Security engineer, detection and response

Remote San Francisco, CA FullTime

Posted 11h ago

Job Location

San Francisco, CA

Tech Stack

Remote Work Policy

Fully remote

Employment Type

FullTime

Categories

Applied AI Engineer

About the job

WRITER is seeking a Staff Detection and Response Engineer to join their security team. This role is crucial for protecting the AI infrastructure that is transforming how the world works. You will be responsible for building sophisticated detection systems to identify attacks targeting the AI platform, training data, and model deployments, while also creating automated response capabilities that scale with the company's rapid growth. This position combines hands-on security engineering with strategic thinking to stay ahead of novel threats in cutting-edge AI/AGI systems. You will act as the operational arm of the security function, translating threat intelligence into real-time detections, coordinating incident response, and hunting for sophisticated attacks across GPU clusters and distributed training environments. This is an opportunity to define AI security engineering at scale, working closely with AI Security research, Cloud Infrastructure, Software Security Engineering, and AI researchers to build a defense-in-depth strategy.

Responsibilities

  • Design and implement detection strategies for AI-specific threats like prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training data or model weights.
  • Build automated response playbooks and orchestration workflows for self-healing security systems, reducing response time and automatically remediating compromised endpoints.
  • Lead security incident response coordination across multiple teams during AI infrastructure or model compromises, conducting forensic investigations and drafting incident communications.
  • Proactively hunt for sophisticated threats across GPU clusters and training infrastructure by analyzing model outputs, reproducing vulnerabilities, and identifying visibility gaps.
  • Develop detection-as-code frameworks with version control and automated deployment, onboard telemetry from AI infrastructure, and create dashboards for model security metrics.
  • Collaborate cross-functionally as an operational security partner, translating threat research into production detections and enabling responsible AI development.
  • Maintain 24/7 on-call rotation for critical AI security incidents and continuously improve detection coverage and automation.

Requirements

  • 3-5+ years in security operations, detection engineering, or incident response with a proven track record of stopping sophisticated attacks.
  • Experience securing AI/ML infrastructure, high-performance computing environments, or other distributed systems at scale.
  • Strong programming skills in Python, KQL, SPL, or similar languages for custom detection logic and automation.
  • Experience with SIEM platforms, detection technologies, and forensic investigation techniques.
  • Ability to build detections for novel attack techniques and conduct forensics in complex distributed environments.
  • Self-directed execution mindset with a track record of securing high-value intellectual property and automating incident response.
  • Experience identifying critical security gaps through proactive threat hunting.

About Writer

Get new AI jobs in your inbox

A weekly digest of the newest AI engineering roles.

© 2026 AI Job Board. All rights reserved.