Security engineer, detection and response (UK)

WRITER

2h ago 0 views 0 applications
Full-time Hybrid
London, UK
Competitive
Full-time
Security Engineer

Job Description

Staff Detection & Response Engineer - Pioneer AI Security

About WRITER: Orchestrating Superintelligence
WRITER is at the forefront of expanding human capacity through superintelligence, empowering the world's leading enterprises to orchestrate AI-powered work. We're building powerful, trustworthy AI that unites IT and business teams, unlocking enterprise-wide transformation. With our end-to-end platform, hundreds of global companies including Mars, Marriott, Uber, and Vanguard are leveraging enterprise-grade LLMs and their proprietary data to build and deploy sophisticated AI agents.
Valued at $1.9B and backed by industry-leading investors like Premji Invest, Radical Ventures, and ICONIQ Growth, WRITER is rapidly cementing its position as the leader in enterprise generative AI. Founded in 2020 with hubs in San Francisco, New York City, Seattle, Austin, Chicago, and London, our team thrives on big ideas and swift execution. We're seeking smart, hardworking builders and scalers to join us in creating a better future of work with AI.

The Opportunity: Defend the Future of AI
Step into the vanguard of AI security as a Staff Detection and Response Engineer at WRITER. This isn't just traditional security work; you’ll be on the front lines, protecting the revolutionary AI infrastructure that’s reshaping industries globally. You will architect and deploy cutting-edge detection systems to identify novel attacks targeting our AI platform, critical training data, and model deployments. Crucially, you'll create autonomous response capabilities that scale with our explosive growth, tackling threats against cutting-edge AI/AGI systems that evolve at the speed of innovation.
This role demands a unique blend of hands-on security engineering prowess and strategic foresight to anticipate and neutralize threats that don't yet exist in textbooks. You will be the operational backbone of our security function, translating raw threat intelligence into real-time detections, orchestrating incident response across diverse teams, and relentlessly hunting for sophisticated attacks across GPU clusters and distributed training environments. If you're driven by the challenge of securing systems fundamentally different from anything you've protected before, this is your chance to define what AI security engineering looks like at an enterprise scale.
You’ll collaborate closely with our AI Security Research team, Cloud Infrastructure, Software Security Engineering, and AI researchers to forge a defense-in-depth strategy for one of the industry's most valuable AI platforms. The threats are real, the stakes are exceptionally high, and the problems are intellectually fascinating. This role can be based in San Francisco, reporting directly to our Head of Security Operations.

Your Mission: Key Responsibilities

Pioneer AI-Specific Detections: Design and implement advanced detection strategies to identify novel AI-specific threats, including prompt injection, model extraction, data poisoning, adversarial examples, and unauthorized access to training datasets or model weights across our distributed infrastructure.
Automate Autonomous Defense: Build automated response playbooks and orchestration workflows that contain threats without human intervention, creating self-healing security systems that reduce mean time to response from hours to minutes, and automatically remediate compromised inference endpoints.
Lead High-Stakes Incident Response: Take the lead in security incident response coordination across all teams (Cloud, AppSec, Enterprise, AI Security) when AI infrastructure or models are compromised. Conduct deep forensic investigations on training pipeline attacks and model manipulation attempts, and draft clear, concise incident communications for engineering and executive leadership.
Proactive Threat Hunting: Hunt proactively for sophisticated threats across GPU clusters and training infrastructure by analyzing model outputs for signs of compromise, reproducing AI-specific vulnerabilities from security research, and identifying visibility gaps in distributed training environments before adversaries exploit them.
Engineer Detection-as-Code: Build robust detection-as-code frameworks with version control and automated deployment. Onboard critical telemetry from AI training infrastructure and inference endpoints, and create actionable dashboards that track model security metrics, GPU utilization patterns, and access to sensitive research data.
Cross-Functional Security Partner: Collaborate cross-functionally as the operational security partner for all teams – translating AI Security's threat research into production detections, monitoring Cloud Infrastructure's GPU clusters for threats, detecting customer-impacting incidents for Software Security Engineering, and enabling responsible AI development through strong security guardrails.
Maintain Vigilance: Participate in a 24/7 on-call rotation for critical AI security incidents, responding to real-time threats targeting our platform while continuously improving detection coverage and automation capabilities as our AI systems evolve.

What You'll Bring: Essential Qualifications

Experienced Defender: 3-5+ years in security operations, detection engineering, or incident response with a proven track record of identifying and stopping sophisticated attacks in production environments.
AI/ML Security Specialization: Crucially, 3+ years specifically securing AI/ML infrastructure, high-performance computing environments, or other complex distributed systems at scale.
Programming Prowess: Strong programming skills in Python, KQL, SPL, or similar languages, enabling you to build custom detection logic, automate response workflows, and create tools that operationalize security across cloud-native and distributed computing environments.
Detection & Forensics Mastery: Extensive experience with SIEM platforms, advanced detection technologies, and forensic investigation techniques. Demonstrated ability to build detections for novel attack techniques that lack established patterns and to conduct forensics in complex, distributed environments.
Proactive & Self-Directed: A self-directed execution mindset with a track record of securing high-value intellectual property, automating incident response in complex environments, and identifying critical security gaps through proactive threat hunting before they escalate into incidents.
Values Alignment: Deep alignment with WRITER's core values – you naturally Connect across security, infrastructure, and AI research teams to build comprehensive defenses; you Challenge assumptions about what's possible in AI security engineering; and you Own the protection of our AI platform with unwavering accountability and a commitment to staying ahead of evolving threats.

Perks & Benefits (UK Full-Time Employees)

Generous PTO, plus company holidays
Comprehensive medical and dental insurance
Paid parental leave for all parents (16 weeks)
Fertility and family planning support
Early-detection cancer testing through Galleri
Competitive pension scheme and company contribution
Annual work-life stipends for:

Wellness stipend for gym, massage/chiropractor, personal training, etc.
Learning and development stipend

Company-wide off-sites and team off-sites
Competitive compensation and company stock options