Назад
Company hidden
7 часов назад

Staff Security Engineer - Detection and Response (AI)

205 000 - 256 000$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer - Detection and Response (AI) (AWS/SIEM/SOAR): Architecting detection, triage, and incident response systems for critical cloud infrastructure with an accent on AI-augmented pipelines, detection-as-code, and attacker TTP coverage. Focus on designing resilient telemetry and alerting frameworks, leading high-impact incident response, validating AI outputs, and driving systemic remediation.

Location: San Ramon, California or Reno, Nevada, United States

Salary: $205,000–$256,000 per year

Company

hirify.global is an industry cloud platform building a modern public-cloud solution for the investment management industry.

What you will do

  • Shape the Detections and Response Team roadmap using business priorities and threat models.
  • Identify detection requirements during the design of new features and infrastructure and close classes of vulnerabilities through variant analysis.
  • Architect AI-powered detection, triage, and investigation pipelines that improve accuracy and reduce false positives.
  • Design scalable SIEM, SOAR, ingestion, enrichment, and alerting frameworks across AWS and the broader technical environment.
  • Own incident response architecture, lead complex high-impact events, and drive findings toward systemic remediation.
  • Set technical direction for security codebases and infrastructure, establish responsible AI guardrails, influence security strategy, and mentor engineers.

Requirements

  • 8+ years of experience in detection, security operations, incident response, or software engineering, including leadership of cross-functional technical initiatives.
  • Advanced proficiency in Python or another high-level language such as Kotlin or TypeScript.
  • Ability to build and rigorously validate AI/LLM-driven detection, triage, and investigation workflows.
  • Expertise authoring detections mapped to attacker tactics, techniques, and procedures, including MITRE ATT&CK.
  • Experience building and operating detection-as-code and alerting pipelines, with strong AWS knowledge across CloudTrail, VPC Flow Logs, GuardDuty, CloudWatch, Athena, IAM analysis, Lambda, and ECS/EKS.
  • Fluency with infrastructure-as-code, such as Terraform, CI/CD practices, and clear written and verbal communication.

Nice to have

  • Experience leading high-impact incidents as a technical lead or incident commander.
  • Hands-on design of AI agents or LLM-based security operations automation.
  • Open-source detection or security tooling contributions or published security research.

Culture & Benefits

  • People-first culture centered on ownership, transparency, action, growth, and collaboration.
  • Career advancement opportunities and the ability to influence the product.
  • Company stock plan participation, subject to the applicable agreement.
  • Unlimited vacation, educational and wellness reimbursements, and $0-cost employee insurance plans.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →