Detection & Response Security Engineer

Harvey Harvey · AI Frontier · San Francisco, CA · Security

This role is for a Security Engineer focused on detection and response within an enterprise AI company. The primary focus is on building and maintaining a threat detection platform, using offensive security expertise to identify vulnerabilities, and responding to security incidents. While the company utilizes AI, this role is not directly building AI models but rather securing the AI platform and infrastructure.

What you'd actually do

  1. Use your offensive security expertise to develop plausible threat scenarios and identify opportunities for detection
  2. Assess logs for gaps and implement additional logging as needed
  3. Build out sophisticated data pipelines to handle increasing volumes of data and enrich our observability
  4. Lead incident response, as needed
  5. Develop detection rules and a process for keeping them effective in collaboration with our other D&R Engineers

Skills

Required

  • Demonstrated ability to find weaknesses (e.g. privilege escalation) in real-world corporate networks, cloud environments, or applications
  • Hands-on experience responding to security incidents
  • Strong understanding of computer networks, operating systems, and cryptographic protocols
  • 4+ years of experience in Security, Software Engineering, Site Reliability Engineering, or related disciplines

Nice to have

  • Experience working at a small company, smaller independent division of larger company, or a hyper-growth startup
  • Experience with ClickHouse or similar data warehouses
  • Red team experience
  • Experience in incident commander role, managing security incidents or other disasters

What the JD emphasized

  • offensive security expertise
  • state of the art agentic threat detection platform
  • security incidents
  • detection rules