Snowflake Computing

Staff Security Engineer - Threat Detection

Snowflake Computing$150K — $180K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in Security Engineering roles, specifically in Threat Detection and Incident Response.
  • Proficient in programming languages like Python or Go, particularly in automated and AI-driven contexts.
  • Experience collaborating with security teams and stakeholders to foster partnerships and implement detection strategies.
  • Ability to analyze logging and observability requirements for effective threat detection and response.
  • Strong knowledge of cloud security, identity management, and data protection practices.
  • An automation-first mindset, familiar with CI/CD practices and the concept of 'detections as code'.
  • Team-oriented with a focus on collective success and humility.

Responsibilities

  • Develop and implement threat detection rules and AI-assisted detection methods following modern engineering practices.
  • Identify and mitigate gaps in the threat detection program using AI/ML methodologies to enhance signal-to-noise ratios.
  • Establish strong partnerships with stakeholders to provide self-service detection solutions supported by reusable components.
  • Continuously evaluate and enhance detection systems, focusing on quality metrics such as precision and response latency.
  • Experiment with new AI methodologies to improve detection efficacy and analyst productivity.

Benefits

  • Flexible work environment with opportunities for remote work.
  • Professional development opportunities and support for continued learning.
  • Collaborative team culture that emphasizes a zero-ego workspace.
Full Job Description
We are hiring a Staff Security Engineer, Threat Detection for our Security team. This is a fully remote role open to candidates across the United States. As Snowflake scales globally, we are investing heavily in AI-powered threat detection and response to protect our customers and our environment at cloud scale. This role helps enhance and extend the reach of Snowflake's Threat Detection Program, with AI and automation as core primitives in how we detect, triage, and respond to threats. You will combine deep security expertise with strong engineering skills to build, maintain, and evolve detections and the pipelines that support them, partnering with stakeholders across Security and Engineering to make informed, data-driven decisions grounded in threat models, proactive threat hunts, and exploration of logs and telemetry. AS A STAFF SECURITY ENGINEER, THREAT DETECTION AT SNOWFLAKE, YOU WILL: • Develop and deploy detections using modern engineering practices (testing and validation, CI/CD pipelines, detections as code, and a full detection development lifecycle), spanning both rules-based and AI-assisted detections. • Mature our threat detection program by analyzing coverage gaps and mitigating risks through detective controls, experimenting with AI/ML approaches where they improve signal-to-noise ratio or analyst efficiency. • Make data-driven recommendations for detective and preventative controls based on threat models, proactive threat hunts, and data science-oriented exploration of logs and telemetry. • Design and build automations and AI-driven workflows that strengthen our security posture and reduce mean time to detect and respond. • Build and maintain strong partnerships with stakeholders to deliver detection as a service, including self-service patterns, reusable components, and AI-enhanced detections that support their domains. • Continuously measure and improve detection quality across coverage, precision and recall, false positive rate, and latency. OUR IDEAL STAFF SECURITY ENGINEER WILL HAVE: • 8+ years of security engineering experience across one or more of threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience. • Strong coding ability in a high-level language such as Python or Go, with a track record of building software, data tooling, or automations, and a desire to apply those skills to AI/ML-powered detection and response. • Experience handling data programmatically (SQL, Python), ideally including large-scale log and telemetry datasets used for detection logic or analytics. • Experience writing production code, including unit tests, version control, and CI/CD integration. • Experience developing and operating agent-based or agentic workflows (for example, LangGraph or similar orchestration frameworks). • Hands-on experience with at least one major cloud provider (AWS, Azure, or GCP) and a solid understanding of its native logging, monitoring, and security services. • Familiarity with the risks that impact SaaS products and workstations, such as account compromise, data exfiltration, phishing, and supply chain attacks. • A risk-based approach that helps prioritize key security initiatives and judge when AI provides meaningful value over traditional rules and heuristics, paired with a humble, team-oriented mindset in a zero-ego environment. BONUS POINTS FOR THE FOLLOWING: • Computer Science degree or equivalent practical experience. • Experience applying GenAI and LLM-based approaches to security workflows, such as detection engineering, alert triage, enrichment, or summarization. • Experience with infrastructure as code (Terraform, CloudFormation) and/or detections-as-code frameworks. • Experience building and maintaining production software or platforms that process high-volume data streams (logs, metrics, traces) or power security analytics. • Experience deploying detections at global scale. • Experience with Snowflake or equivalent cloud data platforms, including building data pipelines or analytics that support security workloads, and interest in Snowflake Cortex AI or similar in-platform AI capabilities. For jobs located in the United States, please visit the job posting on the Snowflake Careers Site for salary and benefits information: careers.snowflake.com

About Snowflake Computing

Snowflake is a cloud-based data-warehousing company that was founded in 2012. The company provides a data platform that allows customers to store and analyze data using cloud-based infrastructure. Snowflake's platform is designed to be highly scalable and flexible, allowing customers to easily add or remove computing resources as needed. The company's customers include a wide range of businesses, from startups to Fortune 500 companies. Snowflake has received significant funding from investors and has been recognized as one of the fastest-growing companies in the United States.
Learn more about Snowflake Computing
Size
2,037 employees
Market Cap
$44.9 billion
Industry
Net Income
-$539.1 million
Founded
2012
Revenue
$592 million
NASDAQ

Similar Jobs

More Jobs at Snowflake Computing

More Information Technology Jobs

Find similar Staff Security Engineer - Threat Detection jobs: