Security Operations Lead

Fireworks AI
San Mateo, United States
Workplace: RemoteFull timeUSD 180,000 - 210,000 annuallyFunction: Business OperationsExperience: 7+ yearsSkills: ["Incident response leadership","Detection engineering","Operationalizing processes","Automation","Cross-functional collaboration"]

Build and run the SecOps function for an AI infrastructure platform, partnering with IT and Security Engineering to roll out CrowdStrike for endpoint and cloud detection plus SIEM use cases. Own detection and response end-to-end—standing up playbooks from the SIRP, running incidents, and driving lessons learned into measurable improvements. Operationalize Incident.io SOAR workflows, build threat-intel into detections, and help scale toward 24x7 coverage.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Fireworks AI
Fireworks AI
1 day ago

Security Operations Lead

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Build and run the SecOps function for an AI infrastructure platform, partnering with IT and Security Engineering to roll out CrowdStrike for endpoint and cloud detection plus SIEM use cases. Own detection and response end-to-end—standing up playbooks from the SIRP, running incidents, and driving lessons learned into measurable improvements. Operationalize Incident.io SOAR workflows, build threat-intel into detections, and help scale toward 24x7 coverage.
Location: San Mateo, United States
Workplace: Remote
Employment Type: Full time
Job Function: Business Operations
Seniority: Mid level

Key Responsibilities

  • •Lead rollout, tuning, and ongoing operations of CrowdStrike across endpoint and cloud, coordinating deployment and coverage.
  • •Define and operate the detection and response program, building detection content and triage/escalation workflows and improving coverage using frameworks like MITRE ATT&CK.
  • •Own incident response end-to-end by operationalizing the SIRP into detailed playbooks, running incidents, leading post-incident reviews, and driving lessons learned.
  • •Stand up the SecOps workflow using SOAR automation with Incident.io for alerting, on-call, and incident orchestration, including triage and SLA/metrics for IT-submitted cases.
  • •Build and operationalize threat intelligence by tracking relevant threats to AI infrastructure and translating intel into detections, hardening, and tabletop scenarios.

Pay and Benefits

Salary: USD 180,000 - 210,000 annually
Equity and Bonus:Equity
Perks:Equity

Key Requirements

  • •7+ years in security operations, detection and response, and incident response (or closely related).
  • •Hands-on EDR experience with CrowdStrike strongly preferred, including detection engineering and tuning.
  • •Written, tested, and maintained detection content at scale with strong understanding of coverage vs. fidelity vs. analyst load.
  • •Demonstrated incident response leadership from triage through executive communication and post-incident reviews.
  • •Strong scripting/automation skills (Python, SOAR platforms) applied to detection, response, and reporting workflows.
Experience:7+ yearsAI infrastructureSaaSCloud security
Skills:Incident response leadershipDetection engineeringOperationalizing processesAutomationCross-functional collaboration
Certifications:GCIAGCIHGCFAOSCP
Tech Stack:CrowdStrikeEDRSIEMConsole AIIncident.ioSOARMITRE ATT&CKPythonPagerDutyAWSGCPAzureSplunkSumo LogicThreat intelligence

Company Brief

Fireworks AI
Develops AI-driven tools to generate and optimize visual marketing content for brands and creators, automating production of short-form videos and multimedia assets for social platforms to improve engagement and scale creative workflows.
Industry: SaaS
Website