Fireworks
Security Operations Lead
San Mateo · New York · United States, Remote
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.6M live jobs from 190,000+ employers in 200+ countries.
Tailor my resume for this job →Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Seniority
- Lead / management
- Stated salary
- $180,000 – $210,000 per year
- Country
- US
- Work mode
- On-site / unstated
- First seen by hirly
- 28 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
About Us:
Fireworks is the platform for specialized intelligence, enabling companies to build, train, and serve AI models tailored to their own data, workflows, and products. Founded by the team behind PyTorch and backed by AMD, Atreides, Benchmark Capital, Index Ventures, Lightspeed, NVIDIA, Sequoia Capital, and TCV, Fireworks powers production AI with hundreds of state-of-the-art open models across text, image, embedding, audio, and multimodal workloads. Today, Fireworks is a Series D company valued at $17.5 billion, bringing together an ambitious, collaborative team that's building the future of enterprise AI.
About the role
We're hiring our first Security Operations Lead to build and run the SecOps function at Fireworks AI. As we scale our AI infrastructure platform globally, we're investing in a modern detection and response capability anchored on CrowdStrike (EDR and SIEM, 365-day retention), Console AI for ticketing, and Incident.io for on-call and incident management. We have a Security Incident Response Plan (SIRP) in place that you'll build on, and you'll own the function end-to-end: standing up detection content, operationalizing our incident response playbooks, running threat intel into action, and building the operational muscle that keeps Fireworks resilient as we grow. This role sits within the Security team and will primarily support Corporate Security and own incident response broadly, while partnering closely with Security Engineering on infrastructure-related incidents — bridging both areas. This is an IC-to-manager role: you’ll start hands-on building and running the function, growing into a people leader as the team scales.
What you'll do
Lead the rollout, tuning, and ongoing operation of CrowdStrike across our endpoint and cloud environment and SIEM use cases, partnering with IT and Security Engineering on deployment and coverage
Define and operate our detection and response program: build detection content, establish triage and escalation workflows, and continuously measure and improve coverage against frameworks like MITRE ATT&CK
Own incident response end-to-end: operationalize our existing SIRP into detailed playbooks, run incidents, lead post-incident reviews, and drive lessons learned into program improvements
Stand up our security operations workflow, including SOAR automation with Incident.io for alerting, on-call, and incident orchestration, while also defining how incidents self-submitted through our IT ticketing system are triaged and handled as one-off cases — along with the SLAs and metrics the function runs on
Build and operationalize a threat intelligence capability: track threats relevant to AI infrastructure and our customer base, and translate intel into detections, hardening, and tabletop scenarios
Partner closely with Infrastructure, Corporate Security, and other cross-functional teams across the organization, engaging as needed to support incidents and shared initiatives
How the role will grow
As the function matures, you'll have the opportunity to:
Hire and build the SecOps team, growing from IC to people leader
Expand 24x7 coverage and adjacent capabilities like cloud detection engineering, insider threat, or red team / purple team operations
Shape the broader security strategy as a senior leader in the function
What we're looking for
7+ years in security operations, detection and response, incident response, or a closely related field
Hands-on experience with EDR platforms (CrowdStrike strongly preferred; SentinelOne, Defender, or similar also relevant) including detection engineering and tuning
Strong detection engineering background: you've written, tested, and maintained detection content at scale and understand the tradeoffs between coverage, fidelity, and analyst load
Demonstrated incident response leadership: you've run real incidents from triage through executive communication and post-incident review
Strong scripting and automation skills (Python, SOAR platforms) applied to detection, response, and reporting workflows
Working knowledge of cloud security operations (AWS, GCP, or Azure) and the unique telemetry, attack patterns, and response considerations of cloud-native environments
Experience building or significantly maturing a SecOps function, including tooling selection, process design, and metrics
Comfort operating in a build phase: you can write the playbook and run the playbook, and you know when to invest in process versus when to just get things done
Nice to have
Experience with SIEM detection engineering at scale (CrowdStrike Falcon LogScale/NG-SIEM, Splunk, Sumo Logic, Panther, or similar)
Experience with Incident.io , PagerDuty, or comparable incident management tooling
Threat intelligence experience, including operationalizing intel into detection and hardening outcomes
Prior experience at an AI, cloud infrastructure, or high-growth SaaS company
Certifications such as GCIA, GCIH, GCFA, OSCP, or similar
Why Fireworks?
Solve Hard Problems: Tackle challenges at the forefront of AI infrastructure, from low-latency inference to scalable model serving.
Build What’s Next: Work with bleeding-edge technology that impacts how businesses and developers harness AI globally.
Ownership & Impact: Join a fast-growing, passionate team where your work directly shapes the future of AI—no bureaucracy, just results.
Learn from the Best: Collaborate with world-class engineers and AI researchers who thrive on curiosity and innovation.
Fireworks AI is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all innovators.
Listed on hirly, a job board. hirly is not the employer: Fireworks is hiring for this role.
Similar jobs
- Cybersecurity Operations ManagerMethodisthealth · 5865 Shelby Oaks CircleFirst seen today
- AVP, Engineering Security Operations ManagerLplfinancial · 4 LocationsFirst seen today
- Sr. Manager of Security OperationsAmat · Santa Clara,CAFirst seen today
- Security Operations, Senior ManagerVerizon · 6 LocationsFirst seen today
- Senior Manager, Security OperationsVerizon · 6 LocationsFirst seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job