Security Engineer, Detection & Response
Lead detection and response engineering efforts, building tooling and processes to monitor threats, investigate incidents, and coordinate responses across Anthropic's technology stack. Requires 5+ years in detection engineering, incident response, or threat hunting.
About the job
Responsibilities
- Lead cybersecurity Incident Response efforts covering diverse domains from external attacks to insider threats involving all layers of Anthropic’s technology stack
- Develop and deploy novel tooling that may leverage Large Language Models to enhance detection, investigation, and response capabilities
- Create and optimize detections, playbooks, and workflows to quickly identify and respond to potential incidents
- Review Incident Response metrics and procedures and drive continuous improvement
- Work cross functionally with other security and engineering teams
- Participate in an on-call rotation
Requirements
- 3+ years of software engineering experience, with security experience a plus OR 5+ years of detection engineering, incident response, or threat hunting experience
- Solid understanding of cloud environments and operations
- Experience working with engineering teams in a SaaS environment
- Exceptional communication and collaboration skills
- Ability to lead projects with little guidance
- Ability to pick up new languages and technologies quickly
- Experience handling security incidents and investigating anomalies as part of a team
- Knowledge of EDR, SIEM, SOAR, or related security tools
- Bachelor’s degree or an equivalent combination of education, training, and/or experience in a relevant field
Nice-to-Haves
- Experience performing security operations or investigations involving large-scale Kubernetes environments
- High level of proficiency in Python and query languages such as SQL
- Experience analyzing attack behavior and prototyping high quality detections
- Experience with threat intelligence, malware analysis, infrastructure as code, detection engineering, or forensics
- Experience contributing to a high growth startup environment
Skills
Python, SQL, Edr, SIEM, Soar, Kubernetes, Cloud Security, Incident Response, Threat Hunting, Detection Engineering
Similar jobs
Security Engineering jobsConduct offensive security operations, red-team engagements, penetration testing, and adversarial simulations across cloud, endpoint, and bare-metal environments. The role requires at least five years of experience, strong engineering skills, and expertise across multiple security domains.
Build and operate evaluations for cyber capabilities and safeguard robustness in AI models, analyze adversarial data, and develop cyber-abuse detection probes. The role requires hands-on cybersecurity experience, Python proficiency, evaluation expertise, and strong cross-functional communication.
This hands-on security engineer will research sophisticated threat actors, build intelligence pipelines, conduct threat hunts, analyze malware and infrastructure, and translate findings into durable detections. The role requires at least five years of cyber threat intelligence or related experience, strong Python engineering, and malware and detection-analysis expertise.
Senior hands-on security engineer responsible for endpoint hardening, device trust, identity and SaaS governance, and scalable corporate-security automation across a growing organization. Requires endpoint security expertise, Python scripting, IAM and zero-trust depth, and strong threat-modeling judgment.
Design and ship security-critical software and firmware at the boundary between policy systems and hardware-backed cryptographic protection. The role requires 5+ years of secure embedded development and deep C, C++, or Rust experience.