ForgeApply
Try it free

ForgeApply · Job listing

Senior Detection and Response Engineer

Anyscale

San Francisco, US$200k – $240konsite

See all 17 open roles at Anyscale

Tailor your resume for this Anyscale job in about a minute.

ForgeApply rewrites your resume for this exact posting, then autofills the application on Anyscale's site with it. You review everything before it's sent. Free trial, no card required.

About this role

At Anyscale https://www.anyscale.com/, we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray https://docs.ray.io/en/latest/, a popular open-source project that's creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI https://thenewstack.io/how-ray-a-distributed-ai-framework-helps-power-chatgpt/, Uber https://www.uber.com/blog/horovod-ray/, Spotify https://engineering.atspotify.com/2023/02/unleashing-ml-innovation-at-spotify-with-ray/, Instacart https://www.youtube.com/watch?v=3t26ucTy0Rs&list=PLzTswPQNepXmLUiL4F_1VHrPcCz1OeILw&index=23&pp=iAQB, Cruise https://www.youtube.com/watch?v=gj0BqvfX_wI&list=PLzTswPQNepXmLUiL4F_1VHrPcCz1OeILw&index=46&pp=iAQB, and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world.

With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert.

Proud to be backed by Andreessen Horowitz, NEA, and Addition https://www.wsj.com/articles/ai-startup-anyscale-adds-99-million-to-andressen-horowitz-led-funding-round-11661254200 with $250+ million raised to date.

ABOUT THE ROLE

Anyscale's need to detect and respond to security events across its production and corporate environments is growing as the company scales. We're looking for a Senior Detection and Response Engineer to own detection engineering and to lead incident response when it counts, coordinating the response and driving it to resolution.

This is a high-ownership role with real room to shape how detection and response works at Anyscale. You will own the detection pipeline, the response runbooks, and incident response, reporting to the Head of Security and partnering with engineering. This role is based in India.

In your first year, success looks like strong detection coverage across our cloud, endpoint, and runtime telemetry, a working correlation and alerting pipeline, and incident response runbooks that have been exercised in practice.

WHAT YOU'LL DO

- Own and build detection coverage across cloud, endpoint, and runtime telemetry.

- Own a centralized correlation and alerting capability that turns telemetry into actionable detections.

- Own incident response: runbooks, escalation paths, and coordination during an incident, across corporate and production environments.

- Drive detection of anomalous activity across the environments we run, including our Kubernetes footprint.

- Tune detections to keep signal high and noise low, and measure detection and response performance such as mean time to detect and respond.

- Run incident retrospectives and feed lessons back into detections and controls.

- Partner with infrastructure security and IT to close gaps surfaced during response.

WHAT YOU'LL BRING

- 6+ years in security, with a strong focus on detection engineering and incident response, ideally at a high-growth startup.

- Hands-on experience building detections and correlation across cloud (AWS, Azure), endpoint (EDR), and ideally container and runtime telemetry.

- Experience owning incident response end to end, including leading during live incidents.

- Comfort building and scaling a detection and response capability, not only operating an existing one.

- Sound judgment under pressure and clear communication during incidents.

- Fluency working with engineers and IT to close the gaps that response surfaces.

NICE TO HAVE

- Experience with SIEM or detection platforms and detection-as-code approaches.

- Familiarity with runtime security tooling such as Upwind or similar.

- Threat hunting or purple-team experience.

- Background in AI or ML platforms or distributed systems.

Salary insight

The midpoint of this range ($220k) is about 10% above the median disclosed salary for San Francisco roles listed on ForgeApply ($200k across 8,791 jobs).

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this Anyscale role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)