Fireworks AI Logo

Fireworks AI

Security Operations Lead

Posted 7 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in United States
180K-210K Annually
Senior level
In-Office or Remote
Hiring Remotely in United States
180K-210K Annually
Senior level
Lead Fireworks AI’s security operations function, including CrowdStrike deployment, detection engineering, incident response, SOAR workflows, threat intelligence, playbooks, metrics, and cross-functional incident coordination. Build and tune detections, operationalize response processes, run post-incident reviews, and improve coverage against MITRE ATT&CK. The role begins as a hands-on individual contributor and may grow into team leadership, including hiring and expanding 24/7 coverage and capabilities such as cloud detection engineering and red/purple team operations.
The summary above was generated by AI
About Us:

Fireworks is the platform for specialized intelligence, enabling companies to build, train, and serve AI models tailored to their own data, workflows, and products. Founded by the team behind PyTorch and backed by AMD, Atreides, Benchmark Capital, Index Ventures, Lightspeed, NVIDIA, Sequoia Capital, and TCV, Fireworks powers production AI with hundreds of state-of-the-art open models across text, image, embedding, audio, and multimodal workloads. Today, Fireworks is a Series D company valued at $17.5 billion, bringing together an ambitious, collaborative team that's building the future of enterprise AI.

About the role

We're hiring our first Security Operations Lead to build and run the SecOps function at Fireworks AI. As we scale our AI infrastructure platform globally, we're investing in a modern detection and response capability anchored on CrowdStrike (EDR and SIEM, 365-day retention), Console AI for ticketing, and Incident.io for on-call and incident management. We have a Security Incident Response Plan (SIRP) in place that you'll build on, and you'll own the function end-to-end: standing up detection content, operationalizing our incident response playbooks, running threat intel into action, and building the operational muscle that keeps Fireworks resilient as we grow. This role sits within the Security team and will primarily support Corporate Security and own incident response broadly, while partnering closely with Security Engineering on infrastructure-related incidents — bridging both areas. This is an IC-to-manager role: you’ll start hands-on building and running the function, growing into a people leader as the team scales.

What you'll do

  • Lead the rollout, tuning, and ongoing operation of CrowdStrike across our endpoint and cloud environment and SIEM use cases, partnering with IT and Security Engineering on deployment and coverage

  • Define and operate our detection and response program: build detection content, establish triage and escalation workflows, and continuously measure and improve coverage against frameworks like MITRE ATT&CK

  • Own incident response end-to-end: operationalize our existing SIRP into detailed playbooks, run incidents, lead post-incident reviews, and drive lessons learned into program improvements

  • Stand up our security operations workflow, including SOAR automation with Incident.io for alerting, on-call, and incident orchestration, while also defining how incidents self-submitted through our IT ticketing system are triaged and handled as one-off cases — along with the SLAs and metrics the function runs on

  • Build and operationalize a threat intelligence capability: track threats relevant to AI infrastructure and our customer base, and translate intel into detections, hardening, and tabletop scenarios

  • Partner closely with Infrastructure, Corporate Security, and other cross-functional teams across the organization, engaging as needed to support incidents and shared initiatives

How the role will grow

As the function matures, you'll have the opportunity to:

  • Hire and build the SecOps team, growing from IC to people leader

  • Expand 24x7 coverage and adjacent capabilities like cloud detection engineering, insider threat, or red team / purple team operations

  • Shape the broader security strategy as a senior leader in the function

What we're looking for

  • 7+ years in security operations, detection and response, incident response, or a closely related field

  • Hands-on experience with EDR platforms (CrowdStrike strongly preferred; SentinelOne, Defender, or similar also relevant) including detection engineering and tuning

  • Strong detection engineering background: you've written, tested, and maintained detection content at scale and understand the tradeoffs between coverage, fidelity, and analyst load

  • Demonstrated incident response leadership: you've run real incidents from triage through executive communication and post-incident review

  • Strong scripting and automation skills (Python, SOAR platforms) applied to detection, response, and reporting workflows

  • Working knowledge of cloud security operations (AWS, GCP, or Azure) and the unique telemetry, attack patterns, and response considerations of cloud-native environments

  • Experience building or significantly maturing a SecOps function, including tooling selection, process design, and metrics

  • Comfort operating in a build phase: you can write the playbook and run the playbook, and you know when to invest in process versus when to just get things done

Nice to have

  • Experience with SIEM detection engineering at scale (CrowdStrike Falcon LogScale/NG-SIEM, Splunk, Sumo Logic, Panther, or similar)

  • Experience with Incident.io, PagerDuty, or comparable incident management tooling

  • Threat intelligence experience, including operationalizing intel into detection and hardening outcomes

  • Prior experience at an AI, cloud infrastructure, or high-growth SaaS company

  • Certifications such as GCIA, GCIH, GCFA, OSCP, or similar

Why Fireworks?
  • Solve Hard Problems: Tackle challenges at the forefront of AI infrastructure, from low-latency inference to scalable model serving.

  • Build What’s Next: Work with bleeding-edge technology that impacts how businesses and developers harness AI globally.

  • Ownership & Impact: Join a fast-growing, passionate team where your work directly shapes the future of AI—no bureaucracy, just results.

  • Learn from the Best: Collaborate with world-class engineers and AI researchers who thrive on curiosity and innovation.

Fireworks AI is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all innovators.

Similar Jobs

16 Days Ago
Remote
United States
134K-211K Annually
Senior level
134K-211K Annually
Senior level
Healthtech
Lead and build Swords Security Operations Center: architect SIEM, develop detection-as-code, run incident response, mentor SOC engineers, design SOAR/AI automation, run threat hunting and metrics to reduce MTTD/MTTR and scale defenses across cloud environments.
Top Skills: AWSBashCis ControlsEdrElasticGCPGoGoogle ChronicleIso 27001LlmMicrosoft SentinelMitre Att&CkMlNist 800-61PythonSIEMSoarSplunkXdr
17 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
98K-148K Annually
Mid level
98K-148K Annually
Mid level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Manage enterprise customer relationships by developing multi-year success plans, leading executive business reviews, conducting workshops, driving adoption and expansion, and translating Samsara’s IoT platform capabilities into measurable safety, efficiency, and sustainability outcomes. Collaborate cross-functionally with Sales, Support, Sales Engineering, Product, and leadership while supporting complex enterprise accounts and multi-product strategies. The remote role requires up to 25% travel.
Top Skills: Enterprise SaasInternet Of Things (Iot)
17 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
88K-118K Annually
Mid level
88K-118K Annually
Mid level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Manage enterprise customers after implementation by developing joint success plans, conducting executive business reviews, leading operational workshops, recommending workflow improvements, and driving value from Samsara’s IoT platform. Partner cross-functionally with Sales, Support, Sales Engineering, and Product, while mentoring Customer Success and Support teams. The role requires strong stakeholder communication, technical product knowledge, problem-solving, and up to 25% travel.
Top Skills: Internet Of Things (Iot)SaaS

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account