Skip to content
FluidstackFluidstackNew York, NY

Senior Detection Engineer

Own end-to-end detection engineering program including threat modeling, detection-as-code pipelines, threat hunting, SIEM/EDR tuning, alert triage and incident response for rapidly scaling AI compute infrastructure. Requires 5+ years in detection engineering or threat hunting with deep SIEM/EDR and scripting experience.

176k – 218k/yr
On-site5+ YOESecurity Engineering

About the role

Role Scope

Own the detection engineering program end to end: threat modeling, detection design, deployment, tuning, and retirement, with coverage mapped to MITRE ATT&CK and gaps documented rather than assumed away.

Build detection-as-code pipelines so every rule is version-controlled, tested, and peer-reviewed before it ships, and false-positive rates are measured, not guessed.

Run threat hunts against real adversary behavior in our cloud, SaaS, and data center environments, and convert findings into repeatable detections.

Drive SIEM and EDR pipeline health: log source onboarding, normalization, and alert quality good enough that on-call responders trust what pages them.

Lead triage and response for the alerts you build, and close out incidents with root-cause writeups that change the detection stack, not just the ticket queue.

Build automation that removes manual triage steps, so the team's alert load scales slower than the company does.

Requirements

  • 5+ years in detection engineering or threat hunting inside a mature security operations org (cloud-native infrastructure, SaaS, or fintech).
  • Deep hands-on experience with SIEM and EDR tooling: Splunk, Elastic, CrowdStrike, or equivalent, including query languages and pipeline tuning, not just console use.
  • Written and maintained detection logic mapped to MITRE ATT&CK against real adversary behavior, and can point to detections that caught something.
  • Strong scripting and automation skills (Python, SQL, or similar) and a detection-as-code workflow you'd defend: tests, review, and rollback included.
  • Know the difference between a noisy rule and a broken one, and tune or kill detections before responders learn to ignore them.
  • Operate well with minimal process: scope your own work, ship without a mature SOC around you, and build the process you need as you go.
  • Write clearly enough that your runbooks and incident reports work when you're asleep.

Nice-to-Haves

  • Experience securing physical infrastructure or OT/data center environments.
  • Purple team experience.
  • Contributions to open-source detection content (Sigma, detection rule repos).

Skills

detection engineeringthreat huntingSIEMedrSplunkelasticcrowdstrikemitre att&ckPythonSQLdetection-as-codeThreat Modeling
Snowflake

Senior Red Team Engineer

SnowflakeUnited States

Senior Red Team Engineer performing security assessments, vulnerability discovery, and tool development across Snowflake's cloud environments. Requires 4+ years in offensive security, cloud knowledge (AWS/GCP/Azure), and coding in languages like Python or Go; 6+ years and community contributions preferred.

176k – 253k/yr
Remote7+ YOESecurity Engineering
Doxel

Senior Platform Engineer, Security

DoxelSan Francisco, CA

Build and secure Doxel's internal developer platform on GCP. Own cloud security posture, embed security into CI/CD pipelines, and drive adoption of secure golden paths across engineering teams.

175k – 220k/yr
Hybrid6+ YOESecurity Engineering
Crusoe

Senior Software Engineer, Security

CrusoeSan Francisco, CA

Design, build, and deploy scalable security services, PKI, and secrets management platforms. Implement automation to eliminate manual security risk remediation across enterprise infrastructure.

175k – 210k/yr
On-site5+ YOESecurity Engineering
Sigma

Senior Security Engineer

SigmaSan Francisco, CA

Senior Security Engineer building and scaling security platforms, AI/LLM security controls, detections-as-code, and automation across cloud and SaaS environments. Requires 5+ years hands-on security engineering experience and strong Python/cloud skills.

175k – 220k/yr
On-site5+ YOESecurity Engineering
Sigma

Senior Security Engineer - Data Security

SigmaSan Francisco, CA

Senior Security Engineer building and scaling data protection platforms, DLP, DSPM, and AI-driven automation across SaaS, cloud, and data warehouse environments. Requires 5+ years in security engineering and strong software engineering skills.

175k – 220k/yr
On-site5+ YOESecurity Engineering