About the Role
We're hiring our founding Security Operations Engineer to help build and scale our security program from the ground up. This is a hands-on role for a builder who wants to shape security from the ground up. As our first dedicated Security Engineer, you’ll partner with the IT & Security Team to design and scale security across cloud, identity, applications, endpoints, and incident response. You’ll lead technical execution while collaborating on architecture, priorities, and long-term strategy. This role offers meaningful ownership, active mentorship, and the opportunity to build a practical security program that grows with the company.
Responsibilities
- Build and mature the company's security operations program.
- Design, implement, and continuously improve SIEM, EDR, and endpoint security capabilities.
- Develop, tune, and maintain detections across cloud, endpoint, identity, and SaaS platforms.
- Lead technical incident investigations while collaborating on incident response planning and post-incident reviews.
- Design and continuously improve AWS and GCP security posture.
- Lead implementation of identity security across Okta, Google Workspace, cloud IAM, privileged access, MFA, and SSO.
- Secure Kubernetes, Docker, and Infrastructure-as-Code environments.
- Design and maintain centralized security logging and telemetry.
- Lead the vulnerability management program in partnership with Engineering and IT.
- Partner with Engineering to improve secure software development, API security, and application security.
- Lead security awareness initiatives, phishing simulations, and tabletop exercises.
- Evaluate emerging AI technologies that improve security operations while supporting secure AI adoption.
Requirements
- 5+ years in Security Engineering, Security Operations, Incident Response, or related cybersecurity roles.
- Hands-on AWS and GCP security experience.
- Experience with SIEM, EDR, detection engineering, and threat hunting.
- Strong knowledge of identity security, cloud IAM, and Zero Trust.
- Experience securing Kubernetes, Docker, and Infrastructure-as-Code.
- Knowledge of API Security and OWASP Top 10.
- Experience developing security metrics, KPIs, dashboards, and executive-level reporting.
- Familiarity with SOC 2 or similar frameworks.
- Excellent communication and cross-functional collaboration.
- Experience using AI/LLMs to improve security operations, investigations, detection engineering, or automation.
- Experience designing, implementing, and tuning IDS/IPS, DLP, or related security controls.
- Experience developing and maintaining security policies, standards, runbooks, and SOPs for technical and business stakeholders.
Skills
- AWS
- GCP
- SIEM
- EDR
- Detection Engineering
- Threat Hunting
- Identity Security
- Cloud IAM
- Zero Trust
- Kubernetes
- Docker
- Infrastructure-as-Code
- API Security
- OWASP Top 10
- Security Metrics
- KPIs
- Dashboards
- Executive Reporting
- SOC 2
- AI/LLMs
- IDS/IPS
- DLP
- Security Policies
- Security Standards
- Runbooks
- SOPs
Location
- San Francisco
Work Type
- On-site
- Hybrid
Experience Level
- 5+ years
Benefits
- Competitive salary and equity
- Full healthcare coverage; 100% premium coverage for employee and dependents
- Yearly new parent stipend
- Fertility coverage through Carrot
- Mental health support through Rula
- 12 weeks of paid parental leave
- Pet care support with a yearly employer-funded stipend
- Commuter benefits
- 401(k) company matching
- $300 health and wellness benefit quarterly
- Daily lunch provided in office
- Dinner provided when working late
- Regular team off-sites and company events
About the Company
- Edison Scientific builds and deploys AI scientist agents to accelerate science and the development of new medicines.
- We are an ambitious team run by scientists and engineers from leading institutions across biology, physics, chemistry, and AI.
Equal Opportunity
- Edison Scientific is an equal opportunity employer.
- We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected characteristic under applicable law.
