Security engineer, detection and response

Cybersecurity Jobs

New York (NY)

On-site

USD 132,000 - 240,000

Full time

11 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Generous PTO
Medical/Dental/Vision
Parental leave 16 weeks
Fertility support
Galleri testing
HSA/FSA
Wellness stipends
Company off-sites
Stock options
401k
Annual learning stipend

Job summary

WRITER is hiring a staff-level Security engineer to build AI-focused detection and automated response for threats targeting the AI platform, training data, and model deployments. You will design detections for AI threats, automate responses, and coordinate incident handling across Cloud, AppSec, Enterprise, and AI Security teams.

The role involves threat hunting across GPU clusters and training infrastructure, building detections as code, onboarding telemetry, and maintaining 24/7 on-call

Qualifications

  • 3-5+ years experience in security operations, detection engineering, or incident response with a track record of identifying and stopping sophisticated production attacks.
  • Experience securing AI/ML infrastructure, high-performance computing environments, or other distributed systems at scale.
  • Strong programming ability in Python and/or KQL and/or SPL to build custom detection logic, automate response workflows, and operationalize security across cloud-native and distributed computing environments.
  • Experience with SIEM platforms, detection technologies, and forensic investigation techniques.
  • Proven ability to build detections for novel attack techniques without established patterns and to conduct forensics in complex distributed environments.

Responsibilities

  • Design and implement detection strategies for AI-specific threats, including prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training datasets or model weights across distributed infrastructure.
  • Build automated response playbooks and orchestration workflows to contain threats without human intervention, supporting self-healing security systems.
  • Remediate compromised inference endpoints through automated actions.
  • Coordinate security incident response across teams when AI infrastructure or models are compromised.
  • Conduct forensic investigations for training pipeline attacks and model manipulation attempts.
  • Draft clear incident communications for engineering and executive leadership.

Skills

Python
KQL
SPL
Detection engineering
Incident response

Tools

SIEM

Job description

WRITER is hiring a staff-level Security engineer to build AI-focused detection and automated response for threats targeting the AI platform, training data, and model deployments.

Responsibilities
  • Design and implement detection strategies for AI-specific threats, including prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training datasets or model weights across distributed infrastructure
  • Build automated response playbooks and orchestration workflows to contain threats without human intervention, supporting self-healing security systems that reduce mean time to response from hours to minutes
  • Remediate compromised inference endpoints through automated actions
  • Coordinate security incident response across teams (Cloud, AppSec, Enterprise, AI Security) when AI infrastructure or models are compromised
  • Conduct forensic investigations for training pipeline attacks and model manipulation attempts
  • Draft clear incident communications for engineering and executive leadership
  • Perform proactive threat hunting across GPU clusters and training infrastructure by analyzing model outputs, reproducing AI-specific vulnerabilities from research, and identifying visibility gaps in distributed training environments
  • Create detection-as-code frameworks with version control and automated deployment
  • Onboard telemetry from AI training infrastructure and inference endpoints
  • Build dashboards tracking model security metrics, GPU utilization patterns, and access to sensitive research data
  • Act as an operational security partner across teams by translating AI Security threat research into production detections and enabling responsible AI development through security guardrails
  • Monitor Cloud Infrastructure GPU clusters for threats and support Software Security Engineering by detecting customer-impacting incidents
  • Maintain a 24/7 on-call rotation for critical AI security incidents and continuously improve detection coverage and automation as AI systems evolve
Requirements
  • 3-5+ years experience in security operations, detection engineering, or incident response with a track record of identifying and stopping sophisticated production attacks
  • Experience securing AI/ML infrastructure, high-performance computing environments, or other distributed systems at scale
  • Strong programming ability in Python and/or KQL and/or SPL to build custom detection logic, automate response workflows, and operationalize security across cloud-native and distributed computing environments
  • Experience with SIEM platforms, detection technologies, and forensic investigation techniques
  • Proven ability to build detections for novel attack techniques without established patterns and to conduct forensics in complex distributed environments
  • Self-directed execution mindset focused on securing high-value intellectual property, automating incident response in complex environments, and proactively finding critical security gaps
  • Strong alignment with WRITER values, including connecting across security, infrastructure, and AI research teams; challenging assumptions about AI security engineering; and owning protection of the AI platform with accountability
Technologies
  • Python
  • KQL
  • SPL
  • SIEM
Benefits
  • Generous PTO plus company holidays
  • Medical, dental, and vision coverage for you and your family
  • Paid parental leave for all parents (16 weeks)
  • Fertility and family planning support
  • Early-detection cancer testing through Galleri
  • Flexible spending account and dependent FSA options
  • Health savings account for eligible plans with company contribution
  • Annual work-life stipends for wellness and learning and development
  • Company-wide off-sites and team off-sites
  • Competitive compensation, company stock options, and 401k

Location: New York, NY (onsite)

Compensation: USD 132,000 - 240,000 per year

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security engineer, detection and response
Security engineer, detection and response

WRITER • New York (NY)

On-site
USD 132,000 - 240,000
Generous PTO
Medical, dental, and vision coverage
Parental leave
+7
Security engineer, detection and response
Security engineer, detection and response

WRITER • San Francisco (CA)

On-site
USD 165,000 - 230,000
Generous PTO
Medical, dental, and vision coverage
Parental leave
+3
Staff security engineer, application security
Staff security engineer, application security

Cybersecurity Jobs • Seattle (WA)

Hybrid
USD 183,000 - 240,000
Generous PTO
Medical, dental, and vision coverage
Parental leave 16 weeks
+9
Staff security engineer, application security
Staff security engineer, application security

WRITER • San Francisco (CA)

Hybrid
USD 183,000 - 240,000
Generous PTO and holidays
Medical, dental, vision coverage
Parental leave (16 weeks)
+3
Staff Security Engineer (Application Security)
Staff Security Engineer (Application Security)

Writer • United States

Hybrid
USD 170,000 - 210,000
Health insurance
Parental leave
Hybrid work
+2
Staff security engineer, application security
Staff security engineer, application security

Writer • California (MO)

Hybrid
USD 180,000 - 240,000
Generous PTO
Medical, dental, vision coverage
Parental leave
Staff security engineer, application security
Staff security engineer, application security

Showcify, Inc. • United States

On-site
USD 170,000 - 230,000
Generous PTO
Health coverage
Parental leave
+3
Security engineer, application security WRITER Middle 4h ago
Security engineer, application security WRITER Middle 4h ago

Remote Genie • San Francisco (CA), Northern (KY)

On-site
USD 180,000 - 240,000
Health coverage
Parental leave
Fertility support
+4
Security engineer, detection and response
Security engineer, detection and response

Jobright.ai • New York (NY)

On-site
USD 90,000 - 342,000
Medical insurance
Vision insurance
401(k)
Software engineer, connectors & MCP
Software engineer, connectors & MCP

WRITER • Seattle (WA)

Hybrid
USD 132,000 - 240,000
Generous PTO
Medical, dental, and vision
Parental leave
+2