Skip to main content

Senior Security Engineer - Threat Detection

Samsara
Remote - US (not eligible in SF Bay, NYC, or DC Metro Areas)Updated 6h ago
Base salary
$158k–$239k
Published base salary range
Location
Remote - US (not eligible in SF Bay, NYC, or DC Metro Areas)
Remote eligibility
Employment
Full-time
Senior
Role family
Security
B2B SaaS
Role skills
Apply on samsara.com
Job actionsApply now
Job actionsApply now

About the job

Who we are

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations that depend on physical operations to harness IoT data for actionable insights. We help improve the safety, efficiency, and sustainability of the physical operations that power the global economy, including agriculture, construction, field services, transportation, and manufacturing.

About the role

Samsara Security is looking for a Senior Threat Detection Engineer. This is a hands-on engineering role: you will build and operate the signals, pipelines, and tooling that power how we discover threats against Samsara and our customers. The Threat Detection team owns the detection platform end to end—the data pipelines that feed it, the detection content that runs on it, the CI/CD that ships it, and the AI-assisted tooling that scales what a small team can cover. You will write detections and build the machinery that makes the next detection faster to develop, safer to deploy, and measurable in production. You will report to the Director of Threat Detection and Response and work closely with Security Operations, Application Security, and Enterprise Security.

In this role, you will

  • Build, deploy, and continuously improve MITRE ATT&CK–aligned detections across cloud, endpoint, identity, email, and application telemetry, with clear false-positive thresholds.
  • Own the full detection lifecycle—from hypothesis, data validation, and baselining through deployment, tuning, validation, and retirement.
  • Advance our detection-as-code platform through version control, peer review, automated testing, CI/CD, and improved pipeline reliability and observability.
  • Identify emerging threat surfaces and build integrations that strengthen data ingestion, enrichment, and coverage across internal and third-party systems.
  • Evaluate AI-powered security capabilities, including secure MCP integrations, threat hunting, anomaly detection, and response automation.
  • Turn threat intelligence into actionable detection and retrospective scanning.
  • Partner closely with Security Operations during investigations, incidents, tabletop exercises, detection maintenance, and code pairing.

Minimum requirements

  • 6+ years in security engineering, detection engineering, or a related technology discipline.
  • Strong Python and SQL skills, with experience analyzing large datasets to build and validate detections.
  • Hands-on experience with detection-as-code, Git-based workflows, automated testing, and CI/CD deployment.
  • Deep experience with modern SIEM platforms, including data onboarding, advanced queries, dashboards, and threat intelligence enrichment.
  • Working knowledge of AWS, Linux, containers, and EDR.
  • Proven ability to build systems from scratch, lead projects independently, learn new technologies quickly, and communicate technical concepts clearly through documentation, RFCs, and presentations.

Ideal candidate also has

  • Experience with data orchestration platforms such as Airflow or Databricks.
  • Applied experience with LLMs, agentic frameworks, and MCP integrations, including their security risks and failure modes.
  • Experience with behavioral analytics, anomaly detection, feature engineering, and model evaluation.
  • Familiarity with risk-based alerting, ChatOps, distributed alerting, and attack simulation.
  • Additional experience with Go, Terraform, malware analysis, digital forensics, or FedRAMP environments.

Compensation and benefits

Annual base salary range: $157,675—$238,500 USD. This role is also eligible for an initial RSU grant with no vesting cliff, and ongoing refresh opportunities tied to performance. Samsara offers a flexible, employee-led remote model, a professional development stipend, comprehensive health and parental leave plans, and more.

Application instructions

Apply via the Samsara careers page for this role. Samsara uses Tofu, a fraud detection tool, to validate the authenticity of applications. Official communication about your application will only come from emails ending in @samsara.com, @us-greenhouse-mail.io, or @mail3.guide.co.

Skills & tags

What you can verify before applying

Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.