Fluidstack Logo

Fluidstack

Manager, Incident Response

Posted Yesterday
Be an Early Applicant
In-Office
San Francisco, CA, USA
300K-400K Annually
Senior level
In-Office
San Francisco, CA, USA
300K-400K Annually
Senior level
Lead and command major security incidents, own 24/7 on-call coverage and SLAs, build and manage a senior incident response team, coordinate executive/legal/customer communications, integrate cyber, physical, and OT/data center response, run post-incident reviews and remediation, and define agentic triage and feedback to detection engineering and threat intelligence.
The summary above was generated by AI
About Fluidstack

We exist to make humanity more free. For most of human history, you farmed or you starved. Technology gave people more time for the things they wanted to do, instead of things they had to do. Powerful AI will be the biggest lever for human choice we've ever built - but only if models are aligned with what humanity actually wants. There are groups building AI who don't share these goals. Whoever deploys frontier compute infrastructure fastest will decide whether AI expands human freedom or shrinks it.

We're singularly focused on delivering 10 to 100s of GWs of compute faster than anyone else, rethinking every layer of the stack. We acquire power, design and build data centers, and operate them - with teams spanning hardware and software. Speed and scale are our key differentiators. Come be a part of building civilization-scale infrastructure for AI.


We hire people who care deeply about this problem space. If that is you, please apply!

How We Operate

  • Extreme ownership. Full autonomy. Own things end to end often taking on scope outside your core role without being asked to get things done.

  • Velocity. We drive everything forward as fast as possible.

  • First principles. Challenge every assumption. Zero analogy thinking, no egos, the best idea wins.

  • Love of the game. The frontier of AI is the most interesting problem of our time. We put in long hours at high intensity to push the frontier forward.

The Security Team

Examples of key problems the team is working on

  • You're securing the frontier of AI. The model weights training on our infrastructure are the most valuable and most targeted artifacts in technology, and we're standing up the compute to hold them faster than anyone ever has. A breach isn't a leak, it's the frontier walking out the door.

  • Build the entire security program from scratch. Most leaders inherit someone else's system and spend a career patching it. Here you own it end to end, bare metal to boardroom, as we scale across continents.

  • Your threat surface is measured in gigawatts. The customers running on our infrastructure are building the most consequential technology in human history, and being responsible for the physical and logical security of that work makes everything else feel small.

Role Scope

  • Lead incidents as a senior incident commander in the on-call rotation, and serve as the escalation backstop when a case rises above the responders on call.

  • Own the 24/7 coverage model, rotation discipline, and response SLAs for your US region, keeping the program humane and the bar high at the same time.

  • Build and develop a team of senior incident responders, setting the on-call expectations and quality bar they operate to.

  • Drive executive, legal, and customer communications during declared incidents, including regulated reporting and disclosure timelines.

  • Own the joint operating relationship with Physical Security and Data Center Operations for incidents that cross cyber, physical, and OT surfaces.

  • Run the post-incident review cadence and drive remediation to completion across detection, response, and infrastructure.

  • Hold the bar on the agentic triage layer, defining what the agent escalates and feeding incident learnings back to detection engineering and threat intelligence.

What We're Looking For

The below is a starting point. We always make space for exceptional people, so if you don't fit this role exactly, tell us where you would.

  • You've led material incidents end to end as a senior incident commander at organizations with sophisticated, well-resourced threat actors.

  • You've managed and grown a team of senior responders while staying in the on-call rotation yourself.

  • You've designed or run a 24/7 on-call program: coverage models, rotation discipline, acknowledgement and response SLAs, and escalation chains.

  • You move between technical containment and executive, legal, or customer-facing communications during a declared incident without losing the thread.

  • You've made disclosure-grade calls under regulatory and customer reporting clocks.

  • You've built operating relationships across security, infrastructure, and physical or facilities teams, and led incidents that crossed those boundaries.

  • You have well-founded opinions on what makes an on-call program humane and an incident response process effective, and you're ready to build one from a small senior core.

  • Bonus: Incident response bridging cyber, physical, and OT or ICS surfaces. Experience at critical-infrastructure operators, data centers, or 24/7 high-availability environments. Standing up or scaling an IR team and on-call program from scratch. Operating under FedRAMP, SEC, or similar regulated incident-reporting regimes. Agent-augmented IR, including triage, investigation, or response automation.

Salary & Benefits
  • Competitive total compensation package (salary + equity)

  • Retirement or pension plan, in line with local norms

  • Health, dental, and vision insurance

  • Generous PTO policy, in line with local norms

The base salary range for this position is $300,000 - $400,000 per year, depending on experience, skills, qualifications, and location. This range represents our good faith estimate of the compensation for this role at the time of posting. Total compensation may also include equity in the form of stock options.

We are committed to pay equity and transparency.

Fluidstack is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law. Fluidstack will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

You will receive a confirmation email once your application has successfully been accepted. If there is an error with your submission and you did not receive a confirmation email, please email [email protected] with your resume/CV, the role you've applied for, and the date you submitted your application-- someone from our recruiting team will be in touch.

Similar Jobs

24 Days Ago
Hybrid
99K-232K Annually
Mid level
99K-232K Annually
Mid level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Lead cyber incident response efforts to identify, analyze, and remediate security incidents. Use digital forensics and threat intelligence, conduct vulnerability assessments, design secure architectures, guide governance and incident management, mentor teams, and collaborate with clients to implement proactive cybersecurity strategies.
Top Skills: Cyber Threat IntelligenceCybersecurity FrameworkDigital ForensicsGovernanceIncident ResponseNetwork ForensicsSecurity ArchitectureVulnerability Assessment And Management
10 Days Ago
Hybrid
151K-226K Annually
Senior level
151K-226K Annually
Senior level
Artificial Intelligence • Legal Tech • Professional Services • Software
Lead end-to-end coordination of security and reliability incidents, build incident management processes and runbooks, run post-incident reviews and remediation programs, maintain incident readiness (tabletops, on-call, tooling), and serve as the communications hub translating technical status to executives, legal, and customer-facing teams.
17 Days Ago
In-Office
129K-196K Annually
Senior level
129K-196K Annually
Senior level
Healthtech • Professional Services
Lead incident command and disaster recovery activities for major IT incidents and declared disasters. Serve on rotational active/backup responder duty, coordinate cross‑functional technical recovery, maintain and test DR playbooks, drive post‑incident RCA and remediation, engage executives and vendors, and ensure DR governance, readiness, and regulatory alignment across application tiers.
Top Skills: Iso 22301ItilNist

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account