SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 180,000 - 240,000 / annual
LangChain is seeking a hands-on Security Engineer focused on Detection & Response to build and operate the systems that detect, investigate, and respond to threats across the LangChain platform, cloud infrastructure, and agentic workloads. This is a senior individual contributor role with core responsibility for engineering detection, investigation, and response systems that scale the security team's impact beyond manual operations.
You will own the full detection lifecycle: translating threat models, incidents, and attacker behavior into telemetry requirements and detections-as-code, validating coverage, measuring signal quality, and continuously testing whether defenses work. You'll design the telemetry pipeline end-to-end across GCP/AWS, Kubernetes, and the LangSmith/LangGraph control plane, instrumenting services and defining signals that matter.
Key responsibilities include engineering investigations and threat hunting tools for proactive hunting, evidence collection, incident scoping, and containment. You'll build reliable internal AI agents and automation to triage alerts, enrich findings, gather evidence, and accelerate routine security work, with human-in-the-loop controls ensuring safety and observability. You'll participate in incident response on-call rotation, triaging, scoping, containing, and remediating security incidents, then driving postmortems that produce durable engineering changes.
You'll partner closely with Product Security to turn threat models and vulnerability findings into production monitoring, feeding real-world detection and incident learnings back into secure design.
Required: 5+ years in security engineering with meaningful experience in detection engineering, security operations, or incident response. Strong software engineering skills in Python or Go (TypeScript a plus), with ability to design maintainable systems and write production code. Cloud and Kubernetes detection depth including GCP/AWS logging, Kubernetes audit and runtime telemetry, and workload identity. Hands-on incident response experience with on-call participation and postmortem leadership. Experience building reliable automation or developer-facing systems with APIs, workflows, instrumentation, and production operation. Pragmatic product mindset to identify users, prioritize high-leverage problems, and ship iteratively.
Nice to have: Experience building or operating AI agents for security workflows; proficiency with AI tooling for security investigations; understanding of AI threats and LLM/agent security boundaries; SOC 2 or ISO 27001 monitoring experience; infrastructure-as-code tools like Terraform or Helm; experience securing both SaaS and self-hosted/air-gapped deployments.
About LangChain
AI / Data / Infrastructure — developer platform and framework for building LLM applications and agents.