{"schemaVersion":"jobsearcher.job.v1","id":"51895f0cfd8678727b9d9cee","url":"https://jobsearcher.com/jobs/51895f0cfd8678727b9d9cee","canonicalUrl":"https://jobsearcher.com/jobs/51895f0cfd8678727b9d9cee","title":"Incident Responder","description":"About Fluidstack\r\nAt Fluidstack, we build the compute, data centers, and power that will fuel artificial superintelligence. We supply GWs of compute capabilities to the world's biggest AI Labs at industry-defining speeds.\r\nOur team is small, fast, and obsessed with quality. We own outcomes end-to-end, challenge assumptions, and treat our customers' problems as our own. No task is beneath anyone here.\r\nThere are a few thousand people who will shape the trajectory of superintelligence. Come and be one of them.\r\nAbout the Role\r\nFluidstack operates the compute infrastructure powering frontier AI. The work running on it is among the most consequential being done today, and the adversaries interested in it are among the most sophisticated, persistent, and well-resourced anywhere. We are building Detection & Response Engineering from the ground up: engineering-led, agent-first, and built to scale across IT, OT, and physical surfaces. As the Staff Incident Responder, you are the most senior incident commander in the program. You define what material-incident response looks like at Fluidstack, set the runbook standard the rest of the IR function operates inside, and lead the room when those systems come under attack.\r\nWhat you'll do\r\nRun material incidents as incident commander, coordinating across detection, response, physical security, data center operations, legal, communications, and customers.\r\nBuild the IR program: runbook standards, severity definitions, materiality methodology, evidence contracts, and post-incident review cadence.\r\nDefine the agent-human contract for response: escalation criteria, evidence packages required from agents, and human verdict feedback into agent quality.\r\nDesign and operate the senior-IR on-call rotation (ack SLAs, escalation chain, fan-out logic) and remain an active senior IC inside it.\r\nAnalyze incident trends and patterns to surface systemic risks and recurring root causes, and turn the learnings into runbook, detection, or program improvements.\r\nDrive cross-functional follow-through after every significant incident, tracking remediation and systemic fixes to completion across detection, response, infrastructure, and other teams.\r\nDefine and track the IR program's KPIs and report on them to security and engineering leadership.\r\nSet the tabletop and exercise cadence for IR readiness, executive crisis-comms, and audit-readiness drills.\r\nCarry the external face of IR for regulatory and customer disclosure obligations, and audit responses.\r\nAbout You\r\nYou have run material incidents at companies with sophisticated threat models, as the most senior commander on the call.\r\nYou have made disclosure-grade calls under regulatory and customer reporting clocks.\r\nYou have written runbooks that other engineers followed under pressure, and rewritten them after they did not work.\r\nYou have built operational processes from the ground up in environments where structure did not previously exist.\r\nYou read the agent-first thesis as one of the most interesting design choices in incident response today.\r\nYou have well-found opinions on what makes a runbook actually used or an incident response process actually effective.\r\nYou move fluently between technical containment and executive, legal, or customer-facing conversations during a declared incident.\r\nYou see what is needed, scope it yourself, and run with it.\r\nStrong candidates may also have\r\nExperience running incidents that bridge cyber, physical, and OT or IC surfaces.\r\nExperience at critical-infrastructure operators, data centers, or industrial environments.\r\nExperience designing or operating agent-augmented incident response, including triage, investigation, or response automation.\r\nExperience tuning LLM-based IR systems against measured precision and recall.\r\nSalary & Benefits\r\nCompetitive total compensation package (salary + equity)\r\nRetirement or pension plan, in line with local norms\r\nHealth, dental, and vision insurance\r\nGenerous PTO policy, in line with local norms\r\nThe base salary range for this position is $250,000 - $350,000 per year, depending on experience, skills, qualifications, and location. This range represents our good faith estimate of the compensation for this role at the time of posting. Total compensation may also include equity in the form of stock options.\r\nWe are committed to pay equity and transparency.\r\nFluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.\r\nJ-18808-Ljbffr","company":"FluidStack","rawCompany":"fluidstack","city":"Millbrae","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-08T01:34:15.866Z","occupations":[{"code":"15-1221.00","title":"Computer and Information Research Scientists","slug":"computer-and-information-research-scientists"},{"code":"55-3015.00","title":"Command and Control Center Specialists","slug":"command-and-control-center-specialists"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Incident Responder","description":"About Fluidstack\r\nAt Fluidstack, we build the compute, data centers, and power that will fuel artificial superintelligence. We supply GWs of compute capabilities to the world's biggest AI Labs at industry-defining speeds.\r\nOur team is small, fast, and obsessed with quality. We own outcomes end-to-end, challenge assumptions, and treat our customers' problems as our own. No task is beneath anyone here.\r\nThere are a few thousand people who will shape the trajectory of superintelligence. Come and be one of them.\r\nAbout the Role\r\nFluidstack operates the compute infrastructure powering frontier AI. The work running on it is among the most consequential being done today, and the adversaries interested in it are among the most sophisticated, persistent, and well-resourced anywhere. We are building Detection & Response Engineering from the ground up: engineering-led, agent-first, and built to scale across IT, OT, and physical surfaces. As the Staff Incident Responder, you are the most senior incident commander in the program. You define what material-incident response looks like at Fluidstack, set the runbook standard the rest of the IR function operates inside, and lead the room when those systems come under attack.\r\nWhat you'll do\r\nRun material incidents as incident commander, coordinating across detection, response, physical security, data center operations, legal, communications, and customers.\r\nBuild the IR program: runbook standards, severity definitions, materiality methodology, evidence contracts, and post-incident review cadence.\r\nDefine the agent-human contract for response: escalation criteria, evidence packages required from agents, and human verdict feedback into agent quality.\r\nDesign and operate the senior-IR on-call rotation (ack SLAs, escalation chain, fan-out logic) and remain an active senior IC inside it.\r\nAnalyze incident trends and patterns to surface systemic risks and recurring root causes, and turn the learnings into runbook, detection, or program improvements.\r\nDrive cross-functional follow-through after every significant incident, tracking remediation and systemic fixes to completion across detection, response, infrastructure, and other teams.\r\nDefine and track the IR program's KPIs and report on them to security and engineering leadership.\r\nSet the tabletop and exercise cadence for IR readiness, executive crisis-comms, and audit-readiness drills.\r\nCarry the external face of IR for regulatory and customer disclosure obligations, and audit responses.\r\nAbout You\r\nYou have run material incidents at companies with sophisticated threat models, as the most senior commander on the call.\r\nYou have made disclosure-grade calls under regulatory and customer reporting clocks.\r\nYou have written runbooks that other engineers followed under pressure, and rewritten them after they did not work.\r\nYou have built operational processes from the ground up in environments where structure did not previously exist.\r\nYou read the agent-first thesis as one of the most interesting design choices in incident response today.\r\nYou have well-found opinions on what makes a runbook actually used or an incident response process actually effective.\r\nYou move fluently between technical containment and executive, legal, or customer-facing conversations during a declared incident.\r\nYou see what is needed, scope it yourself, and run with it.\r\nStrong candidates may also have\r\nExperience running incidents that bridge cyber, physical, and OT or IC surfaces.\r\nExperience at critical-infrastructure operators, data centers, or industrial environments.\r\nExperience designing or operating agent-augmented incident response, including triage, investigation, or response automation.\r\nExperience tuning LLM-based IR systems against measured precision and recall.\r\nSalary & Benefits\r\nCompetitive total compensation package (salary + equity)\r\nRetirement or pension plan, in line with local norms\r\nHealth, dental, and vision insurance\r\nGenerous PTO policy, in line with local norms\r\nThe base salary range for this position is $250,000 - $350,000 per year, depending on experience, skills, qualifications, and location. This range represents our good faith estimate of the compensation for this role at the time of posting. Total compensation may also include equity in the form of stock options.\r\nWe are committed to pay equity and transparency.\r\nFluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.\r\nJ-18808-Ljbffr","datePosted":"2026-08-08T01:34:15.866Z","dateModified":"2026-08-08T01:34:15.866Z","hiringOrganization":{"@type":"Organization","name":"FluidStack","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"51895f0cfd8678727b9d9cee"},"url":"https://jobsearcher.com/jobs/51895f0cfd8678727b9d9cee"}}