<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>e6dcbc35-379</externalid>
      <Title>Insider Risk Investigator - Technical &amp; Human Intelligence</Title>
      <Description><![CDATA[<p>We are seeking an exceptional Insider Risk Investigator with expertise in both human and technical investigations to support and protect Anthropic&#39;s mission.</p>
<p>The Insider Risk Team works cross-functionally to deter, identify, investigate and mitigate risks to Anthropic&#39;s most critical assets,our people, our data, and our infrastructure.</p>
<p>Responsibilities:</p>
<ul>
<li>Triage custom technical detection alerts</li>
<li>Independently conduct end-to-end insider risk investigations while working closely with IT, Detection and Response, Legal, HR and other cross-functional teams</li>
<li>Monitor and triage external threats targeting employees</li>
<li>Conduct sensitive interviews of employees or other involved parties</li>
<li>Perform technical analysis of logs from SIEM, DLP, UEBA systems</li>
<li>Leverage AI tools (Claude, Claude Code) to accelerate investigation workflows and data analysis</li>
<li>Build and maintain investigation documentation</li>
<li>Assist in iterating and improving on processes, procedures and systems to detect, mitigate and investigate insider risks</li>
<li>Work cross-functionally to develop, refine and operationalize insider risk indicators, scenarios and mitigation strategies</li>
<li>Provide rapid-turnaround security assessments to support business operations</li>
<li>Support education and awareness programs to promote a robust security culture</li>
<li>Serve as the subject matter expert for insider risk and provide training to team members as needed</li>
</ul>
<p>You may be a good fit if you have:</p>
<ul>
<li>Bachelor&#39;s degree and/or higher education in a related field</li>
<li>5-8 years of experience in insider risk, corporate investigations or a related domain</li>
<li>3-5 years experience in conducting investigative interviews</li>
<li>Experience conducting OSINT for threat assessment, or counterintelligence</li>
<li>Experience leveraging DLP, UEBA, SIEM, SOAR and other insider risk security tooling for detections and investigations</li>
<li>Broad understanding of internal and external investigations, cybersecurity, interview techniques, risk assessment and managing strong cross-functional relationships</li>
<li>Ability to communicate complex security findings clearly and concisely to non-technical stakeholders (written and verbal)</li>
<li>Track record of rapid response to time-sensitive security requests</li>
<li>Comfort operating across organizational boundaries (Security, People, Legal, IT)</li>
<li>Exceptional communication, collaboration skills and the ability to lead projects with little guidance</li>
<li>Demonstrated ability to operate independently with minimal oversight while managing sensitive cases</li>
</ul>
<p>Strong candidates may also have:</p>
<ul>
<li>Experience working in the technology industry or at/with AI/ML companies</li>
<li>Experience with counterintelligence investigations and nation-state threat actor TTPs</li>
<li>Background in open-source intelligence collection and analysis</li>
<li>Track record of AI/LLM adoption for productivity gains in investigative work</li>
<li>Experience contributing to a high growth startup environment</li>
<li>Specialized knowledge of risks unique to the AI sector</li>
<li>Experience with data exfiltration investigations across multiple vectors (email, cloud, removable media)</li>
<li>Experience working in government, defense, or high-security environments</li>
</ul>
<p>What makes you successful here:</p>
<ul>
<li>Entrepreneurial mindset: You see gaps and fill them without being asked</li>
<li>Technical + human balance: Equal comfort analyzing log data and conducting sensitive interviews</li>
<li>AI-native approach: You leverage LLMs to work smarter, not just harder</li>
<li>Mission alignment: You understand AI safety stakes and insider risk&#39;s role in protecting that mission</li>
<li>Judgment under uncertainty: You make sound decisions with incomplete information</li>
<li>Clear communicator: You distill complex findings into actionable insights for diverse audiences</li>
<li>Cross-functional navigator: You build relationships and collaborate effectively across teams</li>
</ul>
<p>Annual compensation range for this role is $245,000-$305,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$245,000-$305,000 USD</Salaryrange>
      <Skills>Technical investigation, Human investigation, Insider risk, Cybersecurity, Interview techniques, Risk assessment, Communication, Collaboration, Leadership, Data analysis, Log analysis, SIEM, DLP, UEBA, SOAR, AI tools, LLMs, Counterintelligence, Open-source intelligence, AI/ML, High growth startup, Data exfiltration, Government, Defense, High-security environments</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a public benefit corporation that creates reliable, interpretable, and steerable AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5182430008</Applyto>
      <Location>San Francisco, CA | New York City, NY | Seattle, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>9057e192-450</externalid>
      <Title>Security Engineer Lead, Corporate Security</Title>
      <Description><![CDATA[<p>We&#39;re looking for a Security Engineering Lead to own and drive Anthropic&#39;s Corporate Security program. This is a player-coach Tech Lead Manager (TLM) role: you&#39;ll be both the most senior technical individual contributor on corporate security and the people leader for a lean, high-impact team of Security Engineers.</p>
<p>You will set the technical direction, write code and ship tooling alongside your team, and build the culture and processes that allow the team to scale.</p>
<p>Corporate Security at Anthropic encompasses everything that protects our people, endpoints, networks, SaaS ecosystem, and corporate data,the full surface area outside of production infrastructure.</p>
<p>The scope is broad and the team is deliberately small, which means you&#39;ll need deep technical skills across multiple domains, strong judgment about where to invest, and a bias toward automation and engineering-driven solutions over manual process.</p>
<p>You&#39;ll report into Security leadership and partner closely with IT, Infrastructure Security, Detection &amp; Response, and GRC teams.</p>
<p>This role is high-visibility and high-autonomy: you&#39;ll be expected to define the roadmap, make architectural decisions, and represent Corporate Security across the company.</p>
<p><strong>Responsibilities:</strong></p>
<p><strong>Technical Leadership &amp; Hands-on Engineering</strong></p>
<ul>
<li>Own the security architecture, tooling, and controls for Anthropic&#39;s corporate environment end-to-end, including endpoint fleets (macOS, Windows, ChromeOS), campus and office networks, SaaS applications, mobile devices</li>
</ul>
<ul>
<li>Design, build, and ship security automation, integrations, and internal tooling,including leveraging Claude and LLMs to accelerate security workflows</li>
</ul>
<ul>
<li>Define and enforce security baselines, hardening standards, and configuration policies across all corporate platforms</li>
</ul>
<ul>
<li>Define what it means to operate safely in an environment where AI agents act more like humans than actual humans</li>
</ul>
<ul>
<li>Evaluate, select, deploy, and operate corporate security tools (EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, etc.)</li>
</ul>
<ul>
<li>Drive vulnerability management for corporate assets, including patch orchestration, risk-based prioritization, and exception management</li>
</ul>
<ul>
<li>Lead security reviews of new SaaS adoptions, corporate infrastructure changes, and IT projects</li>
</ul>
<p><strong>People Leadership &amp; Team Building</strong></p>
<ul>
<li>Manage, mentor, and grow a purposefully lean team of Security Engineers; set clear expectations, run effective 1:1s, and create an environment where engineers do the best work of their careers</li>
</ul>
<ul>
<li>Hire and build the team as scope expands,own the hiring bar and pipeline for Corporate Security Engineering roles</li>
</ul>
<ul>
<li>Balance your own IC contributions with the team’s needs; know when to go deep on a problem yourself and when to delegate and coach</li>
</ul>
<ul>
<li>Foster a culture of operational excellence, blameless incident review, and continuous improvement</li>
</ul>
<p><strong>Strategy &amp; Cross-Functional Partnership</strong></p>
<ul>
<li>Define and own the Corporate Security roadmap, aligning investments to Anthropic’s risk profile and growth trajectory</li>
</ul>
<ul>
<li>Partner with IT Operations to ensure security is embedded in endpoint provisioning, network design, and SaaS lifecycle management</li>
</ul>
<ul>
<li>Collaborate with Detection &amp; Response on telemetry coverage, detection engineering, and incident handling for corporate-sourced events</li>
</ul>
<ul>
<li>Partner with Infrastructure and Security Engineering teams to ensure security standards are consistent across all of Anthropic</li>
</ul>
<ul>
<li>Communicate security posture, risks, and investment needs to Security leadership and cross-functional stakeholders clearly and persuasively</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>8+ years of Security Engineering experience in a corporate/enterprise security domain (endpoint security, network security, SaaS security, identity, or a combination)</li>
</ul>
<ul>
<li>2+ years of experience managing or tech-leading a team of engineers, with a demonstrated track record of developing talent and shipping results through others</li>
</ul>
<ul>
<li>Are a strong engineer who still writes code regularly,you can prototype a tool, write a detection, build an integration, or debug a complex configuration issue</li>
</ul>
<ul>
<li>Have deep experience with macOS fleet security (this is our primary platform) and solid working knowledge of Windows and ChromeOS security</li>
</ul>
<ul>
<li>Have hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale</li>
</ul>
<ul>
<li>Understand modern SaaS security challenges: shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, and SSPM/CASB tooling</li>
</ul>
<ul>
<li>Can work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions in a fast-paced environment</li>
</ul>
<ul>
<li>Have excellent communication skills and can translate complex security topics into clear recommendations for technical and non-technical audiences</li>
</ul>
<p><strong>Strong Candidates May Have</strong></p>
<ul>
<li>Securing corporate environments at high-growth AI, cloud, or developer-tools companies</li>
</ul>
<ul>
<li>Maturing a Corporate Security function from early stage, including defining scope, selecting the initial toolset, and hiring the founding team</li>
</ul>
<ul>
<li>Advanced macOS security (system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management)</li>
</ul>
<ul>
<li>Network security architecture for hybrid/multi-office environments, including SD-WAN, ZTNA, DNS security, and network segmentation</li>
</ul>
<ul>
<li>Browser security and isolation technologies (e.g., Island, Talon/Palo Alto, Chrome Enterprise)</li>
</ul>
<ul>
<li>Proficiency in Python, Go, or similar languages for building security tooling and automation</li>
</ul>
<ul>
<li>Experience leveraging LLMs/AI to augment security operations, build investigative tooling, or automate policy enforcement</li>
</ul>
<ul>
<li>Familiarity with IaC (Terraform), CI/CD pipelines, and DevSecOps practices as they apply to corporate infrastructure management</li>
</ul>
<ul>
<li>Mobile security for iOS/Android in a BYOD and corporate-managed device environment</li>
</ul>
<ul>
<li>Data Loss Prevention (DLP) program design and implementation across endpoints, email, SaaS, and cloud storage</li>
</ul>
<p><strong>Logistics</strong></p>
<ul>
<li>Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience</li>
</ul>
<ul>
<li>Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience</li>
</ul>
<ul>
<li>Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position</li>
</ul>
<ul>
<li>Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.</li>
</ul>
<ul>
<li>Visa sponsorship: We do sponsor visas! However, we aren&#39;t able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$320,000-$405,000 USD</Salaryrange>
      <Skills>macOS fleet security, Windows and ChromeOS security, EDR/XDR, MDM, ZTNA/zero trust, identity security solutions, SaaS security challenges, shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, SSPM/CASB tooling, Python, Go, LLMs/AI, IaC (Terraform), CI/CD pipelines, DevSecOps practices, mobile security, Data Loss Prevention (DLP)</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.co.png</Employerlogo>
      <Employerdescription>Anthropic creates reliable, interpretable, and steerable AI systems. It is a quickly growing organisation.</Employerdescription>
      <Employerwebsite>https://www.anthropic.co/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5135098008</Applyto>
      <Location>San Francisco, CA | New York City, NY</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>bdf949b3-c66</externalid>
      <Title>Databricks Enterprise Lead Security Architect -   Principal IT Software Engineer</Title>
      <Description><![CDATA[<p>We are seeking a highly skilled Lead Security Architect to join our team within Databricks IT. As a Lead Security Architect, you will be responsible for designing and implementing a secure and scalable architecture to protect our corporate assets. You will focus on key areas of IT security, including Identity and Access Management, Zero Trust architecture, and endpoint security, while also working to secure critical business applications and sensitive data.</p>
<p>Your expertise will be crucial in building proactive security strategies that align with our business goals and protect the company from an ever-evolving threat landscape. This position demands deep expertise in security principles and a comprehensive understanding of the entire infrastructure stack and IAM systems to design robust, future-ready security solutions.</p>
<p>You will be instrumental in safeguarding our systems&#39; resilience and integrity against ever-evolving cyber threats. You will play a critical role in shaping our security strategy for modern platforms across AWS, Azure, GCP, network infrastructure, storage, and SaaS solutions, help establish a strong least privilege (PoLP) model, providing specialized IAM expertise, and securely supporting SaaS with sensitive information (NHI).</p>
<p>You will also be a key contributor in building our internal strategy for secure AI development. Additionally, you will support the secure integration of SaaS platforms such as Google Workspace, collaboration tools, and GTM systems, maintaining alignment with enterprise security standards.</p>
<p>Close collaboration with cross-functional teams is essential to embed security throughout the technology stack.</p>
<p>The impact you will have:</p>
<ul>
<li>Design and implement secure, scalable reference architectures for the Databricks IT across Cloud Infra (Compute, DBs, Network, Storage), SaaS, Custom Built Applications, Data &amp; AI systems.</li>
<li>Establish and enforce security controls for: Core Security Areas: - Databricks Workspace Management: Workspace isolation, Unity Catalog for data governance.</li>
<li>Secure Networking: VPC configs, PrivateLink, IP Allow Lists.</li>
<li>Identity and Access Management (IAM): SSO, SCIM user provisioning, RBAC via Un, Strong MFA best practices for enterprise identities and customers.</li>
<li>Data Encryption: At rest and in transit, customer-managed keys for critical assets.</li>
<li>Data Exfiltration Prevention: Admin console settings, VPC endpoint controls.</li>
<li>Cluster Security: User isolation, compliance with enhanced security monitoring/Compliance Security Profiles (HIPAA, PCI-DSS, FedRAMP).</li>
<li>Offensive Security: Test and challenge the effectiveness of the organization’s security defenses by mimicking the tactics, techniques, and procedures used by actual attackers.</li>
<li>Specialized Security Functions: - Non-human Identity Management: Design and implement secure authentication and authorization for automated systems (service accounts, API keys, machine identities), focusing on automation and integration with existing identity management systems.</li>
<li>IAM Best Practices: Develop and document comprehensive Identity and Access Management policies, including user provisioning, de-provisioning, access reviews, privileged access management, and multi-factor authentication, ensuring security and compliance.</li>
<li>Data Loss Prevention (DLP): Implement DLP solutions to identify, monitor, and protect sensitive data across endpoints, networks, and cloud environments, preventing unauthorized access, use, or transmission.</li>
<li>SaaS Proxy Design and Implementation: Design and implement cloud-based proxies for SaaS applications (SASE solutions) to provide secure access, enforce security policies, monitor user activity, and protect against threats.</li>
<li>Cloud Infrastructure Best Practices: Establish and document best practices for VPC configurations, cloud networking, and infrastructure as code using Terraform, ensuring secure network segmentation, routing, firewalls, and VPNs for consistent, automated, and secure deployments.</li>
<li>Least Privilege Access for Data Security: Design and implement data security controls based on the principle of least privilege, ensuring users and systems have only the minimum necessary access through fine-grained controls, data classification, and regular access reviews.</li>
<li>Guide internal IT on Databricks’ security and compliance certifications (SOC 2, ISO 27001/27017/27018, HIPAA, PCI-DSS, FedRAMP), and support security reviews/audits.</li>
<li>Support incident response, vulnerability management, threat modeling, and red teaming using audit logs, cluster policies, and enhanced monitoring.</li>
<li>Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs to enhance security posture.</li>
<li>Advise executive leadership on security architecture, risks, and mitigation.</li>
<li>Mentor security engineers and developers on secure design and best practices.</li>
</ul>
<p>What we look for:</p>
<ul>
<li>Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field</li>
<li>Master’s degree in Computer Science specifically in Information Security or a related discipline is strongly preferred</li>
<li>Minimum 12 years in cybersecurity, with 5+ in security architecture or senior technical roles.</li>
<li>Experience in FedRAMP High systems/ GovCloud preferred.</li>
<li>Must have direct experience designing and securing enterprise platforms in complex multi-cloud environments, deep knowledge of enterprise architecture and security features (control plane/data plane separation, network infra, workspace hardening, network segmentation/ isolation), and hands-on experience automating security controls with Terraform and scripting.</li>
<li>Proven expertise securing data analytics pipelines, SaaS integrations, and workload isolation in enterprise ecosystems.</li>
<li>Experience with Enterprise Security Analysis Tools and monitoring/security policy optimization.</li>
<li>Deep experience in threat modeling, design, PoC, and implementing large-scale enterprise solutions.</li>
<li>Extensive hands-on experience in AWS cloud security, network security, with knowledge of Zero Trust, Data Protection, and Appsec.</li>
<li>Strong understanding of enterprise IAM systems (Okta, SailPoint, VDI, Entra ID) and Data Protection.</li>
<li>Expert experience with SIEM platforms, XDR, and cloud-native threat detection tools.</li>
<li>Expert in web application security, OWASP, API security, and secure design and testing.</li>
<li>Hands-on experience with security automation is required, with proficiency in AI-assisted development, Python, Cursor, Lambda, Terraform, or comparable scripting/IaC tools for operational efficiency.</li>
<li>Industry certifications like CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, or AWS Certified Advanced Networking – Specialty (or equivalent) are preferred.</li>
<li>Ability to influence stakeholders and drive alignment.</li>
<li>Strategic thinker with a passion for security innovation, continuous improvement, and building scalable defenses.</li>
</ul>
<p>Pay Range Transparency</p>
<p>Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Security Architecture, Identity and Access Management, Zero Trust, Endpoint Security, Data Encryption, Data Exfiltration Prevention, Cluster Security, Offensive Security, Non-human Identity Management, IAM Best Practices, Data Loss Prevention, SaaS Proxy Design and Implementation, Cloud Infrastructure Best Practices, Least Privilege Access for Data Security, Guide internal IT on Databricks’ security and compliance certifications, Support incident response, vulnerability management, threat modeling, and red teaming, Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs, Advise executive leadership on security architecture, risks, and mitigation, Mentor security engineers and developers on secure design and best practices, Terraform, Python, Cursor, Lambda, AWS cloud security, Network security, Data Protection, Appsec, SIEM platforms, XDR, cloud-native threat detection tools, Web application security, OWASP, API security, Secure design and testing, AI-assisted development, Security automation, Scripting/IaC tools, CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, AWS Certified Advanced Networking – Specialty</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Databricks</Employername>
      <Employerlogo>https://logos.yubhub.co/databricks.com.png</Employerlogo>
      <Employerdescription>Databricks is a technology company that provides a cloud-based platform for data analytics and artificial intelligence.</Employerdescription>
      <Employerwebsite>https://databricks.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/databricks/jobs/8207910002</Applyto>
      <Location>Mountain View, California; San Francisco, California</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>c60fc7e5-9f1</externalid>
      <Title>Insider Risk Investigator - Technical &amp; Human Intelligence</Title>
      <Description><![CDATA[<p>We are seeking an exceptional Insider Risk Investigator with expertise in both human and technical investigations to support and protect Anthropic&#39;s mission.</p>
<p>The Insider Risk Team works cross-functionally to deter, identify, investigate and mitigate risks to Anthropic&#39;s most critical assets,our people, our data, and our infrastructure.</p>
<p>Responsibilities:</p>
<ul>
<li>Triage custom technical detection alerts</li>
<li>Independently conduct end-to-end insider risk investigations while working closely with IT, Detection and Response, Legal, HR and other cross-functional teams</li>
<li>Monitor and triage external threats targeting employees</li>
<li>Conduct sensitive interviews of employees or other involved parties</li>
<li>Perform technical analysis of logs from SIEM, DLP, UEBA systems</li>
<li>Leverage AI tools (Claude, Claude Code) to accelerate investigation workflows and data analysis</li>
<li>Build and maintain investigation documentation</li>
<li>Assist in iterating and improving on processes, procedures and systems to detect, mitigate and investigate insider risks</li>
<li>Work cross-functionally to develop, refine and operationalize insider risk indicators, scenarios and mitigation strategies</li>
<li>Provide rapid-turnaround security assessments to support business operations</li>
<li>Support education and awareness programs to promote a robust security culture</li>
<li>Serve as the subject matter expert for insider risk and provide training to team members as needed</li>
</ul>
<p>You may be a good fit if you have:</p>
<ul>
<li>Bachelor&#39;s degree and/or higher education in a related field</li>
<li>5-8 years of experience in insider risk, corporate investigations or a related domain</li>
<li>3-5 years experience in conducting investigative interviews</li>
<li>Experience conducting OSINT for threat assessment, or counterintelligence</li>
<li>Experience leveraging DLP, UEBA, SIEM, SOAR and other insider risk security tooling for detections and investigations</li>
<li>Broad understanding of internal and external investigations, cybersecurity, interview techniques, risk assessment and managing strong cross-functional relationships</li>
<li>Ability to communicate complex security findings clearly and concisely to non-technical stakeholders (written and verbal)</li>
<li>Track record of rapid response to time-sensitive security requests</li>
<li>Comfort operating across organizational boundaries (Security, People, Legal, IT)</li>
<li>Exceptional communication, collaboration skills and the ability to lead projects with little guidance</li>
<li>Demonstrated ability to operate independently with minimal oversight while managing sensitive cases</li>
</ul>
<p>Strong candidates may also have:</p>
<ul>
<li>Experience working in the technology industry or at/with AI/ML companies</li>
<li>Experience with counterintelligence investigations and nation-state threat actor TTPs</li>
<li>Background in open-source intelligence collection and analysis</li>
<li>Track record of AI/LLM adoption for productivity gains in investigative work</li>
<li>Experience contributing to a high growth startup environment</li>
<li>Specialized knowledge of risks unique to the AI sector</li>
<li>Experience with data exfiltration investigations across multiple vectors (email, cloud, removable media)</li>
<li>Experience working in government, defense, or high-security environments</li>
</ul>
<p>What makes you successful here:</p>
<ul>
<li>Entrepreneurial mindset: You see gaps and fill them without being asked</li>
<li>Technical + human balance: Equal comfort analyzing log data and conducting sensitive interviews</li>
<li>AI-native approach: You leverage LLMs to work smarter, not just harder</li>
<li>Mission alignment: You understand AI safety stakes and insider risk&#39;s role in protecting that mission</li>
<li>Judgment under uncertainty: You make sound decisions with incomplete information</li>
<li>Clear communicator: You distill complex findings into actionable insights for diverse audiences</li>
<li>Cross-functional navigator: You build relationships and collaborate effectively across teams</li>
</ul>
<p>Annual compensation range for this role is $245,000-$305,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$245,000-$305,000 USD</Salaryrange>
      <Skills>insider risk, corporate investigations, OSINT, DLP, UEBA, SIEM, SOAR, cybersecurity, interview techniques, risk assessment, AI/ML, counterintelligence, open-source intelligence collection and analysis, AI/LLM adoption, high growth startup environment, data exfiltration investigations</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a public benefit corporation that creates reliable, interpretable, and steerable AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5182430008</Applyto>
      <Location>San Francisco, CA | New York City, NY | Seattle, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>db734d5a-439</externalid>
      <Title>Security Engineer, Insider Threat Detection &amp; Response</Title>
      <Description><![CDATA[<p><strong>Security Engineer, Insider Threat Detection &amp; Response</strong></p>
<p><strong>Location</strong></p>
<p>San Francisco; New York City; Remote - US; Seattle</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Department</strong></p>
<p>Security</p>
<p><strong>Compensation</strong></p>
<ul>
<li>$230K – $385K • Offers Equity</li>
</ul>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance-related bonus(es) for eligible employees, and the following benefits.</p>
<p><strong>Benefits</strong></p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p><strong>About the Team</strong></p>
<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.</p>
<p>The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>
<p><strong>About the Role</strong></p>
<p>As a Security Engineer you will join our OpenAI engineers and researchers in building, operating and securing transformational AI technologies. This role will focus on all aspects of Detection &amp; Response but with a strong emphasis on detecting insider threats and influencing controls to safeguard OpenAI&#39;s most sensitive assets. In this role, you will:</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Innovate on Detection and Response infrastructure to engineer and automate end-to-end detection and investigation workflows.</li>
</ul>
<ul>
<li>Develop, measure, and tune detection rules to ensure effective and sustainable operations.</li>
</ul>
<ul>
<li>Drive projects across OpenAI’s technology stack with a focus on insider threats, ranging from access abuse and intellectual property theft to novel risks emerging within AI infrastructure.</li>
</ul>
<ul>
<li>Partner closely with cross-functional stakeholders, including HR, Legal, and peer investigative teams, providing technical expertise and evidence to support investigations.</li>
</ul>
<ul>
<li>Collaborate on cutting-edge AI research, and use AI to improve OpenAI’s Security posture.</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>5+ years experience working in a detection/response or insider-risk role.. We are seeking mid-level and senior candidates.</li>
</ul>
<ul>
<li>You have broad familiarity with operating systems and platforms such as macOS, Windows, Linux, and Kubernetes, along with experience in cloud infrastructure.</li>
</ul>
<ul>
<li>Knowledge of modern adversary tactics and attack paths, data exfiltration techniques, and have experience running and leading incidents.</li>
</ul>
<ul>
<li>Proficiency with a scripting language (e.g. Python, Bash, PowerShell, or similar).</li>
</ul>
<ul>
<li>Independently manage and run projects , balance preventative controls with user friction, and prioritize efforts for risk reduction.</li>
</ul>
<ul>
<li>You’re motivated by securing transformative technology and can adapt familiar security frameworks to new risks in AI infrastructure</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid|senior</Experiencelevel>
      <Workarrangement>remote|hybrid</Workarrangement>
      <Salaryrange>$230K – $385K • Offers Equity</Salaryrange>
      <Skills>Operating Systems, Cloud Infrastructure, Scripting Language, Modern Adversary Tactics, Data Exfiltration Techniques, Incident Response, AI Research, AI Security Posture, Security Frameworks, Risk Reduction</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/f84dbb5c-6008-40f1-b388-1434d159d4a4</Applyto>
      <Location>San Francisco; New York City; Remote - US; Seattle</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
  </jobs>
</source>