Owns detection engineering and incident response across cloud infrastructure, building telemetry, high-signal detections, response playbooks, and on-call practices. The role requires 6+ years of detection and response experience, strong AWS expertise, and interest in emerging AI/ML threats.
230k – 330k/yr
On-site7+ YOESecurity Engineering
About the role
Responsibilities
Design and build the detection and telemetry pipeline, including logging coverage, the detection stack, and the data that feeds it.
Write high-signal detections mapped to priority threats, including identity, access, cloud control plane, and data exfiltration paths.
Build and own incident response, including playbooks, on-call, live response, and post-incident reviews.
Partner with security and platform engineering to close telemetry gaps and instrument previously unseen areas.
Establish detection-as-code practices and a metrics-driven approach to response.
Build detection for AI-specific abuse, threats, and novel attack patterns.
Leverage AI to augment security operations.
Requirements
6+ years of experience in detection and response, including building detection capabilities and setting direction.
Strong AWS-native detection experience, including CloudTrail, GuardDuty, VPC logs, flow logs, and the broader AWS ecosystem.
Detection-as-code and engineering-first mindset.
Calm, structured, and decisive incident response approach.
Interest in detecting emerging AI/ML abuse and threat patterns.
Nice to Haves
Experience with consumer products at scale.
Experience as an early or founding detection hire.
Exposure to AI/ML abuse or platform-abuse signals.
Compensation & Benefits
$230,000–$330,000 annual compensation.
Company equity package.
401(k) with 3% employer match and Roth 401(k).
Medical, dental, and vision insurance, with PPO, HSA, and FSA options.
11 paid holidays, unlimited PTO, and sick time.
16 weeks of paid parental leave.
Creative education stipend.
Generous commuter allowance.
In-office lunch five days per week.
Applicants must be eligible to work in the US.
The role requires working onsite at one of the company’s three offices.
Owns application security across code, APIs, services, identity systems, and AI-specific surfaces. The role requires 6+ years of hands-on security engineering experience, AppSec program-building expertise, modern application-stack knowledge, and AWS proficiency.
230k – 330k/yrOn-site6+ YOESecurity Engineering
Senior Staff Security Engineer - Network Security
GustoSan Francisco, CA
Leads edge and network security strategy, owning Cloudflare WAF, DDoS protection, Zero Trust, and AWS perimeter controls. Partners with teams to implement layered defenses, policy-as-code, detections, and AI-assisted automations. Requires 10+ years experience with deep Cloudflare and network expertise.
230k – 270k/yrHybrid10+ YOESecurity Engineering
Staff Security Engineer - SecOps & Threats
6senseUnited States
Leads SecOps and threat response, including incident handling, forensics, automation building, and threat exercises. Requires 5+ years in Security Operations, automation experience, and familiarity with security tools like SIEM, SOAR, and AWS.
231k – 266k/yrRemote5+ YOESecurity Engineering
Staff Product Security Engineer
DatabricksCalifornia
Staff Security Software Engineer leading architecture, standards, and development of AI security tooling, threat detection, and red-teaming platforms at Databricks. Requires 7-10 years security engineering experience, expert Python skills, and deep AI/ML security expertise.
231k – 398k/yrRemote7+ YOESecurity Engineering
Staff Application Security Engineer
AbridgeSan Francisco, CA
Lead application security initiatives as a technical leader on a new security team. Drive threat modeling, secure SDLC, code reviews, vulnerability management, and AI security for a healthcare AI platform.