Staff Security Engineer- Detection and ResponseEngineeringSan Francisco, CA
Rippling
Staff Security Engineer
We are seeking a Staff Security Engineer to join our Detection and Response team (DART). This role is for a security engineer with deep threat hunting instincts and the engineering skills to build AI-driven solutions that transform how security operations work.
The ideal candidate lives at the intersection of adversary expertise and engineering. You know how to hunt for threats across cloud infrastructure, identity systems, and SaaS platforms - and when you find gaps or inefficiencies in how the team detects and responds, you build technical solutions to close them. You see AI as a tool in your engineering toolkit and you've already started applying it to security problems.
You'll work across detection engineering, incident response, and threat hunting - with the expectation that you're constantly improving the systems and tooling that power all three.
What You'll Do:
- Hunt Threats Across the Enterprise: Apply deep adversary knowledge to proactively find security threats across our cloud, identity, endpoint, and SaaS environments. Develop hypotheses from threat intelligence, telemetry gaps, and adversary TTPs, and execute them across 140+ log sources. Turn findings into durable detections and improved response workflows.
- Build AI-Driven Security Solutions: Design and build LLM-powered systems that solve real security operations problems — automated alert triage, investigation acceleration, detection generation, and more. We already run an AI agent that triages every alert. You'll identify the next high-impact opportunities and build them.
- Engineer Detections at Scale: Write high-fidelity detection logic and build the frameworks, shared libraries, and tooling that raise the quality bar for every detection the team produces. Ensure detection coverage keeps pace with a rapidly evolving threat landscape.
- Automate Response Workflows: Replace manual, repetitive security workflows with code. Build enrichment pipelines, correlation tools, investigation automation, and response orchestration that make the team faster and more consistent.
- Investigate Complex Incidents: Serve as a senior responder for security incidents, driving investigations from initial signal through root cause and remediation. Bring deep expertise in cloud-native attack paths, particularly in AWS and SaaS environments.
- Elevate the Team: Raise engineering standards through better tooling, reusable patterns, and technical mentorship. Influence the team's technical direction by prototyping new approaches and evaluating emerging techniques.
What We're Looking For:
- Deep Security Experience: 8+ years in hands-on security engineering with significant depth across detection engineering, threat hunting, and incident response. Staff-level judgment in ambiguous, high-stakes situations.
- Threat Hunting Expertise: You have deep experience hunting for threats and security issues across complex environments. You think in adversary TTPs, develop hypotheses, and know how to work through large-scale security data to find what others miss.
- Builder Who Ships: You default to building. When you see a repetitive workflow, you automate it. When you see a gap, you write the tool. Strong proficiency in Python and SQL, with experience building production-grade tooling not just scripts.
- AI Applied to Security: Hands-on experience building AI-driven solutions for security problems — whether agents, automated triage pipelines, LLM-assisted investigation, or detection-as-code generation. You understand both the potential and the limitations, and you've shipped something real.
- Cloud-Native Security Depth: Extensive experience investigating threats in AWS and SaaS environments. Deep understanding of cloud attack paths, identity-based threats, and modern adversary techniques mapped to MITRE ATT&CK.
- Data Fluency: Comfort working with large-scale security data in SQL-based environments. You enrich, correlate, and query across disparate sources to build a complete picture - not just react to individual alerts.
- Technical Leadership: Ability to set technical direction and elevate a team without formal authority. Strong communication skills for conveying complex findings to both technical and non-technical audiences.
Additional Information
Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics. Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email View email address on click.appcast.io.
Rippling highly values having employees working in-office to foster a collaborative work environment and company culture. For office-based employees (employees who live within a defined radius of a Rippling office), Rippling considers working in the office, at least three days a week under current policy, to be an essential function of the employee's role.
This role will receive a competitive salary + benefits + equity. The salary for US-based employees will be aligned with one of the ranges below based on location; see which tier applies to your location here. A variety of factors are considered when determining someone's compensation–including a candidate's professional background, experience, and location. Final offer amounts may vary from the amounts listed below.
- A technology company is seeking a Staff Security Engineer to join their Detection and Response team. The ideal candidate will possess extensive experience in security engineering and threat hunting, applying AI to enhance security operations. This role involves hunting...SuggestedWork at office
$182k - $202k
...ingenuity of the world's largest community of security researchers to continuously discover,... ...accountability. Senior Security Engineer, Detection and ResponseRemote Location: Austin TX, Seattle, WA, Washington, DC, San Francisco, CA, Boston, MA Position Summary At...SuggestedApprenticeshipLocal areaRemote workFlexible hoursShift work$225k - $275k
...compounding interest.Affirm values information security as a critical part of the company's... ...and your dependents).USA base pay range (CA, WA, NY, NJ, CT) per year: $225,000 - 275... ...could be performed in Los Angeles or San Francisco, pursuant to the San Francisco Fair Chance...SuggestedWork at officeRemote workFlexible hours- ...hub locations include: Austin, TX; New York City, NY; San Francisco, CA; and the Arlington, VA metro area. Please ensure you can... ...this structure before applying. Position Summary The Staff AI Security Engineer is a strategic individual contributor role responsible...SuggestedWork experience placementSummer holidayLive outWork at officeLocal areaFlexible hours2 days per week
$218.03k - $256.5k
...supported. Coinbase Infrastructure Security (InfraSec) is at the forefront of protecting... .... This role partners closely with engineering teams to design, implement, and automate... ...improvement of security policies, threat detection mechanisms, and incident response...SuggestedLocal area- ...fast, ship often, and rely on pragmatic engineering to make high-risk systems trustworthy. We're hiring a Staff TLM, Security Engineering - a hands-on leader who both... ...engines, logging/monitoring, and incident detection/response. Vulnerability management: Lead...
$200k - $350k
...Senior / Staff Network Security Engineer Fluidstack is looking for a seasoned Senior / Staff Network Security Engineer to spearhead our security... ...network-security monitoring to surface threats early. Detect indicators of compromise, hunt for vulnerabilities, and orchestrate...Local area- ...critical capabilities built in such as security, compliance controls, and... ...information, visit Job Summary As a Staff Security Engineer at EDB, you will be a technical leader... ...organization accelerating the team's ability to detect, respond, and remediate. Build &...Remote work
$218.03k - $256.5k
...(IAM) program, housed within Security, is a cross-functional team that... ...IAM program, partnering with Engineering, IT, Platform, and business... ...architecture, with a deep, Staff-level focus on Identity and Access... ...automate policy generation, detect permission anomalies, or...For contractorsLocal area- ...Security Engineer Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions... ...-level or above on our Security Operations team with strong detection engineering experience. You'll design and develop high-...Permanent employmentTemporary workWork at office
$159.3k - $202.4k
...excited about advancing the state of threat detection at scale to mitigate risk from an ever-... ...diverse range of businesses? Amazon Stores Security's Threat Detection team is looking for a highly motivated Security Engineer to join our team. In this role, you will research...InternshipFlexible hours- HackerOne is looking for a Senior Security Engineer, Detection and Response, to design AI-driven detection capabilities in a modern environment. This role offers a unique blend of remote work flexibility while enhancing the organization’s response capabilities. Required...Remote work
- ...A leading fintech company is seeking a Security Engineer to integrate security into the product development lifecycle. The role includes conducting threat modeling, analyzing source code for vulnerabilities, and collaborating with teams on security requirements. Candidates...Remote work
$127k - $249k
...We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security... ...based out of our New York City, Austin, Seattle or San Francisco offices, or work fully remotely on standard East Coast...Work at officeLocal areaRemote workWorldwideFlexible hours- A leading tech company in Austin, TX is seeking a Staff Product Security Engineer to lead the transformation of security practices into scalable solutions. You will work at the intersection of Engineering, Product, and Compliance, empowering teams with innovative tooling...
- ...TX — Hybrid (2-3 days/week in-office) Team: Information Security Please note: We are unable to offer Visa transfers or Visa... ...intrinsic to every product experience. We’re looking for a Staff Product Security Engineer to lead the transformation of complex security...Work at officeShift work2 days per week3 days per week
- ...Security Engineer Intern (Summer 2026) In-Office At Cloudflare, we are on a mission to help build a better Internet. Today the company... ...to apply for a job, please contact us via e-mail at ****@*****.*** or via mail at 101 Townsend St. San Francisco, CA 94107....Summer workInternshipSummer internshipWork at officeLocal areaRemote workRelocation3 days per week
$255k - $285k
...Staff Application Security Engineer At Bumble, we're redefining how security scales across global engineering organizations. We're looking for a Staff Application Security Engineer to design and implement developer-focused security solutions that make secure development...Live inWork at officeLocal area- Sr. Network Security Engineer (Hybrid) page is loaded## Sr. Network Security Engineer (Hybrid)locations: USA - Sunnyvale, CA: USA - Austin, TX: USA - Remote, NYtime type: Full timeposted... ...* Operate and improve DDoS detection, mitigation, and response capabilities...Remote jobWork experience placementWork at officeLocal area2 days per week3 days per week
$136k - $184k
...Description At Amazon Healthcare Security, we are on a mission to make healthcare secure... .... We are looking for a Security Engineer to join our team. As a Security Engineer... ...automation and select tooling to improve detection of application vulnerabilities and assist...Temporary workInternshipFlexible hours$159.3k - $202.4k
...Amazon Healthcare Security's (HealthSec) AI team is hiring a Security Engineer II to secure GenAI applications and enable secure AI adoption across Amazon Health... ...security, network and infrastructure security, detections and monitoring, and incident response. Working...Flexible hours- ...Sr Security Engineer -Endpoint Security Location: Austin, TX (Onsite/Remote) Duration: Contract/Fulltime Job Description: Qualification... ...Write rules, policies and exclusions for Antivirus or Endpoint Security Products (GPO policies, HIPS, Detection Rule Set etc....Full timeContract workRemote work
$159.3k - $202.4k
...passionate about delivering innovative security solutions and protecting millions of customers... ...a talented and results-driven Security Engineer to help shape how Amazon protects... ...• Design and implement preventive and detective security controls that provide continuous...Flexible hours- ...be limited to part-time during the academic year. Tesla Security Engineering is responsible for the digital and physical security systems... ...Assist with advanced security incident response and detection activities when required Proficient understanding of IT...Full timeTemporary workPart timeInternshipRelocationFlexible hours
$260k - $310k
...compounding interest.Join the team as a Senior Staff Machine Learning Engineer and become a pivotal part of our... ...R; Equity Grade: 15.Base pay range (CA, WA, NY, NJ, CT): $260,000–$310,000... ...U.S. positions in Los Angeles or San Francisco.By clicking "Submit Application," you...Work at officeRemote work$216k - $270k
...TX; Chicago, IL; New York City, NY; San Francisco, CA; and the Washington, DC metro area. If... ...looking for a driven full stack software engineer who thrives at the intersection of data... ...unstructured data models and signal detection systems Strong desire to delight enterprise...Work experience placementSummer holidayLive outWork at officeLocal areaFlexible hours2 days per week$123k - $174k
Google Inc. is looking for a Security Engineer II in Austin, TX, to enhance our security framework against cyber threats. You'll engage in analyzing threat behaviors and developing innovative detection mechanisms. The position requires a Bachelor’s degree and relevant...$127k - $249k
...for an experienced Senior or Staff Engineer for our SRE, InfraSec team, to guide the security of our cloud-based infrastructure... ...City, Austin, Seattle or San Francisco offices on a hybrid basis, or... ...security monitoring and anomaly detection. Security Tooling: Evaluate,...Local areaRemote work$180k - $200k
...Senior Information Security Engineer At Qualia, we've built the leading B2B real estate technology... ...employees, and assets, and we own the detection and response when something deviates... ...we have three office locations in San Francisco, California, Concord, New Hampshire,...Work at officeRemote workFlexible hours- ...information, please .Senior Staff Machine Learning Engineer page is loaded## Senior... ...MD: Austin, TX: Palo Alto, CA: New York City, NY: Seattle... ...performance, cost efficiency, security, governance, and model risk... ...: claims automation, fraud detection, risk modeling, subrogation...Hourly payWork experience placement
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer- Detection and ResponseEngineeringSan Francisco, CA. Be the first to apply!
- staff security engineer Austin, TX
- assistant engineer Austin, TX
- engineering aide Austin, TX
- assistant chief engineer Austin, TX
- staff engineer Austin, TX
- technology administrator Austin, TX
- assistant electrical engineer Austin, TX
- senior staff systems engineer Austin, TX
- assistant mechanical engineer Austin, TX
- software engineer staff Austin, TX

