Staff Security Engineer - Detection and Response
Core
Architect and lead AI-augmented detection and response pipelines for critical cloud infrastructure, reducing false positives and guiding high-impact incident response.
Role type
Staff Security Engineer (Detection and Response)
Builds
AI-powered detection/triage pipelines, scalable SIEM/SOAR frameworks, and incident response programs
Domain
Cloud Security (AWS), Security Operations, AI/LLM Security
Deliverable
production ML models | product features
Required skills
AI/LLM system engineering, detection-as-code, AWS security services (CloudTrail, GuardDuty, Athena), MITRE ATT&CK mapping, incident response leadership, infrastructure-as-code (Terraform), Python/Kotlin/TypeScript
Preferred skills
Leading complex incidents as technical lead, hands-on AI agent design, open source security contributions
Technologies
AWS (CloudTrail, VPC Flow Logs, GuardDuty, CloudWatch, Athena, Lambda, ECS/EKS), Terraform, Python, Kotlin, TypeScript
Responsibilities
Shape DART roadmap based on threat models, eliminate detection gaps via variant analysis, architect AI-powered pipelines, collaborate on SIEM/SOAR design, own incident response program maturity, set technical direction for codebases, establish AI usage standards, influence security strategy, mentor engineers
Seniority
Staff, hands-on IC with strategic influence
