Security & Corp IT Team

Fluidstack Ltd
Austin, TX, United States
4 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Build Automation Software as a Service Cloud Computing Cyber Security Data Centers Query Languages Intrusion Detection and Prevention Python (Programming Language) Open Source Technology Security Information and Event Management SQL Databases
+4 more
Cloud Platform System Mitre Att&ck Purple Team (Cyber Security) Splunk

Job description

  • Build detection and response coverage across corporate, cloud, and data center environments that are growing faster than any off-the-shelf playbook assumes.
  • Secure the systems and networks that frontier AI labs depend on, where downtime and compromise both carry real cost.
  • Stand up security tooling, identity, and endpoint management for a company that adds people, sites, and vendors every month.
  • Turn incident learnings and threat intel into durable detection logic instead of one-off fixes.

Role Scope

  • Own the detection engineering program end to end: threat modeling, detection design, deployment, tuning, and retirement, with coverage mapped to MITRE ATT&CK and gaps documented rather than assumed away.
  • Build detection-as-code pipelines so every rule is version-controlled, tested, and peer-reviewed before it ships, and false-positive rates are measured, not guessed.
  • Run threat hunts against real adversary behavior in our cloud, SaaS, and data center environments, and convert findings into repeatable detections.
  • Drive SIEM and EDR pipeline health: log source onboarding, normalization, and alert quality good enough that on-call responders trust what pages them.
  • Lead triage and response for the alerts you build, and close out incidents with root-cause writeups that change the detection stack, not just the ticket queue.
  • Build automation that removes manual triage steps, so the team’s alert load scales slower than the company does.

Requirements

The below is a starting point. We always make space for exceptional people, so if you don’t fit this role exactly, tell us where you would.

  • 5+ years in detection engineering or threat hunting inside a mature security operations org (cloud-native infrastructure, SaaS, or fintech).
  • Deep hands-on experience with SIEM and EDR tooling: Splunk, Elastic, CrowdStrike, or equivalent, including query languages and pipeline tuning, not just console use.
  • You’ve written and maintained detection logic mapped to MITRE ATT&CK against real adversary behavior, and you can point to detections that caught something.
  • Strong scripting and automation skills (Python, SQL, or similar) and a detection-as-code workflow you’d defend: tests, review, and rollback included.
  • You know the difference between a noisy rule and a broken one, and you tune or kill detections before responders learn to ignore them.
  • You operate well with minimal process: you can scope your own work, ship without a mature SOC around you, and build the process you need as you go.
  • You write clearly enough that your runbooks and incident reports work when you’re asleep.
  • Bonus: experience securing physical infrastructure or OT/data center environments, purple team experience, or contributions to open-source detection content (Sigma, detection rule repos).

About the company

About Fluidstack

We exist to make humanity more free. For most of human history, you farmed or you starved. Technology gave people more time for the things they wanted to do, instead of things they had to do. Powerful AI will be the biggest lever for human choice we’ve ever built - but only if models are aligned with what humanity actually wants. There are groups building AI who don’t share these goals. Whoever deploys frontier compute infrastructure fastest will decide whether AI expands human freedom or shrinks it.

We’re singularly focused on delivering 10 to 100s of GWs of compute faster than anyone else, rethinking every layer of the stack. We acquire power, design and build data centers, and operate them - with teams spanning hardware and software. Speed and scale are our key differentiators. Come be a part of building civilization-scale infrastructure for AI.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber ¡ World Congress 2026 Europe

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 ¡ LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 ¡ Coffee With Developers

4:03 min

Managing massive power consumption scaling in AI data centers

Stephan Gillich Stephan Gillich +3 ¡ World Congress 2024

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 ¡ World Congress 2024

Videos

See all

Related articles

See all