ForgeApply · Job listing
Security Engineer, Detection & Response
Assorthealth
See all 31 open roles at Assorthealth →
Tailor your resume for this Assorthealth job in about a minute.
ForgeApply rewrites your resume for this exact posting, then autofills the application on Assorthealth's site with it. You review everything before it's sent. Free trial, no card required.
About this role
Building Healthcare That Remembers
Every time you call a doctor's office, the system forgets you the moment you hang up. You wait on hold, explain everything from scratch, get bounced between lines, and hope someone follows up. Everyone has felt this. No one should have to.
At Assort Health, we're building one continuous conversation for every patient. An AI agent that knows who you are, remembers how you like to be reached, and carries that context from your first symptom to your full recovery. What began as the first voice AI agent to schedule a specialty appointment has become the largest proprietary specialty dataset in healthcare: 240 million patient interactions, 62,000 care protocols, 1.6 million decision pathways.
We went from 15 people in 2025 and will cross 250 by the end of 2026. Revenue is up 20x in 15 months and we've raised $222 million, including a recent $120 million Series C https://www.assorthealth.com/blog/assort-health-raises-120-million-series-c-to-scale-largest-deployment-of-ai-agents-for-the-patient-journey at a $1.2 billion valuation. We've also been named to the Forbes Cloud 100 and the 2026 Enterprise Tech 30 as the only healthcare AI company on the list!
Healthcare spends $1.1 trillion a year on administration instead of care. If you want to help change that, apply below.
ABOUT THE ROLE
We are looking for a Security Engineer to help build and strengthen security foundations from the ground up in a fast-moving startup environment, with a primary focus on detection and response. This is a strong opportunity for someone early in their career who brings a strong interest in security monitoring, incident response, and detection engineering and is excited to work across these areas as the company scales. The role is designed for someone who wants meaningful ownership, broad exposure within detection and response, and the chance to help shape how security operates as the company matures. You will partner closely with teams across the organization, help close foundational gaps, and contribute to building a more robust, continuous detection and response program over time. This role is based in San Francisco and follows a 4-day in-office working model. Flexible to hire remotely for the right candidate in the US.
WHAT YOU'LL BE DOING
- Help build and operate the company's detection and response capabilities, including continuous monitoring, triage, investigation, containment, and remediation of security events across a diverse set of networks and infrastructure.
- Support operational rigor and incident readiness by helping build and maintain incident playbooks, on-call and escalation paths, tabletop exercises, and continuous improvement of response quality and speed.
- Improve detection quality and coverage by partnering with engineering teams to help ensure critical telemetry is available, reliable, and actionable across cloud, corporate, and production environments.
- Partner with Engineering, Product, and Infrastructure to help embed detection and response into the company's systems by design rather than as an afterthought.
- Collaborate with internal stakeholders across the organization to implement detection and response projects, improve coverage, and drive progress on high-priority initiatives.
- Assist with security efforts related to SOC 2 and help translate immediate audit-driven needs into longer-term, sustainable detection and response practices.
- Evaluate and help implement detection and response tooling, with the flexibility to explore a range of approaches, including modern platforms, open-source options, and AI-enabled tools where appropriate.
- Take ownership of hands-on technical work, scripting, and automation tasks that help the team move quickly and reduce manual effort.
WHAT WE'RE LOOKING FOR
- A security profile with strong exposure to detection and response, rather than a narrow specialization elsewhere.
- Strong interest in security monitoring, incident response, and modern observability stacks, with the ability to understand technical environments and identify meaningful security improvements.
- Comfort working in a fast-paced startup environment where priorities can shift and the workload can be intense.
- A high degree of ownership, autonomy, and initiative, with the ability to make progress in environments that are still being built.
- Willingness to learn quickly, stay open-minded, and adapt to new projects or unfamiliar problem spaces as business needs evolve.
- Ability to work cross-functionally and build productive relationships with teams across the company.
- Good judgment when balancing immediate detection and response needs with longer-term program development.
- Strong written and verbal communication skills, with the ability to stay calm under pressure and help support security incidents involving stakeholders across a diverse range of teams and expertise.
- A practical, hands-on approach to security work, with interest in solving real operational problems rather than working only at a policy level.
WHAT YOU'LL NEED
- Seeking 2 to 4 years of relevant experience.
- Experience in detection engineering, incident response, and/or security operations.
- Background in modern observability stacks (e.g., SIEM, EDR, cloud telemetry, logging) and detection primitives is important.
- Growing understanding of modern adversary tradecraft (TTPs), with interest in translating it into practical detection strategies and response actions.
- Ability to perform technical security work such as reviewing telemetry, assessing infrastructure for detection gaps, and supporting security automation through scripting.
- Familiarity with environments that rely on modern cloud and SaaS tooling.
- Experience in a startup or similarly fast-growth environment is highly valuable.
BENEFITS & PERKS FOR ASSORTIES
- 💸 Competitive Compensation – Including salary and employee stock options so y
Salary insight
The midpoint of this range ($173k) is about 14% below the median disclosed salary for San Francisco roles listed on ForgeApply ($200k across 8,783 jobs).
See full Security Engineer salary data for San Francisco →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Assorthealth role before you apply.
Tailor my resume for this jobSimilar jobs
- Security Engineer, Detection & Response — Anthropic · San Francisco, CA | New York City, NY | Seattle, WA; Washington, DC
- Security Engineer, Detection & Response — Liftoff · Remote
- Security Engineer, Detection & Response — Scaleai · New York, NY; San Francisco, CA; Seattle, WA; Washington, DC
- Security Engineer, Detection and Response — Openai · San Francisco
- Security Engineer, Detection and Response — Serval · San Francisco
- Security Engineer, Detection Response — Vercel · Remote
- Security Engineer - Detection & Response — Langchain · San Francisco, CA
- Security engineer, detection and response — Writer · San Francisco, CA
More like this: Security & Cybersecurity Jobs · Security & Cybersecurity Jobs in San Francisco · Browse all jobs
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)