Senior Security Engineer, Incident Response
United States · Remote · Full-time
- Posted 1mo ago
- From Snowflake’s careers page
- Location
- United States
- Work mode
- Remote
- Type
- Full-time
- Level
- Senior
- Experience
- 5+ years
- Department
- Engineering
Opens the listing on jobs.ashbyhq.com
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.
About the role
AS A SENIOR SECURITY ENGINEER, INCIDENT RESPONSE AT SNOWFLAKE, YOU WILL:
-
Lead incident response for product-level security events, with deep focus on AI-specific threat vectors including prompt injection, model abuse, agent hijacking, and data exfiltration through AI workloads.
-
Integrate IR into AI product pipelines - work directly with teams shipping Cortex features, Snowflake Intelligence, and AI-powered developer experiences to embed security requirements from design through deployment.
-
Develop and codify our AI abuse response strategy - defining detection, containment, and remediation playbooks for LLM misuse, adversarial inputs, and AI-assisted attacks targeting Snowflake customers.
-
Address tech debt across the AI product stack, ensuring that new Cortex and agentic architectures meet IR readiness requirements from the ground up.
-
Represent the IR team to cloud engineering, AI platform teams, corporate security, and customer-facing business units.
-
Secure modern AI-native codebases operating across multi-cloud environments - including container-based inference services, RAG pipelines, vector stores, and agent orchestration layers.
-
Partner with world-class AI and security engineering teams, providing expert guidance on secure architecture for high-impact AI features and customer-facing AI capabilities.
-
Design and manage response capabilities built into Snowflake's AI operational infrastructure - from model serving endpoints to Cortex Search indexes and Snowpark ML pipelines.
-
Lead with data, code, and automation - build tooling that accelerates detection and response for product security incidents at Snowflake scale.
-
Drive meaningful security outcomes for the customers and enterprises trusting Snowflake with their most sensitive data and AI workloads.
OUR IDEAL SENIOR SECURITY ENGINEER WILL HAVE:
-
5+ years of experience in information security, primarily in incident response, security engineering, or product/application security (preferred).
-
Direct experience serving as incident commander for product focused security incidents.
-
Experience leading or actively building an application or security engineering program, with a clear point of view on securing AI/ML systems.
-
Experience with threat modeling and security testing across AI attack surfaces, including prompt injection, indirect injection, model inversion, embedding extraction, and supply chain attacks on AI dependencies.
-
Familiarity with the unique data governance and security challenges introduced by LLMs, RAG architectures, and agentic systems.
-
Working knowledge of cloud-native environments (AWS, Azure, GCP) and the threat landscape specific to SaaS and AI platforms.
-
SQL proficiency, plus experience building automation and tools with common programming languages (Python preferred).
-
Strong communication skills, with the ability to translate security risk into actionable guidance for product teams.
-
Empathy for developer experience, helping AI engineers ship securely rather than slowing them down.
-
Bachelor's degree in Computer Science or a related field, or equivalent experience.
BONUS POINTS FOR THE FOLLOWING:
-
Experience securing AI/ML infrastructure, including model serving, vector databases, embedding pipelines, API gateways, and LLM-integrated application architectures.
-
Experience building agentic incident response capabilities, including skills, agents, and pipelines.
-
Understanding of current attacker TTPs, including emerging AI-specific techniques such as adversarial ML, agent manipulation, and LLM jailbreaking in enterprise contexts.
-
Familiarity with CI/CD and secure release lifecycle patterns, with an emphasis on building security into AI feature pipelines.
-
Preferred certifications: GCIA, GCIH, GCSA, GDAT, CISSP/GISP, or cloud certifications (AWS, Azure, GCP).
Skills they ask for
Pick one to see other roles that ask for it.
About Snowflake
Cloud data, analytics and AI platformSnowflake provides a managed cloud platform for data engineering, analytics, AI, and building and sharing data applications.
See all 169 roles at SnowflakeMore roles at Snowflake
See all 169- Account Executive, Enterprise AcquisitionUnited States · RemoteSales · RemoteUnited States8h
- Brand DesignerMenlo ParkMarketingMenlo Park, United States9h
- Director of Engineering - Traffic & NetworkingMenlo Park · Director · On-siteEngineering · Director · On-siteMenlo Park, United States1d
- Sales Ops Manager, Partners & Specialists PlanningMenlo Park · HybridBusiness Operations · HybridMenlo Park, United States1d
Let the right jobs find you
In your inbox every Wednesday and SaturdayPersonalised suggestions from verified career pages, matched to your role, location, level and skills.