Staff Security Engineer, Detection & Response
$221k - $299kMaven Clinic
Job Description
Job Description
Maven Clinic is the world's largest virtual clinic for women and families on a mission to make healthcare work for all of us. Through Maven Enterprise, the company partners with more than 2,300 employers and health plans to provide end-to-end women's and family health programs spanning fertility and family building, maternity and newborn care, parenting and pediatrics, and menopause and midlife — improving clinical outcomes, reducing healthcare costs, and expanding equitable access to high-quality care at scale. Through its consumer platform, Maven provides direct access to virtual care across 30+ specialties, as well as dedicated hormone and GLP-1 care programs purpose-built for women. Founded in 2014 by CEO Kate Ryder, Maven Clinic has raised more than $425 million from leading healthcare and technology investors including General Catalyst, Sequoia, Dragoneer Investment Group, Oak HC/FT, StepStone Group, Icon Ventures, and Lux Capital. Recognized for innovation and industry leadership, Maven has been named to the TIME100 Most Influential Companies, CNBC Disruptor 50, Fast Company's Most Innovative Companies, and FORTUNE Best Places to Work. Learn more at mavenclinic.com
An award-winning culture working towards an important mission – Maven Clinic is a recipient of over 30 workplace and innovation awards, including:
- TIME 100 Most Influential Companies (2023, 2026)
- Fortune Change the World (2024)
- CNBC Disruptor 50 List (2022, 2023, 2024)
- Fortune Best Workplaces for Millennials (2024)
- Fortune Best Workplaces in Health Care (2024)
- Fast Company Most Innovative Companies (2020, 2023)
- Fortune Best Workplaces NY (2020, 2021, 2022, 2023, 2024)
You'll own our Incident Detection and Response program, including threat modeling our systems and codebase and directing the investigation when something does happen. You'll join a team that includes an AppSec-focused engineer and an infrastructure-focused engineer, and you'll guide technical direction and judgment calls. You'll spend most of your time finding bugs in our code and gaps in our SDLC before they become incidents, then building and implementing or project managing the fixes yourself. AI is a growing part of that surface, and as our reliance on LLMs, AI-generated code, and agents expands, you'll be responsible for understanding and managing the risk that comes with it.
What You'll OwnInvestigation & Technical Direction- Lead investigations hands-on. When an incident or suspicious finding comes up, you pull the logs, build the narrative of what happened, and advise business and engineering leaders on next steps.
- Read production code when needed to understand what's actually happening.
- When you're not investigating, hunt for bugs in our codebase and weaknesses in our SDLC where problems can slip past existing controls.
- Propose and implement fixes yourself, or manage the resolution with the right teams, whether that's a specific code fix, a broader process or control change.
- Partner with our Product Security Engineer on golden paths when a weakness points to a systemic gap.
- Own and tune the detection logic running through 7AI, validating its investigations and escalations and setting the criteria for what triggers an alert.
- Close gaps in logging and visibility so the tooling has the right data to work with.
- Help us understand and manage the security risks that come with our growing use of LLMs and AI tooling, both in what we build and what we adopt internally.
Required:
- 6+ years of security experience combining hands-on software or AppSec depth with detection and SIEM engineering ownership.
- Comfortable reading production code across multiple languages and stacks well enough to judge whether a finding is actually exploitable.
- Experience building threat models of codebases, reasoning about attack surface, trust boundaries, and data flow well enough to anticipate where problems will emerge.
- A track record of finding and fixing systemic weaknesses, whether they surfaced through an incident or through your own proactive review.
- Strong communication skills, with enough credibility to direct an investigation and influence peers informally.
Strongly preferred:
- Hands-on experience with AI-assisted security operations tooling, such as AI SOC platforms, LLM-based triage, or agentic escalation systems.
- Interest or experience in securing AI and LLM-powered systems, including risks like prompt injection, model misuse, or agentic tool abuse.
- Prior exposure to golden-path or secure-by-default infrastructure initiatives, even in a supporting role.
- Experience with container or image security and the patching lifecycle.
- A relevant certification such as GCIH, GCFA, GCDA, OSCP, or CISSP.
The base salary range for this role is $221,000 - $299,000 per year. You will also be entitled to receive equity and benefits. Individual pay decisions are based on a number of factors, including qualifications for the role, experience level, and skillset.
Maven embraces a flexible hybrid work model. Our teams primarily operate from the New York Metropolitan area, NY, and remotely via San Francisco/Bay Area, CA, Seattle, WA. For those in our New York City office, we encourage in-person collaboration by requiring team members to work onsite three days a week (Tuesday, Wednesday, Thursday). For those based in Boston, DC, Chicago, Seattle, and San Francisco, we encourage in-person collaboration by requiring team members to attend monthly Work Together Days within these cities. This policy aims to balance remote work flexibility with the benefits of face-to-face interaction.
At Maven we believe that a diverse set of backgrounds and experiences enrich our teams and allow us to achieve above and beyond our goals. If you do not have experience in all of the areas detailed above, we hope that you will share your unique background with us in your application and how it can be additive to our teams.
Benefits That Work For You
Our benefits are designed to support your health, well-being and career development, helping you thrive both personally and professionally. We remain focused on providing a competitive benefits package for our employees. On top of standards such as employer-covered health, dental, and insurance plan options, we offer an inclusive approach to benefits:
- Maven for Mavens: access to the full platform and specialists, including care for mental health, reproductive health, family planning and pediatrics.
- Whole-self care through wellness partnerships
- Hybrid work, in office meals, and work together days
- 16 weeks 100% paid parental leave and new parent stipend (for Mavens who've been with us for 1 year+)
- Annual professional development stipend and access to a personal career coach through Maven for Mavens
- 401K matching for US-based employees, with immediate vesting
These benefits are applicable to Maven Clinic Co., US-based, full-time employees only. 1099/Contract Providers are ineligible for these benefits.
Maven is an affirmative action and equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. Maven is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Maven Clinic interview requests and job offers only originate from an @mavenclinic.com email address (e.g View email address on us.fitly.work). Maven Clinic will never ask for sensitive information to be delivered over email or phone. If you receive a scam issue or a security issue involving Maven Clinic please notify us at: View email address on us.fitly.work. For general and additional inquiries, please contact us at View email address on us.fitly.work.
$185k - $280k
...we build.We’re looking for a hands-on Detection Engineer to build and operate the systems and workflows... ...powers them, participate in incident response, and help shape how detection and... ...closely with Engineering, Corporate Security, and Infrastructure, with broad latitude...SuggestedLocal area- ...apply below. About the role We are looking for a Security Engineer to help build and strengthen security foundations from... ...fast-moving startup environment, with a primary focus on detection and response. This is a strong opportunity for someone early in their...SuggestedWork at officeImmediate startRemote workFlexible hoursShift work
$141.6k - $212.4k
...com/careers to see how we empower creators to own their own destiny. Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team. This is a hands-on technical role that involves building and maintaining secure, reliable,...Suggested$200k - $325k
...horizontal AI automation layer used across IT, HR, Finance, Security, Legal, and Engineering. Our mission is to eliminate repetitive, manual... ..., Elad Gil, and others. Role Overview As Detection and Response Lead, you'll build and scale the foundations of Serval...SuggestedFull time$10 per hour
...What you'll do There is no MSSP and no tier-1 queue here. Detection & Response engineers own their detections end to end: you write them, you tune them, and your team is paged when they fire. The security team is spread across the globe with a follow-the-sun pager rotation...SuggestedWork at officeLocal areaImmediate startRelocationRelocation packageFlexible hours$180k - $220k
...fast-moving environment where trust and impact matter, you'll feel at home here. About the Role As a Senior Security Engineer, Detection and Response you will develop, scale, and evolve Aircall's threat detection and response capabilities. You will take ownership...Full timeWorldwide- ...Experience: 4+ years Key Responsibilities: - Own the end-to-end security posture across application, cloud... ...Integrate vulnerability scanning, secret detection, security testing, and compliance... ...and trade-offs clearly to both engineering teams and executive stakeholders...Full timeH1bVisa sponsorshipMonday to Friday
$200k - $300k
...Description Job Description Senior/Staff Security Engineer Company: Init Intelligence... ...security reviews Incident readiness and response, with breach notification measured in... ...auditing, with security scanning, secret detection and compliance checks built into CI...Full timeH1bWork at officeVisa sponsorshipMonday to Friday$159.2k - $301.6k
About the roleAdobe’s Security Data Platform team builds and... ...into trusted data for threat detection, investigations,... ...and security analytics.As a Staff Security Data Engineer, you will own full-system... ...infrastructure. Improve incident response, runbooks, recovery testing...Full timeTemporary workLocal areaWorldwide- ...Airwallex's Information Security team partners closely with engineering, IT, and other stakeholders... ...risk reduction, incident response, audits, and compliance-... ...blocker. What you'll do As a Staff Product Security Engineer... ...to identify, protect, detect, respond and recover the...Worldwide
- ...About You and The Role Product security at Zipline protects systems... ...-ops teams. Expect hands-on engineering work, prioritized ownership of... ...metrics (e.g., mean-time-to-detect, mean-time-to-remediate, number... ...Build and harden incident response for product incidents: author...Local area
- ...devices. The Samsara Application Security team protects this vast footprint... ...IoT hardware in the field. As a Staff Application Security Engineer, you’ll drive the overarching technical... ...tooling that scale vulnerability detection and response across cloud, firmware/IoT, and...Full timeRemote work
$50 per hour
...that demand is sourced in an environmentally responsible fashion. Crusoe co-locates mobile data centers... ...biology. About This Role Crusoe Security & Compliance is hiring a Senior/Staff Application Security Engineer to play a critical role in ensuring the security...Temporary work$139k - $204k
...demanding AI infrastructure — and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our most critical... ...build the capabilities to stay left of boom Work alongside security partners who hold a high bar and expect you to raise it Shape...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$210k - $270k
...the Role: We're looking for a Senior Staff Security Engineer to lead Gusto's edge and network... ...team, a small but high-leverage group responsible for cloud security posture, edge and... ..., and clean rollback paths. Build detections and alerting on edge and network telemetry...Full timeWork at officeLocal areaRemote work2 days per week3 days per week$251k - $325k
...software, AI, cryptography, mobile engineering, and global operations. Our... .... About the Team The Security team at Tools for Humanity... ...obfuscation, jailbreak/root detection, debugger detection, and... ...ship solutions. You've been responsible for the security of mobile apps...Full timeCasual workWorldwideFlexible hours$210k - $255k
...Crusoe. About This Role Crusoe is building the world’s favorite AI-first cloud infrastructure. We are seeking a Staff Corporate Security Engineer to act as the principal architect for our corporate security posture. In this role, you will move beyond tactical...Temporary work$250k - $285k
...high-performing team that believes in each other, come build with us at Crusoe. About This Role We’re seeking a Staff Product Security Engineer with deep AI/ML security expertise to strengthen Crusoe’s security posture across applications, infrastructure, and distributed...Temporary work$235k - $275k
...Code Red is partnered with a unicorn FinTech in SF to bring on a Staff Product Security Engineer . This will be a foundational hire within a small, high‑impact security org that supports a global organization in hypergrowth mode. Base Pay Range $235,000.00/yr - $275,00...Full time$215k - $260k
...energy and intelligence. We’re seeking a Senior Infrastructure Security Engineer dedicated to establishing a high-assurance security posture... ...) to enforce secure defaults, immutability, and drift detection Driving Infrastructure Security Access and Posture Management...Full timeTemporary work$189k - $255.5k
...the best team in the creator economy and are looking for a Security Engineer to support our mission.This role is Fully Remote (US only... ...and address security issues (software vulnerabilities, detection and response, etc.)You’re energized by fast iteration: shipping MVPs,...Work at officeLocal areaRemote workWorldwideFlexible hours3 days per week- Parallel seeks a senior security engineer to build and operate the security systems enabling fast shipping with minimal risk. You will cover application security, secure defaults, and AI-assisted tooling, addressing the unique attack surface of agentic systems that consume...
- ...is dedicated to ensuring the secure and efficient management of user... ...Management (IAM) Security Engineer, you will play a crucial role... ...workforce and workloads. You will be responsible for safeguarding our systems,... ...working with Identity Threat Detection & Response (ITDR)...Local area
- ...we build. Each one of us is responsible for contributing to increasing... ...is a team of researchers, engineers, designers, and more, who are... ...the future! As a Senior Security Engineer you will: Serve... ...vulnerability management, SAST, DAST, detection engineering, and incident...Full timeWork at officeRemote workFlexible hours
- ...customers’ trust requires making security a fundamental part of that... .... As a Senior Security Engineer, you’ll work on security and... ...and ship fixes yourself. Responsibilities Own product security:... ...increasingly automated. Detection & incident response: Build logging...Remote work
$149k - $235k
...stores such as MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a... ...areas — secure architecture and threat modeling, detection engineering and incident response, and Kubernetes and platform security — and you'll shape...Work at officeLocal areaFlexible hours- ...Pantheon's collaborative workflows. The Role Pantheon's Security Engineering team is responsible for safeguarding, auditing, and testing the security... ...engineering. This is a hands‑on engineering role: you'll write detection rules, build vulnerability management tooling,...Work at officeLocal areaFlexible hours
$180k - $310k
...move just as fast. At Gamma, we believe security engineering must evolve to meet this moment. That... ...patience, and building incident response capabilities that can handle simultaneous... ...Build security tooling and automation to detect, prevent, and respond to threats at...Full timeWork at officeWork from home- ...Upwind is a next-generation Cloud Security Platform that leverages runtime... ...We are looking for a Security Engineer to join our MDR team as the... ...as the U.S. presence scales. Responsibilities Assist in fine-tuning Upwind's detection and response mechanisms. Support...Night shiftWeekend work
- ...Role This is a founding security hire at an early-stage AI/ML... ...infrastructure, compliance, and incident response to protect a platform used... ...What You'll Do Lead detection and incident response end-to... ..., postmortem, and durable engineering improvements. Own the...Visa sponsorshipRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer, Detection & Response. Be the first to apply!
- software engineer staff San Francisco, CA
- technology administrator San Francisco, CA
- assistant engineer San Francisco, CA
- staff data engineer San Francisco, CA
- assistant electrical engineer San Francisco, CA
- staff engineer San Francisco, CA
- staff security engineer San Francisco, CA
- senior staff systems engineer San Francisco, CA
- staff design engineer San Francisco, CA
- senior staff engineer San Francisco, CA



