Senior Security Engineer - Threat Detection
Samsara · Remote - CA
About this role
**Senior Security Engineer — Threat Detection (Samsara)** ## Who we are Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud—helping organizations that depend on physical operations harness IoT data to deliver actionable insights and improve safety, efficiency, and sustainability. ## About the role Samsara Security is seeking a **Senior Threat Detection Engineer**. This is a hands-on role where you’ll **build and operate the signals, pipelines, and tooling** that help discover threats against Samsara and its customers. The Threat Detection team owns the detection platform end to end: **data pipelines, detection content, CI/CD, and AI-assisted tooling**. You’ll write detections and also build the “machinery” that makes the next detection **faster to develop, safer to deploy, and measurable in production**. **Reporting to:** Director of Threat Detection and Response **Location:** Open to candidates residing in the **US**, **except** the **San Francisco Bay Metro Area, NYC Metro Area, and Washington, D.C. Metro Area**. ## In this role, you will - Build, deploy, and continuously improve **MITRE ATT&CK-aligned detections** across cloud, endpoint, identity, email, and application telemetry (with clear false-positive thresholds). - Own the full detection lifecycle: **hypothesis → data validation/baselining → deployment → tuning/validation → retirement**. - Advance detection-as-code via **version control, peer review, automated testing, CI/CD**, and improved pipeline reliability/observability. - Identify emerging threat surfaces and build integrations to strengthen **data ingestion, enrichment, and coverage** across internal and third-party systems. - Evaluate AI-powered security capabilities, including **secure MCP integrations**, threat hunting, anomaly detection, and response automation. - Turn threat intelligence into **actionable detections** and **retrospective scanning**. - Partner with Security Operations during investigations, incidents, tabletop exercises, detection maintenance, and code pairing. - Champion Samsara’s cultural principles as the team scales globally. ## You should apply if - You want real-world impact across industries that power the global economy. - You’re an architect of your own career—comfortable taking ownership and growing rapidly. - You’re energized by digitizing large sectors with creative, ambitious ideas. - You want to be part of a high-caliber team that wins and supports each other. ## Minimum requirements - **6+ years** in security engineering, detection engineering, or related technology. - Strong **Python** and **SQL**, including analyzing large datasets to build/validate detections. - Hands-on experience with **detection-as-code**, Git-based workflows, automated testing, and **CI/CD**. - Deep experience with modern **SIEM** platforms (onboarding, advanced queries, dashboards, threat intel enrichment). - Working knowledge of **AWS, Linux, containers, and EDR**. - Proven ability to build from scratch, lead independently, and communicate clearly via documentation/RFCs/presentations. ## An ideal candidate also has - Experience with data orchestration platforms such as **Airflow** or **Databricks**. - Applied experience with **LLMs**, agentic frameworks, and **MCP integrations** (including security risks/failure modes). - Experience with **behavioral analytics**, anomaly detection, feature engineering, and model evaluation. - Familiarity with **risk-based alerting**, ChatOps, distrib
Listing freshness
CronJobs last confirmed this listing 15h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.