About the Role
Fluidstack is building civilization-scale infrastructure for AI, delivering massive amounts of compute faster than anyone else. We are seeking individuals who care deeply about this mission and want to contribute to the frontier of AI. The Security & Corp IT Team protects the infrastructure behind this buildout, addressing complex security challenges across corporate, cloud, and data center environments.
Responsibilities
- Own the detection engineering program end to end, including threat modeling, detection design, deployment, tuning, and retirement.
- Map detection coverage to MITRE ATT&CK and document gaps.
- Build detection-as-code pipelines for version-controlled, tested, and peer-reviewed detection rules.
- Measure and manage false-positive rates for detection rules.
- Run threat hunts in cloud, SaaS, and data center environments and convert findings into repeatable detections.
- Drive SIEM and EDR pipeline health, including log source onboarding, normalization, and alert quality.
- Lead triage and response for built alerts and close incidents with root-cause writeups.
- Build automation to reduce manual triage steps and scale alert load slower than the company.
- Protect infrastructure from corporate endpoints to environments running frontier AI workloads.
- Build detection and response coverage across corporate, cloud, and data center environments.
- Secure systems and networks that frontier AI labs depend on.
- Stand up security tooling, identity, and endpoint management.
- Turn incident learnings and threat intel into durable detection logic.
Requirements
- 5+ years in detection engineering or threat hunting within a mature security operations organization (cloud-native infrastructure, SaaS, or fintech).
- Deep hands-on experience with SIEM and EDR tooling (Splunk, Elastic, CrowdStrike, or equivalent), including query languages and pipeline tuning.
- Experience writing and maintaining detection logic mapped to MITRE ATT&CK against real adversary behavior.
- Strong scripting and automation skills (Python, SQL, or similar).
- Experience with a detection-as-code workflow including tests, review, and rollback.
- Ability to differentiate between noisy and broken rules and tune or kill detections.
- Ability to operate with minimal process, scope own work, and build necessary processes.
- Clear written communication for runbooks and incident reports.
- Experience securing physical infrastructure or OT/data center environments (bonus).
- Purple team experience (bonus).
- Contributions to open-source detection content (Sigma, detection rule repos) (bonus).
Skills
- Detection Engineering
- Threat Hunting
- SIEM
- EDR
- Splunk
- Elastic
- CrowdStrike
- MITRE ATT&CK
- Python
- SQL
- Detection-as-code
- Scripting
- Automation
- Tuning
- Incident Response
- Security Tooling
- Identity Management
- Endpoint Management
- Threat Intelligence
Location
- Remote
Work Type
- Full-time
Experience Level
- 5+ years
About the Company
- Fluidstack exists to make humanity more free by ensuring AI models are aligned with human desires.
- We are singularly focused on delivering 10 to 100s of GWs of compute faster than anyone else, rethinking every layer of the stack.
- We acquire power, design and build data centers, and operate them.
- Speed and scale are our key differentiators.
- We hire people who care deeply about the problem space.
- Our operating principles include extreme ownership, full autonomy, velocity, first principles thinking, and a passion for the AI frontier.
- The Security & Corp IT Team protects the infrastructure behind the largest AI compute buildout in history.
Equal Opportunity
- Fluidstack is an Equal Employment Opportunity Employer.
- All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law.
- Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
