SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 202,725 - 238,500 / annual
Samsara (NYSE: IOT) is the pioneer of the Connected Operations Cloud, a platform enabling organizations to harness IoT data for actionable insights across physical operations including agriculture, construction, field services, transportation, and manufacturing.
You will join the Threat Detection team as a Senior Threat Detection Engineer, building and operating the signals, pipelines, and tooling that power threat discovery against Samsara and its customers. This is a hands-on engineering role where you will own the detection platform end-to-end: the data pipelines feeding it, the detection content running on it, the CI/CD shipping it, and AI-assisted tooling that scales team coverage.
Key responsibilities include:
- Build, deploy, and continuously improve MITRE ATT&CK–aligned detections across cloud, endpoint, identity, email, and application telemetry with clear false-positive thresholds
- Own the full detection lifecycle from hypothesis and data validation through deployment, tuning, validation, and retirement
- Advance the detection-as-code platform through version control, peer review, automated testing, CI/CD, and improved pipeline reliability and observability
- Identify emerging threat surfaces and build integrations strengthening data ingestion, enrichment, and coverage across internal and third-party systems
- Evaluate AI-powered security capabilities including secure MCP integrations, threat hunting, anomaly detection, and response automation
- Turn threat intelligence into actionable detection and retrospective scanning
- Partner closely with Security Operations during investigations, incidents, table top exercises, detection maintenance, and code pairing
- Champion Samsara's cultural principles as the company scales globally
You will report to the Director of Threat Detection and Response and work closely with Security Operations, Application Security, Enterprise Security, and engineering teams across the company. You should be someone who takes projects from idea to proof-of-concept to production, comfortable being the first person to build something, and genuinely interested in what AI can and cannot do for detection engineering—including where it introduces risk.
Note: This role is open to candidates residing in the US except the San Francisco Bay Metro Area, NYC Metro Area, and Washington, D.C. Metro Area.
REQUIREMENTS:
Minimum:
- 6+ years in security engineering, detection engineering, or a related technology discipline
- Strong Python and SQL skills, with experience analyzing large datasets to build and validate detections
- Hands-on experience with detection-as-code, Git-based workflows, automated testing, and CI/CD deployment
- Deep experience with modern SIEM platforms, including data onboarding, advanced queries, dashboards, and threat intelligence enrichment
- Working knowledge of AWS, Linux, containers, and EDR
- Proven ability to build systems from scratch, lead projects independently, learn new technologies quickly, and communicate technical concepts clearly through documentation, RFCs, and presentations
Ideal to have:
- Experience with data orchestration platforms such as Airflow or Databricks
- Applied experience with LLMs, agentic frameworks, and MCP integrations, including their security risks and failure modes
- Experience with behavioral analytics, anomaly detection, feature engineering, and model evaluation
- Familiarity with risk-based alerting, ChatOps, distributed alerting, and attack simulation
- Additional experience with Go, Terraform, malware analysis, digital forensics, or FedRAMP environments