Skip to content
SunoSunoBoston, MA

Staff Detection & Response Engineer

Owns detection engineering and incident response across cloud infrastructure, building telemetry, high-signal detections, response playbooks, and on-call practices. The role requires 6+ years of detection and response experience, strong AWS expertise, and interest in emerging AI/ML threats.

230k – 330k/yr
On-site7+ YOESecurity Engineering

About the role

Responsibilities

  • Design and build the detection and telemetry pipeline, including logging coverage, the detection stack, and the data that feeds it.
  • Write high-signal detections mapped to priority threats, including identity, access, cloud control plane, and data exfiltration paths.
  • Build and own incident response, including playbooks, on-call, live response, and post-incident reviews.
  • Partner with security and platform engineering to close telemetry gaps and instrument previously unseen areas.
  • Establish detection-as-code practices and a metrics-driven approach to response.
  • Build detection for AI-specific abuse, threats, and novel attack patterns.
  • Leverage AI to augment security operations.

Requirements

  • 6+ years of experience in detection and response, including building detection capabilities and setting direction.
  • Strong AWS-native detection experience, including CloudTrail, GuardDuty, VPC logs, flow logs, and the broader AWS ecosystem.
  • Detection-as-code and engineering-first mindset.
  • Calm, structured, and decisive incident response approach.
  • Interest in detecting emerging AI/ML abuse and threat patterns.

Nice to Haves

  • Experience with consumer products at scale.
  • Experience as an early or founding detection hire.
  • Exposure to AI/ML abuse or platform-abuse signals.

Compensation & Benefits

  • $230,000–$330,000 annual compensation.
  • Company equity package.
  • 401(k) with 3% employer match and Roth 401(k).
  • Medical, dental, and vision insurance, with PPO, HSA, and FSA options.
  • 11 paid holidays, unlimited PTO, and sick time.
  • 16 weeks of paid parental leave.
  • Creative education stipend.
  • Generous commuter allowance.
  • In-office lunch five days per week.
  • Applicants must be eligible to work in the US.
  • The role requires working onsite at one of the company’s three offices.

Skills

AWScloudtrailguarddutyvpc logsflow logsdetection-as-codeIncident Responsetelemetrythreat detectionai/ml security
Suno

Senior / Staff Application Security Engineer

SunoBoston, MA +3

Owns application security across code, APIs, services, identity systems, and AI-specific surfaces. The role requires 6+ years of hands-on security engineering experience, AppSec program-building expertise, modern application-stack knowledge, and AWS proficiency.

230k – 330k/yrOn-site6+ YOESecurity Engineering
Gusto

Senior Staff Security Engineer - Network Security

GustoSan Francisco, CA

Leads edge and network security strategy, owning Cloudflare WAF, DDoS protection, Zero Trust, and AWS perimeter controls. Partners with teams to implement layered defenses, policy-as-code, detections, and AI-assisted automations. Requires 10+ years experience with deep Cloudflare and network expertise.

230k – 270k/yrHybrid10+ YOESecurity Engineering
6sense

Staff Security Engineer - SecOps & Threats

6senseUnited States

Leads SecOps and threat response, including incident handling, forensics, automation building, and threat exercises. Requires 5+ years in Security Operations, automation experience, and familiarity with security tools like SIEM, SOAR, and AWS.

231k – 266k/yrRemote5+ YOESecurity Engineering
Databricks

Staff Product Security Engineer

DatabricksCalifornia

Staff Security Software Engineer leading architecture, standards, and development of AI security tooling, threat detection, and red-teaming platforms at Databricks. Requires 7-10 years security engineering experience, expert Python skills, and deep AI/ML security expertise.

231k – 398k/yrRemote7+ YOESecurity Engineering
Abridge

Staff Application Security Engineer

AbridgeSan Francisco, CA

Lead application security initiatives as a technical leader on a new security team. Drive threat modeling, secure SDLC, code reviews, vulnerability management, and AI security for a healthcare AI platform.

228k – 290k/yrHybrid10+ YOESecurity Engineering