{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/network-segmentation"},"x-facet":{"type":"skill","slug":"network-segmentation","display":"Network Segmentation","count":5},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_f296b6b0-e66"},"title":"Senior Software Security Engineer","description":"<p>Job Title: Senior Software Security Engineer</p>\n<p>About the Role: The Security Engineering team&#39;s mission is to safeguard our AI systems and maintain the trust of our users and society at large. Whether we&#39;re developing critical security infrastructure, building secure development practices, or partnering with our research and product teams, we are committed to operating as a world-class security organization and keeping the safety and trust of our users at the forefront of everything we do.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Build security for large-scale AI clusters, implementing robust cloud security architecture including IAM, network segmentation, and encryption controls</li>\n</ul>\n<ul>\n<li>Design secure-by-design workflows, secure CI/CD pipelines across our services, help build secure cloud infrastructure, with expertise in various cloud environments, Kubernetes security, container orchestration and identity management</li>\n</ul>\n<ul>\n<li>Ship and operate secure, high-reliability services using Infrastructure-as-Code (IaC) practices and GitOps workflows</li>\n</ul>\n<ul>\n<li>Apply deep expertise in threat modeling and risk assessment to secure complex multi cloud environments</li>\n</ul>\n<ul>\n<li>Mentor engineers and contribute to hiring and growth of the Security team</li>\n</ul>\n<p>Requirements:</p>\n<ul>\n<li>5-15+ years of software engineering experience implementing and maintaining critical systems at scale</li>\n</ul>\n<ul>\n<li>Bachelor&#39;s degree in Computer Science/Software Engineering or equivalent industry experience</li>\n</ul>\n<ul>\n<li>Strong software engineering skills in Python or at least one systems language (Go, Rust, C/C++)</li>\n</ul>\n<ul>\n<li>Experience managing infrastructure at scale with DevOps and cloud automation best practices</li>\n</ul>\n<ul>\n<li>Track record of driving engineering excellence through high standards, constructive code reviews, and mentorship</li>\n</ul>\n<ul>\n<li>Proven ability to lead cross-functional security initiatives and navigate complex organizational dynamics</li>\n</ul>\n<ul>\n<li>Outstanding communication skills, translating technical concepts effectively across all organizational levels</li>\n</ul>\n<ul>\n<li>Demonstrated success in bringing clarity and ownership to ambiguous technical problems</li>\n</ul>\n<ul>\n<li>Strong systems thinking with ability to identify and mitigate risks in complex environments</li>\n</ul>\n<ul>\n<li>Low ego, high empathy engineer who attracts talent and supports diverse, inclusive teams</li>\n</ul>\n<ul>\n<li>Experience supporting fast-paced startup engineering teams</li>\n</ul>\n<ul>\n<li>Passionate about AI safety and alignment, with keen interest in making AI systems more interpretable and aligned with human values</li>\n</ul>\n<p>Salary: The annual compensation range for this role is £240,000-£325,000 GBP.</p>\n<p>Experience Level: senior Employment Type: full-time Workplace Type: hybrid Category: Engineering Industry: Technology Salary Range: £240,000-£325,000 GBP Required Skills:</p>\n<ul>\n<li>Cloud security architecture</li>\n<li>IAM</li>\n<li>Network segmentation</li>\n<li>Encryption controls</li>\n<li>Kubernetes security</li>\n<li>Container orchestration</li>\n<li>Identity management</li>\n<li>Infrastructure-as-Code (IaC)</li>\n<li>GitOps</li>\n<li>Threat modeling</li>\n<li>Risk assessment</li>\n<li>DevOps</li>\n<li>Cloud automation</li>\n<li>Python</li>\n<li>Go</li>\n<li>Rust</li>\n<li>C/C++</li>\n</ul>\n<p>Preferred Skills:</p>\n<ul>\n<li>Secure-by-design workflows</li>\n<li>CI/CD pipelines</li>\n<li>Secure cloud infrastructure</li>\n<li>Cloud environments</li>\n<li>Containerization</li>\n<li>Identity and access management</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_f296b6b0-e66","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Anthropic","sameAs":"https://www.anthropic.com/","logo":"https://logos.yubhub.co/anthropic.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/anthropic/jobs/5022845008","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"£240,000-£325,000 GBP","x-skills-required":["Cloud security architecture","IAM","Network segmentation","Encryption controls","Kubernetes security","Container orchestration","Identity management","Infrastructure-as-Code (IaC)","GitOps","Threat modeling","Risk assessment","DevOps","Cloud automation","Python","Go","Rust","C/C++"],"x-skills-preferred":["Secure-by-design workflows","CI/CD pipelines","Secure cloud infrastructure","Cloud environments","Containerization","Identity and access management"],"datePosted":"2026-04-18T15:51:17.687Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, UK"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Cloud security architecture, IAM, Network segmentation, Encryption controls, Kubernetes security, Container orchestration, Identity management, Infrastructure-as-Code (IaC), GitOps, Threat modeling, Risk assessment, DevOps, Cloud automation, Python, Go, Rust, C/C++, Secure-by-design workflows, CI/CD pipelines, Secure cloud infrastructure, Cloud environments, Containerization, Identity and access management","baseSalary":{"@type":"MonetaryAmount","currency":"GBP","value":{"@type":"QuantitativeValue","minValue":240000,"maxValue":325000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_41528416-21c"},"title":"Staff+ Software Security Engineer","description":"<p><strong>About Anthropic</strong></p>\n<p>Anthropic&#39;s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.</p>\n<p><strong>About the Team</strong></p>\n<p>The Security Engineering team protects Anthropic&#39;s AI systems and maintains the trust of our users and society. We define the authentication architecture for our training infrastructure, design the cryptographic foundations that protect model weights and training data, and drive the developer security program that shapes how engineers build and ship software.</p>\n<p><strong>About the role:</strong></p>\n<ul>\n<li>Scope, design, and build complex security systems end to end, maintaining them through production and driving through ambiguous technical challenges with minimal oversight</li>\n<li>Identify systematic risks through threat modeling and risk assessment, then build the controls and infrastructure that address them</li>\n<li>Mentor engineers across the security team and broader engineering organisation, contribute to hiring, and grow security engineering culture at Anthropic</li>\n<li>Enable other teams to build their own security solutions by providing design pattern guidance and expanding security ownership beyond the security team</li>\n</ul>\n<p><strong>Developer security and supply chain</strong></p>\n<ul>\n<li>Build and advance our developer security program by embedding security practices into the software development lifecycle and developer workflows</li>\n<li>Harden CI/CD pipelines against supply chain attacks through isolated build environments, signed attestations, dependency verification, and automated policy enforcement</li>\n</ul>\n<p><strong>Identity and secrets management</strong></p>\n<ul>\n<li>Architect systems that protect sensitive assets including model weights, customer data, and training datasets</li>\n<li>Build and operate credential issuance, rotation, and workload authentication across our multi-cloud environments</li>\n</ul>\n<p><strong>Infrastructure security</strong></p>\n<ul>\n<li>Implement and maintain cloud security controls including IAM, network segmentation, VPC architecture, and encryption across our multi-cloud and on-prem environments</li>\n<li>Contribute to cluster security controls including RBAC policies, namespace isolation, workload identity, and pod security</li>\n<li>Contribute to continuous cloud security posture management using infrastructure-as-code scanning, misconfiguration detection, and automated remediation</li>\n</ul>\n<p><strong>Secure frameworks</strong></p>\n<ul>\n<li>Build critical security foundations including cryptographic frameworks, mTLS infrastructure, secure serialization, and authorization systems, designed to prevent entire classes of vulnerabilities and empower engineering teams to work securely without becoming security experts themselves</li>\n<li>Partner with product, research, infrastructure, and other security teams to ensure frameworks integrate smoothly with lower-layer security controls</li>\n</ul>\n<p><strong>You may be a good fit if you have:</strong></p>\n<ul>\n<li>At least 8 years of software engineering experience with deep security expertise, including leading complex security initiatives independently</li>\n<li>Bachelor&#39;s degree in Computer Science or equivalent industry experience</li>\n<li>Strong programming skills in Python or at least one systems language such as Go, Rust, or C/C++</li>\n<li>Deep understanding of identity systems, cryptographic primitives, and secrets management</li>\n<li>Working knowledge of Kubernetes security primitives including RBAC, namespaces, network policies, and service accounts</li>\n<li>Experience leading cross-functional security initiatives and navigating complex organisational dynamics</li>\n<li>Outstanding communication skills, translating technical concepts effectively across all levels of the organisation</li>\n<li>A track record of bringing clarity and ownership to ambiguous technical problems and driving them to resolution</li>\n<li>Low ego and high empathy, with a history of growing the engineers around you and supporting diverse, inclusive teams</li>\n<li>Passion for AI safety and the role security engineering plays in building trustworthy AI systems</li>\n</ul>\n<p><strong>Strong candidates may also have:</strong></p>\n<ul>\n<li>Designed or operated identity and secrets management systems for large-scale AI or cloud infrastructure</li>\n<li>Built security frameworks or libraries adopted across an engineering organisation</li>\n<li>Led a developer security program including supply chain security, secure build infrastructure, and SDLC integrations</li>\n<li>Built or secured CI infrastructure using Nix, Bazel, or Kubernetes-based deploy systems, with depth in toolchain issues, CI/CD pipelines, and developer workflow optimisation</li>\n<li>Implemented machine identity or workload authentication systems using SPIFFE/SPIRE, mTLS, or equivalent</li>\n<li>Understanding of Linux systems internals including namespaces, cgroups, and seccomp, and how these underpin container and workload isolation</li>\n<li>Contributed to the security architecture of multi-cloud environments including network segmentation, data protection, and access governance</li>\n<li>Experience with network security controls including admission controllers, CNI-level policy, service mesh security, and east-west traffic enforcement</li>\n<li>Experience building runtime security monitoring using eBPF or kernel security policies</li>\n</ul>\n<p><strong>Deadline to apply:</strong></p>\n<p>None, applications will be received on a rolling basis.</p>\n<p><strong>The annual compensation range for this role is listed below.</strong></p>\n<p>For sales roles, the range provided is the role’s On Target Earnings (&quot;OTE&quot;) range, meaning the total amount of money an employee is expected to earn in a year, including bonuses and other forms of compensation.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_41528416-21c","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Anthropic","sameAs":"https://job-boards.greenhouse.io","logo":"https://logos.yubhub.co/anthropic.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/anthropic/jobs/5120512008","x-work-arrangement":"hybrid","x-experience-level":"staff","x-job-type":"full-time","x-salary-range":"The annual compensation range for this role is listed below.\n\nFor sales roles, the range provided is the role’s On Target Earnings (\"OTE\") range, meaning the total amount of money an employee is expected to earn in a year, including bonuses and other forms of compensation.","x-skills-required":["Python","Go","Rust","C/C++","Kubernetes","RBAC","namespaces","network policies","service accounts","identity systems","cryptographic primitives","secrets management"],"x-skills-preferred":["Nix","Bazel","Kubernetes-based deploy systems","SPIFFE/SPIRE","mTLS","Linux systems internals","namespaces","cgroups","seccomp","container and workload isolation","multi-cloud environments","network segmentation","data protection","access governance","admission controllers","CNI-level policy","service mesh security","east-west traffic enforcement","runtime security monitoring","eBPF","kernel security policies"],"datePosted":"2026-03-08T13:52:38.657Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco, CA | New York City, NY | Seattle, WA"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Python, Go, Rust, C/C++, Kubernetes, RBAC, namespaces, network policies, service accounts, identity systems, cryptographic primitives, secrets management, Nix, Bazel, Kubernetes-based deploy systems, SPIFFE/SPIRE, mTLS, Linux systems internals, namespaces, cgroups, seccomp, container and workload isolation, multi-cloud environments, network segmentation, data protection, access governance, admission controllers, CNI-level policy, service mesh security, east-west traffic enforcement, runtime security monitoring, eBPF, kernel security policies"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_a634db45-4fd"},"title":"Security Engineer Lead, Corporate Security","description":"<p><strong>About the Role:</strong></p>\n<p>We’re looking for a Security Engineering Lead to own and drive Anthropic’s Corporate Security programme. This is a player-coach Tech Lead Manager (TLM) role: you’ll be both the most senior technical individual contributor on corporate security and the people leader for a lean, high-impact team of Security Engineers.</p>\n<p>Corporate Security at Anthropic encompasses everything that protects our people, endpoints, networks, SaaS ecosystem, and corporate data—the full surface area outside of production infrastructure. The scope is broad and the team is deliberately small, which means you’ll need deep technical skills across multiple domains, strong judgment about where to invest, and a bias toward automation and engineering-driven solutions over manual process.</p>\n<p>You’ll report into Security leadership and partner closely with IT, Infrastructure Security, Detection &amp; Response, and GRC teams. This role is high-visibility and high-autonomy: you’ll be expected to define the roadmap, make architectural decisions, and represent Corporate Security across the company.</p>\n<p><strong>Responsibilities:</strong></p>\n<p><strong>Technical Leadership &amp; Hands-on Engineering</strong></p>\n<ul>\n<li>Own the security architecture, tooling, and controls for Anthropic’s corporate environment end-to-end, including endpoint fleets (macOS, Windows, ChromeOS), campus and office networks, SaaS applications, mobile devices</li>\n<li>Design, build, and ship security automation, integrations, and internal tooling—including leveraging Claude and LLMs to accelerate security workflows</li>\n<li>Define and enforce security baselines, hardening standards, and configuration policies across all corporate platforms</li>\n<li>Define what it means to operate safely in an environment where AI agents act more like humans than actual humans</li>\n<li>Evaluate, select, deploy, and operate corporate security tools (EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, etc.)</li>\n<li>Drive vulnerability management for corporate assets, including patch orchestration, risk-based prioritization, and exception management</li>\n<li>Lead security reviews of new SaaS adoptions, corporate infrastructure changes, and IT projects</li>\n</ul>\n<p><strong>People Leadership &amp; Team Building</strong></p>\n<ul>\n<li>Manage, mentor, and grow a purposefully lean team of Security Engineers; set clear expectations, run effective 1:1s, and create an environment where engineers do the best work of their careers</li>\n<li>Hire and build the team as scope expands—own the hiring bar and pipeline for Corporate Security Engineering roles</li>\n<li>Balance your own IC contributions with the team’s needs; know when to go deep on a problem yourself and when to delegate and coach</li>\n<li>Foster a culture of operational excellence, blameless incident review, and continuous improvement</li>\n</ul>\n<p><strong>Strategy &amp; Cross-Functional Partnership</strong></p>\n<ul>\n<li>Define and own the Corporate Security roadmap, aligning investments to Anthropic’s risk profile and growth trajectory</li>\n<li>Partner with IT Operations to ensure security is embedded in endpoint provisioning, network design, and SaaS lifecycle management</li>\n<li>Collaborate with Detection &amp; Response on telemetry coverage, detection engineering, and incident handling for corporate-sourced events</li>\n<li>Partner with Infrastructure and Security Engineering teams to ensure security standards are consistent across all of Anthropic</li>\n<li>Communicate security posture, risks, and investment needs to Security leadership and cross-functional stakeholders clearly and persuasively</li>\n</ul>\n<p><strong>You may be a good fit if you:</strong></p>\n<ul>\n<li>Have 8+ years of Security Engineering experience in a corporate/enterprise security domain (endpoint security, network security, SaaS security, identity, or a combination)</li>\n<li>Have 2+ years of experience managing or tech-leading a team of engineers, with a demonstrated track record of developing talent and shipping results through others</li>\n<li>Are a strong engineer who still writes code regularly—you can prototype a tool, write a detection, build an integration, or debug a complex configuration issue</li>\n<li>Have deep experience with macOS fleet security (this is our primary platform) and solid working knowledge of Windows and ChromeOS security</li>\n<li>Have hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale</li>\n<li>Understand modern SaaS security challenges: shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, and SSPM/CASB tooling</li>\n<li>Can work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions in a fast-paced environment</li>\n<li>Have excellent communication skills and can translate complex security topics into clear recommendations for technical and non-technical audiences</li>\n</ul>\n<p>Strong candidates may have:</p>\n<ul>\n<li>Securing corporate environments at high-growth AI, cloud, or developer-tools companies</li>\n<li>Maturing a Corporate Security function from early stage, including defining scope, selecting the initial toolset, and hiring the founding team</li>\n<li>Advanced macOS security (system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management)</li>\n<li>Network security architecture for hybrid/multi-office environments, including SD-WAN, ZTNA, DNS security, and network segmentation</li>\n<li>Browser security and isolation technologies (e.g., Island, Talon/Palo Alto, Chrome Enterprise)</li>\n<li>Proficiency in Python, Go, or similar languages for building sec</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_a634db45-4fd","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Anthropic","sameAs":"https://www.anthropic.com","logo":"https://logos.yubhub.co/anthropic.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/anthropic/jobs/5135098008","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["macOS fleet security","endpoint security","network security","SaaS security","identity security","EDR/XDR","MDM","ZTNA","CASB/SSPM","email security","DLP","browser security","patch orchestration","risk-based prioritization","exception management","security automation","integrations","internal tooling","Claude","LLMs","security baselines","hardening standards","configuration policies","vulnerability management","security reviews","IT projects","team management","team building","operational excellence","blameless incident review","continuous improvement","security roadmap","risk profile","growth trajectory","IT operations","endpoint provisioning","network design","SaaS lifecycle management","detection engineering","incident handling","infrastructure security","security engineering","security standards","communication","security posture","risks","investment needs"],"x-skills-preferred":["Python","Go","similar languages","macOS security","Windows security","ChromeOS security","advanced macOS security","system extensions","endpoint security framework","MDM profile engineering","Declarative Device Management","network security architecture","SD-WAN","ZTNA","DNS security","network segmentation","browser security and isolation technologies","Island","Talon/Palo Alto","Chrome Enterprise"],"datePosted":"2026-03-08T13:46:03.242Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco, CA | New York City, NY"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"macOS fleet security, endpoint security, network security, SaaS security, identity security, EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, patch orchestration, risk-based prioritization, exception management, security automation, integrations, internal tooling, Claude, LLMs, security baselines, hardening standards, configuration policies, vulnerability management, security reviews, IT projects, team management, team building, operational excellence, blameless incident review, continuous improvement, security roadmap, risk profile, growth trajectory, IT operations, endpoint provisioning, network design, SaaS lifecycle management, detection engineering, incident handling, infrastructure security, security engineering, security standards, communication, security posture, risks, investment needs, Python, Go, similar languages, macOS security, Windows security, ChromeOS security, advanced macOS security, system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management, network security architecture, SD-WAN, ZTNA, DNS security, network segmentation, browser security and isolation technologies, Island, Talon/Palo Alto, Chrome Enterprise"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_38e5f550-c43"},"title":"Security Engineer, Detection and Response - EMEA","description":"<p><strong>About the Team</strong></p>\n<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.</p>\n<p>The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>\n<p><strong>About the Role</strong></p>\n<p>As a Security Engineer on Detection &amp; Response, you’ll help protect OpenAI’s most sensitive assets– including our intellectual property, customer data, and the infrastructure that supports them– by building and operating the systems we use to detect suspicious activity and respond effectively when it matters. You’ll work across endpoints, identity, cloud, hyperscale compute infrastructure, and datacenter-adjacent layers, partnering closely with security teams and infrastructure owners to define the telemetry and response requirements we need and building tooling and automation where it delivers the most leverage.</p>\n<p><strong>In this role, you will:</strong></p>\n<ul>\n<li>Build and evolve Detection &amp; Response capabilities across OpenAI’s infrastructure, products, and research environments, with an emphasis on high-signal detection and reliable operational response.</li>\n</ul>\n<ul>\n<li>Engineer detection pipelines and tooling: develop rule lifecycle management, measurement/quality loops (coverage, precision, latency), tuning processes, and safe rollout patterns.</li>\n</ul>\n<ul>\n<li>Automate response and investigations by building workflows that reduce toil (triage, enrichment, containment, evidence capture) and improve time-to-understand/time-to-contain.</li>\n</ul>\n<ul>\n<li>Partner with other Security teams and system/infrastructure owners across the company to ensure new systems ship with the right telemetry, threat models, and response playbooks from day one.</li>\n</ul>\n<ul>\n<li>Define D&amp;R requirements and drive visibility across endpoints, identity, SaaS, cloud, Kubernetes: identify telemetry/control gaps, prioritize them, and advocate for fixes with partner teams (and implement directly when it’s the fastest/most effective path).</li>\n</ul>\n<ul>\n<li>Evaluate and respond to emergent security concerns in a frontier AI lab environment, such as detection and response strategies for agents operating across infrastructure at scale.</li>\n</ul>\n<p><strong>You might thrive in this role if you:</strong></p>\n<ul>\n<li>Have hands-on threat detection and/or incident response experience, including building detections, running investigations, and improving operational playbooks.</li>\n</ul>\n<ul>\n<li>Understand modern adversary tradecraft (TTPs) and can translate it into practical detection strategies and response actions.</li>\n</ul>\n<ul>\n<li>Bring a threat modeling mindset. You can evaluate new infrastructure or features, identify D&amp;R implications (what could go wrong, what we’d need to see, how we’d respond), and turn that into concrete requirements for teams shipping the system.</li>\n</ul>\n<ul>\n<li>Have experience working in Kubernetes/containerized environments, including building detections from cluster telemetry and understanding common failure and attack modes (workloads, nodes, control plane, networking).</li>\n</ul>\n<ul>\n<li>Are comfortable reasoning about lower-level infrastructure and datacenter risks, such as firmware/BMC surfaces, network segmentation/telemetry, and hard-to-observe control paths.</li>\n</ul>\n<ul>\n<li>Have experience across major cloud platforms (Azure, AWS, GCP, OCI), and can design cloud-agnostic detection approaches where possible.</li>\n</ul>\n<ul>\n<li>Like building automation that replaces repetitive D&amp;R work, including thoughtfully using agent-style workflows where they meaningfully reduce toil, while keeping outcomes measurable, auditable, and safe.</li>\n</ul>\n<ul>\n<li>Are energized by new problem areas at a forward-leaning technology company: e.g., thinking through how to detect and respond to agents operating across systems at scale, and turning those ideas into pragmatic telemetry and response requirements.</li>\n</ul>\n<ul>\n<li>Communicate clearly and collaborate well across teams. You can translate D&amp;R needs into clear requirements, align stakeholders, and drive follow-through across technical and non-technical audiences.</li>\n</ul>\n<ul>\n<li>Are comfortable with scripting and enjoy using AI/agent tooling to accelerate investigations and automation—more “directing” than doing everything by hand.</li>\n</ul>\n<p><strong>About OpenAI</strong></p>\n<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_38e5f550-c43","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openai.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openai/2d8b30c7-afa3-42ca-b315-ead35e8457ab","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["threat detection","incident response","Kubernetes","cloud platforms","scripting","AI/agent tooling","security","datacenter risks","firmware/BMC surfaces","network segmentation/telemetry","hard-to-observe control paths"],"x-skills-preferred":["threat modeling","adversary tradecraft","TTPs","detection strategies","response actions","cloud-agnostic detection approaches","automation","agent-style workflows","measurable outcomes","auditable outcomes","safe outcomes"],"datePosted":"2026-03-06T18:32:29.366Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, UK; Dublin, Ireland"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"threat detection, incident response, Kubernetes, cloud platforms, scripting, AI/agent tooling, security, datacenter risks, firmware/BMC surfaces, network segmentation/telemetry, hard-to-observe control paths, threat modeling, adversary tradecraft, TTPs, detection strategies, response actions, cloud-agnostic detection approaches, automation, agent-style workflows, measurable outcomes, auditable outcomes, safe outcomes"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_a100bbea-105"},"title":"Security Engineer, Detection and Response","description":"<p><strong>Security Engineer, Detection and Response</strong></p>\n<p><strong>About the Team</strong></p>\n<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.</p>\n<p>The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>\n<p><strong>About the Role</strong></p>\n<p>As a Security Engineer on Detection &amp; Response, you’ll help protect OpenAI’s most sensitive assets– including our intellectual property, customer data, and the infrastructure that supports them– by building and operating the systems we use to detect suspicious activity and respond effectively when it matters. You’ll work across endpoints, identity, cloud, hyperscale compute infrastructure, and datacenter-adjacent layers, partnering closely with security teams and infrastructure owners to define the telemetry and response requirements we need and building tooling and automation where it delivers the most leverage.</p>\n<p><strong>In this role, you will:</strong></p>\n<ul>\n<li>Build and evolve Detection &amp; Response capabilities across OpenAI’s infrastructure, products, and research environments, with an emphasis on high-signal detection and reliable operational response.</li>\n</ul>\n<ul>\n<li>Engineer detection pipelines and tooling: develop rule lifecycle management, measurement/quality loops (coverage, precision, latency), tuning processes, and safe rollout patterns.</li>\n</ul>\n<ul>\n<li>Automate response and investigations by building workflows that reduce toil (triage, enrichment, containment, evidence capture) and improve time-to-understand/time-to-contain.</li>\n</ul>\n<ul>\n<li>Partner with other Security teams and system/infrastructure owners across the company to ensure new systems ship with the right telemetry, threat models, and response playbooks from day one.</li>\n</ul>\n<ul>\n<li>Define D&amp;R requirements and drive visibility across endpoints, identity, SaaS, cloud, Kubernetes: identify telemetry/control gaps, prioritize them, and advocate for fixes with partner teams (and implement directly when it’s the fastest/most effective path).</li>\n</ul>\n<ul>\n<li>Evaluate and respond to emergent security concerns in a frontier AI lab environment, such as detection and response strategies for agents operating across infrastructure at scale.</li>\n</ul>\n<p><strong>You might thrive in this role if you:</strong></p>\n<ul>\n<li>Have hands-on threat detection and/or incident response experience, including building detections, running investigations, and improving operational playbooks.</li>\n</ul>\n<ul>\n<li>Understand modern adversary tradecraft (TTPs) and can translate it into practical detection strategies and response actions.</li>\n</ul>\n<ul>\n<li>Bring a threat modeling mindset. You can evaluate new infrastructure or features, identify D&amp;R implications (what could go wrong, what we’d need to see, how we’d respond), and turn that into concrete requirements for teams shipping the system.</li>\n</ul>\n<ul>\n<li>Have experience working in Kubernetes/containerized environments, including building detections from cluster telemetry and understanding common failure and attack modes (workloads, nodes, control plane, networking).</li>\n</ul>\n<ul>\n<li>Are comfortable reasoning about lower-level infrastructure and datacenter risks, such as firmware/BMC surfaces, network segmentation/telemetry, and hard-to-observe control paths.</li>\n</ul>\n<ul>\n<li>Have experience across major cloud platforms (Azure, AWS, GCP, OCI), and can design cloud-agnostic detection approaches where possible.</li>\n</ul>\n<ul>\n<li>Like building automation that replaces repetitive D&amp;R work, including thoughtfully using agent-style workflows where they meaningfully reduce toil, while keeping outcomes measurable, auditable, and safe.</li>\n</ul>\n<ul>\n<li>Are energized by new problem areas at a forward-leaning technology company: e.g., thinking through how to detect and respond to agents operating across systems at scale, and turning those ideas into pragmatic telemetry and response requirements.</li>\n</ul>\n<ul>\n<li>Communicate clearly and collaborate well across teams. You can translate D&amp;R needs into clear requirements, align stakeholders, and drive follow-through across technical and non-technical audiences.</li>\n</ul>\n<ul>\n<li>Are comfortable with scripting and enjoy using AI/agent tooling to accelerate investigations and automation—more “directing” than doing everything by hand.</li>\n</ul>\n<p><strong>About OpenAI</strong></p>\n<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_a100bbea-105","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openai.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openai/3728b144-f640-42be-84af-94f6b0743d7c","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"Competitive salary and benefits package","x-skills-required":["threat detection","incident response","Kubernetes","cloud platforms","scripting","AI/agent tooling","security automation","threat modeling","adversary tradecraft"],"x-skills-preferred":["cloud-agnostic detection","network segmentation","firmware/BMC surfaces","datacenter risks","containerized environments","cloud platforms","security orchestration","incident response automation"],"datePosted":"2026-03-06T18:30:38.077Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Sydney, Australia; Singapore; Tokyo, Japan"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"threat detection, incident response, Kubernetes, cloud platforms, scripting, AI/agent tooling, security automation, threat modeling, adversary tradecraft, cloud-agnostic detection, network segmentation, firmware/BMC surfaces, datacenter risks, containerized environments, cloud platforms, security orchestration, incident response automation"}]}