← Back to results

Security Engineer - Detection & Response

Location
San Francisco, CA
Compensation
$180k–$225k/yr
Level
senior
Type
full time

Posted by employer 1 month ago

First seen on Joblaze 5 months ago

Last verified on the company career page 20 hours ago

Requirements

Experience
5+ years

Not disclosed in this posting: work arrangement, visa sponsorship.

Benefits

401k Match Flexible Vacation Equity/Stock Options Health Insurance Life Insurance

Joblaze summary

In this role, the Senior Security Engineer at LangChain will focus on securing AI agent workloads throughout the development lifecycle, collaborating closely with product teams to implement robust security measures. The position requires expertise in cloud and application security, particularly with tools and languages like Python, Go, and TypeScript. Ideal candidates will have over five years of experience in security engineering and a strong background in threat modeling and vulnerability management. LangChain's dynamic environment offers the opportunity to influence security practices as the company continues to expand its innovative AI platform.

Joblaze insights

  • Listed about 5 months ago — first seen on Joblaze April 14, 2026. Last confirmed on LangChain's careers page October 7, 2026.
  • Salary band is in line with the typical range for Security roles (median ~$170,000).
  • Starts above 55% of 101 comparable senior security roles in United States that list Python we track (median $170,400 across 42 companies). See Python salary trends
  • Python appears in 40.4% of 324 comparable senior security roles in United States; OPA appears in 0.6% of 324 comparable senior security roles in United States.

Quick facts

What's the salary range?
LangChain lists $180,000–$225,000 for this role.
How much experience is required?
At least 5 years of relevant experience for this Security Engineer - Detection & Response role.
What's the tech stack?
Joblaze extracted these technologies from the posting: AWS, GCP, Gatekeeper, Go, Helm, Kubernetes.
What seniority level is this role?
LangChain targets senior candidates for this position.
Is this full-time or contract?
Full-time for this Security Engineer - Detection & Response role at LangChain.

From the original posting

About Us

About the Team

The Security team ensures that while AI moves at breakneck speed, everyone driving the racecar is wearing a seatbelt. We secure LangChain's core platform and protect AI agents from emerging threats. We work across the stack so developers can confidently ship from prototype to production without compromising on safety or privacy.

About the role

You'll be the hands-on detection and response engineer responsible for how we see, stop, and learn from threats across LangChain's production platform, cloud infrastructure, and the services that host and execute agentic workloads. You'll partner closely with Product Security to turn threat models, vulnerabilities, and incidents into telemetry, detections, and durable defenses. Your primary focus is engineering: building detection, investigation, and response systems that scale the Security team's impact beyond what manual operations allow. We are looking for engineers who think like builders, not just operators — strong software skills are a must.

This role participates in an incident on-call rotation, but its core focus is engineering systems that reduce risk, speed up investigations, and make incidents less frequent and less costly.

Location/City: San Francisco or NYC

What you'll do

  • Own the detection lifecycle: Translate threat models, incidents, and attacker behavior into telemetry requirements and detections-as-code. Validate coverage, measure signal quality, tune false positives, and continuously test whether defenses work.

  • Build security monitoring and telemetry: Design the telemetry pipeline end-to-end across cloud (GCP/AWS), Kubernetes, and the LangSmith/LangGraph control plane. Instrument services, define the signals that matter, and make security data reliable and useful.

  • Engineer investigations and threat hunting: Build tools and workflows for proactive hunting, evidence collection, incident scoping, and containment. Turn investigation findings into new detections and lasting improvements.

  • Use agents to scale the team: Build reliable internal AI agents and automation that triage alerts, enrich findings, gather evidence, scope incidents, and accelerate routine security work. Design human-in-the-loop controls and evaluations so automation is safe, observable, and trustworthy.

  • Lead incident response and participate in on-call: Triage, scope, contain, and remediate security incidents, then drive postmortems that produce durable engineering changes.

  • Partner with Product Security: Turn product threat models and vulnerability findings into production monitoring, and feed real-world detection and incident learnings back into secure design.

What you'll bring

  • 5+ years in security engineering, with meaningful experience in detection engineering, security operations, or incident response — and the software skills to build your way out of repetitive work.

  • Strong software engineering in Python or Go (TypeScript a plus). You design maintainable systems and write production code, not just one-off scripts.

  • Cloud and Kubernetes detection depth: Experience with GCP or AWS logging, Kubernetes audit and runtime telemetry, workload identity, and turning raw signals into actionable detections.

  • Detection and adversary expertise: The ability to model realistic attacker behavior, hunt across complex systems, test detection coverage, and distinguish meaningful signal from noise.

  • Hands-on incident response: You've participated in on-call, led incidents, and written postmortems that changed how a team operates.

  • Experience building reliable automation or developer-facing systems: You can design APIs and workflows, instrument what you build, evaluate quality, and operate it in production.

  • A pragmatic product mindset: You can identify users and requirements, prioritize the highest-leverage problems, define success, and ship iteratively.

Nice to have

  • Experience building or operating AI agents for security workflows such as alert triage, investigation, evidence collection, or human-in-the-loop response.

  • Proficiency using AI tooling to accelerate security investigations and engineering work.

  • Understanding of AI threats, adversarial testing, and the security boundaries of LLM and agent workloads.

  • Exposure to SOC 2 or ISO 27001 monitoring and evidence automation.

  • Experience with infrastructure as code such as Terraform or Helm.

  • Experience securing both SaaS and self-hosted or air-gapped deployments.

    Annual salary range: $180,000- $240,000 USD

Standard company text repeated across LangChain's postings is omitted here.

Similar positions

LangChain
LangChain
LangChain
Developer Productivity
LangChain · San Francisco, CA
LangChain
LangChain