experience, strong Python or Go skills, production software practices, cloud security expertise, and experience with large-scale telemetry and agentic workflows.

211k – 304k/yr
Remote8+ YOESecurity Engineering

About the role

Responsibilities

  • Develop and deploy rules-based and AI-assisted threat detections using testing, validation, CI/CD pipelines, detections-as-code, and a full detection development lifecycle.
  • Analyze threat detection coverage gaps and mitigate risks through detective controls, including AI/ML approaches that improve signal-to-noise ratio or analyst efficiency.
  • Make data-driven recommendations for detective and preventative controls using threat models, proactive threat hunts, and exploration of logs and telemetry.
  • Design and build automations and AI-driven workflows to strengthen security posture and reduce mean time to detect and respond.
  • Partner with Security and Engineering stakeholders to deliver detection as a service, including self-service patterns, reusable components, and AI-enhanced detections.
  • Measure and improve detection quality across coverage, precision and recall, false positive rate, and latency.

Requirements

  • 8+ years of security engineering experience in one or more of threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience.
  • Strong coding ability in a high-level language such as Python or Go, with experience building software, data tooling, or automations.
  • Experience handling data programmatically with SQL and Python, ideally using large-scale log and telemetry datasets.
  • Experience writing production code with unit tests, version control, and CI/CD integration.
  • Experience developing and operating agent-based or agentic workflows, such as LangGraph or similar orchestration frameworks.
  • Hands-on experience with AWS, Azure, or Google Cloud and its native logging, monitoring, and security services.
  • Familiarity with SaaS and workstation risks, including account compromise, data exfiltration, phishing, and supply chain attacks.
  • A risk-based, team-oriented approach to prioritizing security initiatives and evaluating AI applications.

Nice-to-haves

  • Computer Science degree or equivalent practical experience.
  • Experience applying GenAI and LLM-based approaches to security workflows, including detection engineering, alert triage, enrichment, or summarization.
  • Experience with infrastructure as code, such as Terraform or CloudFormation, and/or detections-as-code frameworks.
  • Experience building and maintaining production software or platforms processing high-volume logs, metrics, and traces or powering security analytics.
  • Experience deploying detections at global scale.
  • Experience with Snowflake or equivalent cloud data platforms, including security data pipelines or analytics, and interest in Snowflake Cortex AI or similar in-platform AI capabilities.

Compensation and Benefits

  • Salary range: $211,000-$303,600 annually.
  • Salary and benefits information is available on the Snowflake Careers Site for jobs located in the United States.

Skills

PythonGoSQLCI/CDunit testingLangGraphAWSmicrosoft azureGCPthreat detectionthreat huntingIncident ResponseTerraformCloudFormationLLMs
Replit

Third Party Risk Management and Customer Trust Lead

ReplitFoster City, CA

Lead substantive third-party risk management and customer trust programs at Replit, independently assessing vendor and AI model risks via SOC 2 reviews, architecture analysis, and contract redlining in partnership with Legal. Requires 8+ years GRC experience building scalable TPRM processes.

210k – 270k/yrHybrid8+ YOESecurity Engineering
Alembic

Lead Security Engineer

AlembicSan Francisco, CA

Lead Security Engineer to own end-to-end system, network, and host security for an on-prem Kubernetes-based AI factory. Design controls, lead incident response, balance open culture with IP/customer data protection; requires 8+ years security engineering with deep Kubernetes, on-prem, and incident experience.

210k – 240k/yrOn-site8+ YOESecurity Engineering
Betterment

Sr. Engineering Manager, Application Security

BettermentNew York, NY

Senior Engineering Manager leading Application Security squad to build secure software by default through threat modeling, design reviews, vulnerability management, and developer tooling. Requires hands-on team leadership and expertise across the AppSec stack.

210k – 250k/yrHybrid7+ YOESecurity Engineering
Replit

Senior Software Engineer, Fraud

ReplitFoster City, CA

Build and operate AI-powered fraud and abuse detection systems on Replit's agentic platform. Design LLM guardrails, ML classifiers, and automated response mechanisms to combat phishing, cryptomining, and platform exploitation.

210k – 265k/yrHybrid4+ YOESecurity Engineering
Replit

Senior Software Engineer, Risk

ReplitFoster City, CA

Build and operate AI-powered abuse detection and response systems to protect Replit's platform from phishing, cryptomining, fraud, and LLM-specific attacks. Requires 4+ years in security/anti-abuse and strong Python/TypeScript + SQL skills.

210k – 265k/yrHybrid4+ YOESecurity Engineering