Braintrust
AI

Internal Threat Detection Engineer **THIS IS A W2 POSITION WITH BENEFITS** [Remote]

Braintrust · CA San Francisco, California, United States · $58k - $90k

Actively hiring Posted almost 4 years ago



  • JOB TYPE: Freelance, Contract Position / W2 (no agencies/C2C - see notes below)


  • Location: United States only - Remote - (Time Zone: PST/CIST | Partial overlap)


  • HOURLY RANGE: Our client is looking to pay $140 – $150/hr


  • ESTIMATED DURATION: 40hr/week


THE OPPORTUNITY




Requirements





  • Identify gaps in our infrastructure, and work with business partners to gain visibility through logging and detection.

  • Use your coding, data analytics and investigation skills to hunt, detect and respond to insider threats.

  • Write detection to detect data abuse and data exfiltration at scale.

  • Build automation and detection models to support identification of anomalous activity and response activities to mitigate insider threats at scale.

  • Hunt for insider threats in our corporate and production environments to proactively identify anomalous activity.

  • Work side by side with our engineering teams to build advanced detection solutions to help keep systems and information safe, and partner closely with our Human Resources and Legal teams to carry out complex investigations.

  • Identify and consult on the design of countermeasures to mitigate insider threats in our environment.

  • Partner with stakeholders to contribute to Security Awareness messaging and Training.





 

What you’ll be working on





  • 5+ years of hands-on in-depth knowledge and technical experience in security operations including detection engineering, threat hunting, incident response, digital forensics, and/or threat intelligence.

  • Bachelor's degree in a related technical field or equivalent practical experience.

  • Exposure to data science and analytics solutions applicable to the insider threat detection space.

  • Experience with Insider Threat technologies (SIEMs, Data Loss Prevention solutions, host forensic solutions).

  • Knowledge and familiarity of the Cyber Kill Chain Framework and MITRE ATT&CK Framework and how these apply to the insider threat landscape.

  • Experience automating security detection and response.

  • Experience in AWS services (EC2, S3, Lambda, RDS) preferred

  • We are not focused on specific tools but we often use Python, AWS, SQL, and more.

  • Self-motivated and creative problem-solver able to work independently with minimal guidance.

  • Ability to work calmly and collaboratively in critical high-stress situations with expediency.  

  • Outstanding organizational, prioritization, and multitasking skills.










 













Apply Now!









#PL-BT #LI-BT

Tags & focus areas

Used for matching and alerts on DevFound
Remote Dev
Common Questions

Frequently asked questions

Quick answers about how DevFound's AI matching, resumes, and referrals work.

DevFound's AI Copilot ingests your profile, goals, and live job data to deliver curated matches in seconds. Every match includes a resume variant, suggested referrals, and interview prep so you can act immediately. The more feedback you provide, the sharper the Copilot becomes.

AI-led job searches shrink the hours spent sifting through boards and formatting resumes. DevFound pairs automation with your personal outreach, so you reserve energy for interviews and negotiation. Traditional networking still matters, but AI gives you a lift before you even send a message.

Modern AI roles expect comfort with production-grade code, data fluency, and practical ML tooling. The strongest candidates pair deep technical chops with storytelling—translating model impact to product, GTM, and exec partners. Continuous learning keeps you ahead as stacks evolve.

DevFound rewards active seekers. Keep your profile fresh, respond to match quality prompts, and enable alerts so you never miss a role. The AI prioritizes companies and teams that align with your feedback, accelerating both introductions and interview invites.

High-density tech hubs continue to host the deepest AI talent pools, yet distributed teams are catching up fast. Use DevFound filters to hone in on onsite, hybrid, or fully remote roles and watch openings expand across time zones.

DevFound aggregates thousands of remote AI openings and flags the nuances—core hours, async culture, and visa needs—up front. The Copilot also recommends how to position your distributed work experience so hiring managers know you can thrive on a remote team.