Security Engineer, Detection Engineering

Coreweave, Inc.
Livingston, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$165,000.0 - $242,000.0
Working hours
Shift work
Job source

Tech stack

JavaScript (Programming Language) Bash Shell Cyber Security Query Languages Linux Apache Hive Intrusion Detection and Prevention Python (Programming Language) Machine Learning Open Source Technology Kusto Query Language SQL Databases
+7 more
Mitre Att&ck Cyber Threat Analysis Kubernetes Cybercrime Edge Detection Splunk Golang

Job description

  • Design cutting-edge detection strategies at scales most security engineers only dream about
  • Collaborate with talented peers in an innovative environment focused on excellence
  • Enjoy the autonomy and encouragement to innovate and influence CoreWeave’s security landscape directly

In this role, you will be responsible for:

  • Developing and implementing advanced threat detection capabilities to proactively identify and mitigate cyber threats
  • Crafting precise and efficient custom detection logic tailored to evolving threat landscapes
  • Leading and/or participating in real-time security incident response, threat containment, and remediation.
  • Conducting proactive threat-hunting exercises to uncover hidden vulnerabilities and anticipate threats
  • Collaborating closely with cross-functional teams to enhance security visibility and detection effectiveness
  • Continuously researching and staying informed about emerging threats, attack vectors, and detection methodologies
  • Participating in strategic security initiatives, contributing your expertise to security architecture and controls
  • Engaging in security assessments to uphold our high standards for security and compliance
  • Occasionally, drawing the owl - figuring out innovative solutions while navigating ambiguous situations

Investing in our people is one of our top priorities, and we value candidates who can bring their diversified experiences to our teams. Here are some qualities we’ve found compatible with our team. We’d love to talk about whether this aligns with your experience and interests and what you’re excited to work on next.

Requirements

  • Proven ability to deliver impactful projects spanning multiple technical domains and teams
  • Extensive experience crafting custom alert logic within industry-standard tooling, like KQL, SQL, etc
  • Familiarity with Kubernetes fundamentals and enthusiasm to deepen your expertise.
  • Experience collaborating closely with Purple and Red Teams, leveraging findings to enhance detection capabilities.
  • Solid understanding of modern TTP frameworks such as MITRE ATT&CK and Cyber Kill Chain.
  • Proficiency in at least one query language (e.g., SQL, Splunk Query Language, HiveQL).
  • Competency in writing detections in multiple languages (Python, Bash, Go, JavaScript, etc.)
  • Strong foundational knowledge of Linux or macOS internals and their relevant event sources (eBPF, Endpoint Security Framework)
  • Practical experience applying and contributing to the Incident Response Lifecycle methodology, * Deep understanding of Kubernetes-specific detection and security challenges
  • Contributions to the open-source security community or experience developing detection tooling
  • Experience leveraging advanced analytics or machine learning techniques in detection engineering

Please note that this role is not a typical 9-5 job. There may be instances where real-time incident response requires active participation outside business hours. On-call hours (including weekends and holidays) and all-hands-on-deck participation during active incidents are expected. If crafting sophisticated detection strategies and staying ahead of threats in a dynamic, innovative environment excites you, we’d love to connect!

Benefits & conditions

The base salary range for this role is $165,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility)., In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include:

  • Medical, dental, and vision insurance - 100% paid for by CoreWeave
  • Company-paid Life Insurance
  • Voluntary supplemental life insurance
  • Short and long-term disability insurance
  • Flexible Spending Account
  • Health Savings Account
  • Tuition Reimbursement
  • Ability to Participate in Employee Stock Purchase Program (ESPP)
  • Mental Wellness Benefits through Spring Health
  • Family-Forming support provided by Carrot
  • Paid Parental Leave
  • Flexible, full-service childcare support with Kinside
  • 401(k) with a generous employer match
  • Flexible PTO
  • Catered lunch each day in our office and data center locations
  • A casual work environment
  • A work culture focused on innovative disruption

About the company

CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at www.coreweave.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

Videos

See all

Related articles

See all