Experience securing AI/ML infrastructure, including model serving, vector databases, embedding pipelines, API gateways, and LLM-integrated application architectures
Experience building agentic incident response capabilities, including skills, agents, and pipelines
Understanding of current attacker TTPs, including emerging AI-specific techniques such as adversarial ML, agent manipulation, and LLM jailbreaking in enterprise contexts
Familiarity with CI/CD and secure release lifecycle patterns, with an emphasis on building security into AI feature pipelines
Preferred certifications: GCIA, GCIH, GCSA, GDAT, CISSP/GISP, or cloud certifications (AWS, Azure, GCP)
WHY JOIN OUR SECURITY INCIDENT RESPONSE TEAM AT SNOWFLAKE?
This is a chance to do incident response at the frontier of AI security, on products that thousands of enterprises rely on. You will work alongside strong AI and security engineering teams, shape how Snowflake responds to novel LLM and agentic threats, and build the tooling and playbooks that define response for AI-native systems. The work is high-impact and highly visible, with direct influence on the trust customers place in Snowflake's AI capabilities
The application window is expected to be open until September 11, 2026. This opportunity will remain posted based on business needs, which may be before or after the specified date
Every Snowflake employee is expected to follow the company’s confidentiality and security standards for handling sensitive data. Snowflake employees must abide by the company’s data security plan as an essential part of their duties. It is every employee's duty to keep customer information secure and confidential
Snowflake is growing fast, and we’re scaling our team to help enable and accelerate our growth. We are looking for people who share our values, challenge ordinary thinking, and push the pace of innovation while building a future for themselves and Snowflake
How do you want to make your impact?
For jobs located in the United States, please visit the job posting on the Snowflake Careers Site for salary and benefits information: careers.snowflake.com
5+ years of experience in information security, primarily in incident response, security engineering, or product/application security (preferred)
Direct experience serving as incident commander for product focused security incidents
Experience leading or actively building an application or security engineering program, with a clear point of view on securing AI/ML systems
Experience with threat modeling and security testing across AI attack surfaces, including prompt injection, indirect injection, model inversion, embedding extraction, and supply chain attacks on AI dependencies
Familiarity with the unique data governance and security challenges introduced by LLMs, RAG architectures, and agentic systems
Working knowledge of cloud-native environments (AWS, Azure, GCP) and the threat landscape specific to SaaS and AI platforms
SQL proficiency, plus experience building automation and tools with common programming languages (Python preferred)
Strong communication skills, with the ability to translate security risk into actionable guidance for product teams
Empathy for developer experience, helping AI engineers ship securely rather than slowing them down
Bachelor's degree in Computer Science or a related field, or equivalent experience