Security Engineer, Detection and Response

Jobtailor

Greater London

On-site

GBP 90,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Jobtailor is seeking a Senior AI Security Engineer in Greater London to design detection strategies for AI-specific threats, orchestrate containment playbooks, and lead incident response across Cloud, AppSec and AI Security teams.

You will hunt threats in GPU clusters and training infrastructure, perform forensic investigations of training pipeline attacks, and translate threat research into production detections with dashboards and telemetry.

Qualifications

  • 3-5+ years in security operations, detection engineering, or incident response.
  • Proven track record of identifying and stopping sophisticated attacks in production environments.
  • 3+ years specifically securing AI/ML infrastructure, high-performance computing environments, or other distributed systems at scale.
  • Strong programming skills in Python, KQL, SPL, or similar languages.
  • Experience with SIEM platforms, detection technologies, and forensic investigation techniques.

Responsibilities

  • Design detection strategies for AI-specific threats (prompt injection, model extraction, data poisoning, adversarial examples, unauthorized access).
  • Build automated response playbooks and orchestration workflows to contain threats and remediate endpoints.
  • Lead security incident response coordination across Cloud, AppSec, Enterprise, and AI Security teams.
  • Conduct forensic investigations into training pipeline attacks and model manipulation attempts.
  • Draft incident communications for engineering and executive leadership.
  • Proactively hunt sophisticated threats across GPU clusters and training infrastructure.
  • Analyze model outputs for signs of compromise and reproduce AI-specific vulnerabilities.
  • Identify visibility gaps in distributed training environments.
  • Build detection-as-code frameworks with version control and automated deployment.
  • Onboard telemetry from AI training infrastructure and inference endpoints.
  • Create dashboards tracking model security metrics, GPU utilization patterns, and access to sensitive research data.
  • Translate AI Security threat research into production detections and monitor GPU clusters for threats.
  • Maintain a 24/7 on-call rotation for critical AI security incidents.
  • Continuously improve detection coverage and automation capabilities.

Skills

AI Security Threat Detection
Incident Response Coordination
Forensic Investigation Techniques
Python Programming
SIEM Platform Experience

Tools

KQL
SPL
Telemetry Onboarding
Dashboard Creation

Job description

  • Design and implement detection strategies for AI-specific threats including prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training datasets or model weights
  • Build automated response playbooks and orchestration workflows to contain threats and remediate compromised inference endpoints
  • Lead security incident response coordination across Cloud, AppSec, Enterprise, and AI Security teams
  • Conduct forensic investigations into training pipeline attacks and model manipulation attempts
  • Draft incident communications for engineering and executive leadership
  • Proactively hunt sophisticated threats across GPU clusters and training infrastructure
  • Analyze model outputs for signs of compromise and reproduce AI-specific vulnerabilities
  • Identify visibility gaps in distributed training environments
  • Build detection-as-code frameworks with version control and automated deployment
  • Onboard telemetry from AI training infrastructure and inference endpoints
  • Create dashboards tracking model security metrics, GPU utilization patterns, and access to sensitive research data
  • Translate AI Security threat research into production detections and monitor GPU clusters for threats
  • Maintain a 24/7 on-call rotation for critical AI security incidents
  • Continuously improve detection coverage and automation capabilities
Requirements
  • 3-5+ years in security operations, detection engineering, or incident response
  • Proven track record of identifying and stopping sophisticated attacks in production environments
  • 3+ years specifically securing AI/ML infrastructure, high-performance computing environments, or other distributed systems at scale
  • Strong programming skills in Python, KQL, SPL, or similar languages
  • Experience with SIEM platforms, detection technologies, and forensic investigation techniques
  • Ability to build detection for novel attack techniques and conduct forensics in complex distributed environments
  • Track record of securing high-value intellectual property, automating incident response, and identifying critical security gaps through proactive threat hunting
  • Ability to collaborate across security, infrastructure, and AI research teams
  • Must be able to work in person in the office 3 days per week
  • Must be legally authorized to work in the country where the job is located
Core Competencies

Demonstrates expertise in AI security, focusing on detection strategies for threats, incident response coordination, and forensic investigations. Proficient in building automated frameworks and collaborating across security and AI research teams.

Highest-signal resume keywords
  • AI Security Threat Detection
  • Incident Response Coordination
  • Forensic Investigation Techniques
  • Python Programming
  • SIEM Platform Experience
Hard Skills
  • Detection Engineering
  • Threat Hunting
  • Data Poisoning Prevention
  • Model Extraction Security
  • Adversarial Example Mitigation
  • Automated Response Playbooks
  • Detection-as-Code Frameworks
  • GPU Cluster Security
  • Incident Communication Drafting
  • Model Security Metrics Analysis
Soft Skills
  • Collaboration Across Teams
  • Proactive Threat Identification
  • Communication with Leadership
Industry Keywords
  • AI/ML Infrastructure Security
  • High-Performance Computing
  • Distributed Systems Security
  • Incident Response Automation
  • Intellectual Property Protection
Tools & Technologies
  • SIEM Platforms
  • KQL
  • SPL
  • Telemetry Onboarding
  • Dashboard Creation
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detection and Response Engineer
Senior Detection and Response Engineer

Jobtailor • Cambridge

On-site
GBP 65,000 - 95,000
Lead Security Operations Engineer
Lead Security Operations Engineer

Jobtailor • Greater London

On-site
GBP 120,000 - 170,000
Security Consultant
Security Consultant

Anson McCade • Greater London

Hybrid
GBP 70,000 - 90,000
Private medical and dental insurance
Access to diversity and support groups
25 days annual leave
AI Security Architect
AI Security Architect

Sapiens International • Greater London

On-site
GBP 90,000 - 120,000
Director, Security Engineering
Director, Security Engineering

Optimizely • City of Westminster

On-site
GBP 110,000 - 160,000
Security Engineer, Detection and Response - EMEA
Security Engineer, Detection and Response - EMEA

OpenAI • Greater London

On-site
GBP 60,000 - 80,000
Director, Security Engineering
Director, Security Engineering

Optimizely • Whitehall

On-site
GBP 140,000 - 190,000
AI Security Architect
AI Security Architect

Sapiens • Greater London

On-site
GBP 90,000 - 150,000
Director, Security Engineering
Director, Security Engineering

Optimizely • Greater London

Hybrid
GBP 150,000 - 210,000
Cyber Security Engineer - Threat Detection
Cyber Security Engineer - Threat Detection

ICE Clear Europe Limited • Greater London

Hybrid
GBP 70,000 - 120,000