×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Incident Response Manager

Job in San Francisco, San Francisco County, California, 94102, USA
Listing for: FluidStack
Full Time position
Listed on 2026-08-05
Job specializations:
  • IT/Tech
    Cybersecurity
Job Description & How to Apply Below

Fluidstack Job Opportunity

Fluidstack exists to make humanity more free. Technology gave people more time for the things they wanted to do, instead of things they had to do. Powerful AI will be the biggest lever for human choice we've ever built - but only if models are aligned with what humanity actually wants. Fluidstack is singularly focused on delivering 10 to 100s of GWs of compute faster than anyone else, rethinking every layer of the stack.

Speed and scale are our key differentiators. Come be a part of building civilization-scale infrastructure for AI.

We hire people who care deeply about this problem space. If that is you, please apply!

The Security Team

Examples of key problems the team is working on:

  • Securing the frontier of AI. The model weights training on our infrastructure are the most valuable and most targeted artifacts in technology, and we're standing up the compute to hold them faster than anyone ever has. A breach isn't a leak, it's the frontier walking out the door.
  • Build the entire security program from scratch. Most leaders inherit someone else's system and spend a career patching it. Here you own it end to end, bare metal to boardroom, as we scale across continents.
  • Your threat surface is measured in gigawatts. The customers running on our infrastructure are building the most consequential technology in human history, and being responsible for the physical and logical security of that work makes everything else feel small.
Role Scope
  • Lead incidents as a senior incident commander in the on-call rotation, and serve as the escalation backstop when a case rises above the responders on call.
  • Own the 24/7 coverage model, rotation discipline, and response SLAs for your US region, keeping the program humane and the bar high at the same time.
  • Build and develop a team of senior incident responders, setting the on-call expectations and quality bar they operate to.
  • Drive executive, legal, and customer communications during declared incidents, including regulated reporting and disclosure timelines.
  • Own the joint operating relationship with Physical Security and Data Center Operations for incidents that cross cyber, physical, and OT surfaces.
  • Run the post-incident review cadence and drive remediation to completion across detection, response, and infrastructure.
  • Hold the bar on the agentic triage layer, defining what the agent escalates and feeding incident learnings back to detection engineering and threat intelligence.
What We're Looking For

The below is a starting point. We always make space for exceptional people, so if you don't fit this role exactly, tell us where you would.

  • You've led material incidents end to end as a senior incident commander at organizations with sophisticated, well-resourced threat actors.
  • You've managed and grown a team of senior responders while staying in the on-call rotation yourself.
  • You've designed or run a 24/7 on-call program: coverage models, rotation discipline, acknowledgement and response SLAs, and escalation chains.
  • You move between technical containment and executive, legal, or customer-facing communications during a declared incident without losing the thread.
  • You've made disclosure-grade calls under regulatory and customer reporting clocks.
  • You've built operating relationships across security, infrastructure, and physical or facilities teams, and led incidents that crossed those boundaries.
  • You have well-founded opinions on what makes an on-call program humane and an incident response process effective, and you're ready to build one from a small senior core.
  • Incident response bridging cyber, physical, and OT or ICS surfaces. Experience at critical-infrastructure operators, data centers, or 24/7 high-availability environments. Standing up or scaling an IR team and on-call program from scratch. Operating under FedRAMP, SEC, or similar regulated incident-reporting regimes. Agent-augmented IR, including triage, investigation, or response automation.
Salary & Benefits
  • Competitive total compensation package (salary + equity)
  • Retirement or pension plan, in line with local norms
  • Health, dental, and vision insurance
  • Generous PTO policy, in line with local norms

Total compensation may also include equity in the form of stock options. We are committed to pay equity and transparency.

Fluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

You will receive a confirmation email once your application has successfully been accepted. If there is an error with your submission and you did not receive a confirmation email, please email careers with your resume/CV, the role you've applied for, and the date you submitted your…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary