Staff Security Engineer - Detection & Response (AI-Driven Threat Hunting & Incident Response)

Uber

United States

On-site

USD 232,000 - 258,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Bonuses
Equity
401(k) plan
Benefits

Job summary

Uber is seeking a Staff Security Engineer to lead the Cyber Defense team and build AI-powered incident response and threat hunting capabilities. You will architect scalable security platforms, mentor engineers, and deliver high-impact projects.

You will lead autonomous investigation agents and AI-driven threat hunting across cloud, host, network, and applications, ensuring rapid, machine-speed responses and robust forensics capabilities.

Qualifications

  • BS/MS degree in Computer Science, Engineering, or a related field.
  • 7+ years of industry experience in a software development or security engineering environment.
  • Proficiency in Go, Java, or Python.

Responsibilities

  • Agentic Incident Response: Architect and build autonomous security agents that investigate, triage, contain, and remediate incidents end-to-end.
  • AI-Driven Threat Hunting: Design and lead proactive hunting campaigns across cloud, host, network, and application telemetry, and scale hunting with platforms and agents.
  • Investigation & Forensics at Scale: Build tooling and data pipelines powering deep investigations and correlating signals for automated response Playbooks.
  • Detection Feedback Loop: Partner with detection engineering to convert hunt findings into higher-fidelity signals for the platform.
  • Technical Leadership: Set technical direction for projects, manage priorities and tradeoffs.
  • Engineering Excellence: Champion best software engineering practices and a culture of quality and operational excellence.
  • Cross-Functional Collaboration: Work with IT, product and security teams to strengthen response readiness.

Skills

Golang
Java
Python

Education

BS/MS Degree in Computer Science, Engineering, or related field

Tools

CrowdStrike
SentinelOne
Splunk
Chronicle

Job description

About the Role

Our mission is to protect, defend, and secure Uber's products, infrastructure, and data by building highly available, scalable, and extensible security solutions and services. We are seeking a Staff Security Engineer to join the Cyber Defense team to drive the development of our next-generation incident response and threat hunting capabilities, powered by AI/ML/GenAI. In this role, you will be a passionate and pragmatic technologist, designing scalable systems while delivering high-quality code.

You will architect and implement industry-leading response solutions, including autonomous investigation agents and AI-driven threat hunting platforms, to defend Uber at machine speed against sophisticated, AI-driven adversaries. As a Staff Engineer, you are not only a technical role model but also an empathic leader and humble teacher, mentoring a team of passionate engineers while delivering uniquely challenging projects.

---- What the Candidate Will Do ----

  • Agentic Incident Response: Architect and build autonomous security agents that investigate, triage, contain, and remediate incidents end-to-end, achieving response at machine speed and dramatically reducing mean-time-to-respond.
  • AI-Driven Threat Hunting: Design and lead proactive, hypothesis-driven hunting campaigns across cloud, host, network, and application telemetry, and build the platforms and agents that scale hunting from manual expeditions to continuous, automated pursuit of adversaries.
  • Investigation & Forensics at Scale: Build the tooling and data pipelines that power deep investigations and forensics — correlating signals, reconstructing attacker activity, and turning findings into repeatable, automated response playbooks.
  • Detection Feedback Loop: Partner with detection engineering to convert hunt findings and incident learnings into higher-fidelity signals, closing the loop between what hunters find and what the platform detects.
  • Technical Leadership: Set technical direction for specific projects by identifying priorities, managing expectations, and considering tradeoffs.
  • Engineering Excellence: Champion best software engineering practices and empower teams to build a culture of quality and operational excellence.
  • Cross-Functional Collaboration: Partner with IT, product, and various security teams to strengthen response readiness and posture across the entire environment.

---- Basic Qualifications ----

  • BS/MS Degree in Computer Science, Engineering, or a related field.
  • 7+ years of industry experience in a software development or security engineering environment.
  • Proficiency in programming languages such as Golang, Java, or Python.
  • Deep understanding of distributed systems, high-availability, and high-performance system design.
  • Hands-on experience with Cyber Defense such as incident response, threat hunting, and investigation.

---- Preferred Qualifications ----

  • Master's Degree or PhD in Computer Science, Engineering, Information Security or a related field.
  • Prior experience leading incident response, threat hunting, digital forensics, and building AI-driven response tooling.
  • Deep experience incorporating GenAI agents into production security services, specifically for investigation, triage, or automated response.
  • In-depth knowledge of security software frameworks, including EDR solutions (e.g., CrowdStrike, SentinelOne) and SIEM platforms (e.g., Splunk, Chronicle).
  • Strong understanding of security frameworks and standards (e.g., MITRE ATT&CK, NIST CSF, ISO 27001).

Ready to Ride?

This isn't the kind of place where you follow a playbook — it's where you help write one. If you're driven by impact, energized by challenge, and ready to shape how the world moves — we'd love to hear from you.

You may be eligible for bonuses, equity, and other compensation, as well as a range of benefits. Explore our benefits.

Offices remain key to collaboration and Uber's culture. Unless approved for full remote work, employees must spend at least 50% of their time in-office. Some roles, like those at greenlight hubs, require full-time in-office presence.

Uber is proud to be an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you have a disability or special need that requires accommodation, please let us know by completing this form.


For New York City, NY-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For San Francisco, CA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For Seattle, WA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For Sunnyvale, CA-based roles: The base salary range for this role is USD $232,000 per year - USD $258,000 per year.


For all US locations, you will be eligible to participate in Uber's bonus program, and may be offered an equity award & other types of comp. All full-time employees are eligible to participate in a 401(k) plan. You will also be eligible for various benefits.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer - Detection & Response (AI-Driven Threat Hunting & Incident Response)
Staff Security Engineer - Detection & Response (AI-Driven Threat Hunting & Incident Response)

Uber • Sunnyvale (CA)

On-site
USD 232,000 - 258,000
Bonus program
Equity award
401(k) plan
+1
Security Technologist II - Incident Command
Security Technologist II - Incident Command

Uber • San Francisco (CA)

On-site
USD 153,000 - 170,000
Bonus program
Equity award
401(k) plan
+1
Senior Staff Security Engineer - (Agentic Systems)
Senior Staff Security Engineer - (Agentic Systems)

Uber • United States

Hybrid
USD 267,000 - 297,000
Bonus program
Equity awards
401(k) plan
+1
Security Technologist II - Technical Security
Security Technologist II - Technical Security

Uber • United States

On-site
USD 153,000 - 170,000
Bonuses
Equity
Benefits
+1
Staff Security Engineer - Vulnerability Management
Staff Security Engineer - Vulnerability Management

Uber • New York (NY)

On-site
USD 232,000 - 258,000
Bonus program
Equity
401(k) plan
+1
Security Technologist II - Technical Security
Security Technologist II - Technical Security

Uber • San Francisco (CA)

On-site
USD 153,000 - 170,000
Bonus program
Equity award
401(k) plan
+1
Staff Security Engineer - Vulnerability Management
Staff Security Engineer - Vulnerability Management

Uber • United States

On-site
USD 232,000 - 258,000
Bonus program
Equity
401(k) plan
+1
Sr Staff Engineer - Core Infrastructure
Sr Staff Engineer - Core Infrastructure

Uber • United States

On-site
USD 267,000 - 297,000
Bonuses
Equity
401(k) plan
Senior Staff Security Engineer - (Agentic Systems)
Senior Staff Security Engineer - (Agentic Systems)

Uber • San Francisco (CA)

On-site
USD 267,000 - 297,000
Bonus program
Equity award
401(k) plan
+1
Staff Engineer - Core Infrastructure
Staff Engineer - Core Infrastructure

Uber • United States

Hybrid
USD 232,000 - 258,000
Bonus program
Equity award
401(k) plan
+1