368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$86k – $193k per year (Estimated)
Location
Remote/Hybrid (Seattle, United States)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Palantir Technologies is an American software company founded in 2003 that builds platforms for integrating, analysing and acting on large and fragmented datasets. Its Gotham platform serves defence, intelligence and law enforcement customers, Foundry brings the same data-operating model to commercial industries such as manufacturing, healthcare and energy, and the Artificial Intelligence Platform layers large language models over both. Headquartered in Denver, Colorado and listed on the New York Stock Exchange since 2020, the company is known for deploying forward engineers directly inside customer organisations.

The Role

As an Insider Threat Detection Engineer, you are responsible for protecting Palantir's people, data, and most sensitive assets across the globe. Your technical expertise is matched by your integrity and genuine passion for security. You work well on a team, are highly motivated, and thrive on solving problems and taking on new challenges.

Your team serves as a critical line of defense, responsible for the 24/7 prevention, detection, and investigation of security events and active threats across Palantir's environment. This role focuses on all aspects of Detection and Response with a strong emphasis on identifying and mitigating insider risks. Your work will directly impact the success of Palantir's mission by making it difficult for adversaries - both external and internal - to compromise our global network.

Core Responsibilities

  • Engineer and automate end-to-end detection and investigation workflows, continuously improving Detection and Response infrastructure
  • Develop alerting and detection strategies to identify malicious or anomalous behavior, including new and novel defensive techniques that adapt to evolving adversary tactics and tradecraft
  • Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.
  • Investigate security events and active attacks across the enterprise, uncovering sophisticated threats and identifying patterns of behavior that indicate insider risk
  • Influence and inform security controls designed to safeguard Palantir's most critical assets
  • Partner closely with other members of the Information Security team to lead changes in the company's network defense posture.

What We Value

  • Broad exposure to multiple security subject areas, including a strong background in forensics or threat intelligence
  • Deep exposure in Incident Response or Detection Engineering
  • Desire to further the information security community through substantive contributions (e.g. conference talks, blog posts, public tool development, etc.)
  • Comfort in operating autonomously and engaging across business levels to advise on security outcomes.

What We Require

  • Extensive security experience (3+ years) in at least one major platform (e.g. AWS, Azure, Windows, OS X, Linux, etc.)
  • Proficiency in Python (preferred), PowerShell, or similar
  • Familiarity with endpoint telemetry and log sources from at least one major operating system
  • Experience with common SIEM/SOAR platforms and proficiency writing queries against security event data
  • Active TS/SCI security clearance or eligibility to obtain a security clearance.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Seattle
$80k – $175k per year • In office • Full-Time • Toronto
Python
AI/ML
AWS Bedrock
Claude
Copilot
LLM
Prompt Engineering
RAG
Context Engineering
AI Agents
DevOps
AWS
CI/CD
Splunk
GitHub
Apply
$79k – $159k per year (Estimated) • In office • Full-Time • 6+ years exp • Lincoln
C#
C#
.NET
DevOps
AWS
Azure
CI/CD
Docker
Dynatrace
GCP
GitHub
GitHub Actions
Grafana
Jenkins
Kubernetes
Splunk
QA
Cypress
JMeter
k6
Pact
Playwright
Postman
Rest-Assured
Selenium
Supertest
WebDriverIO
Apply
$117k – $258k per year (Estimated) • Equity • Remote • Full-Time • United States
C++
Java
Python
Cybersecurity
Crowdstrike
Apply
$220k – $350k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York • Princeton
AI/ML
AI Agents
LLM Guardrails
Model Context Protocol
DevOps
Azure
Azure DevOps
CI/CD
GitHub
Platform Engineering
Design
Figma
Management
Jira
QA
Playwright
Apply
$70k – $150k per year • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Toronto
MATLAB
Python
SQL
Analytics
Tableau
Apply
$70k – $212k per year (Estimated) • In office • Full-Time • Amsterdam
C++
JavaScript
Python
TypeScript
Apply
$30k – $106k per year (Estimated) • In office • Full-Time • 1+ year exp • Stockholm
C++
JavaScript
Python
TypeScript
Apply
$45k – $102k per year (Estimated) • In office • Full-Time • Vilnius
C++
JavaScript
Python
TypeScript
Apply
In office • Abu Dhabi
C++
JavaScript
Python
TypeScript
Apply
$147k – $264k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • New York
C++
Go
Java
DevOps
AWS
Azure
Docker
Kubernetes
Self-Healing
Terraform
Apply
$180k – $225k per year • Equity • In office • Full-Time • 4+ years exp • Bachelor's Degree • Seattle
C#
Go
Java
Kotlin
TypeScript
JavaScript
AI/ML
Claude
Claude Code
OpenAI Codex
Frontend
React.js
DevOps
AWS
AWS Step Functions
Apply
$172k – $314k per year (Estimated) • In office • 8+ years exp • Bachelor's Degree • Seattle
Python
SQL
Python
pySpark
Databases
Databricks
Snowflake
AI/ML
Spark
DevOps
AWS
Apply
$191k – $297k per year • In office • Full-Time • 12+ years exp • Bachelor's Degree • Seattle
AI/ML
AI Agents
DevOps
AWS
Azure
CI/CD
GCP
IAM
Platform Engineering
Cybersecurity
Least Privilege
Microsoft Entra ID
PCI DSS
Threat Modeling
Zero Trust
Apply
$144k – $180k per year • Equity • Remote/Hybrid • Full-Time • 6+ years exp • Seattle
Java
Python
Scala
SQL
Databases
Amazon Redshift
Apache Kafka
DynamoDB
Snowflake
AI/ML
Feature Store
Spark
DevOps
Amazon Kinesis
Amazon S3
AWS
Apply
$70k – $206k per year • In office • Full-Time • 12+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
AI/ML
AI Agents
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.