Skip to main content

LangChain

Security Engineer - Detection & Response

San Francisco, CA$180k–$240kfulltimemidAdded today

About this role

LangChain is seeking a Security Engineer for Detection & Response to build and maintain threat detection systems across their AI agent platform and cloud infrastructure. You'll design telemetry pipelines, create detections-as-code, conduct threat hunting, and develop AI-powered automation to scale security operations while participating in incident response on-call rotation.

What you'll do

  • Translate threat models and attacker behavior into telemetry requirements and detections-as-code with validation and testing
  • Design end-to-end security monitoring pipelines across GCP/AWS, Kubernetes, and LangSmith control plane services
  • Build tools and workflows for proactive threat hunting, evidence collection, incident scoping, and containment
  • Develop reliable internal AI agents and automation for alert triage, finding enrichment, and incident acceleration with human-in-the-loop controls
  • Lead incident response activities, triage alerts, scope threats, contain breaches, and drive postmortems for durable fixes
  • Partner with Product Security to operationalize threat models and feed detection learnings into secure design

What they're looking for

  • Security engineering and detection engineering (5+ years)
  • Python or Go software development (TypeScript preferred)
  • GCP or AWS logging, cloud security tooling, and infrastructure
  • Kubernetes audit logs, runtime telemetry, and workload identity
  • Threat modeling and adversary behavior analysis
  • Incident response and postmortem-driven improvement
  • Security data pipelines and telemetry design
  • AI/agent-based automation and observability
Apply with Autofill

Opens the application — the Jobs AI extension fills it for you. Set up autofill

Opens the official application on the employer’s site. No login required.

LangChain

LangChain builds platforms and frameworks for developing, deploying, and observing production AI agents at enterprise scale, including LangSmith for AI observability and evaluation. The company is hiring Deployed Engineers to work directly with enterprise customers on agent implementation and operations, as well as Fullstack Engineers to build features across its platform stack.

View all jobs at LangChain

Likely interview questions

  • Walk us through how you've translated a threat model into production detections—what signals did you instrument, and how did you validate coverage?
  • Describe your experience building telemetry pipelines in cloud environments; what challenges did you face with log volume, latency, or signal quality, and how did you address them?