8 hours ago
Base Salary
$123k - $230k/yr
Responsibilities
- Run and improve security operations by triaging alerts, investigating threats, and leading incident response through root cause analysis and remediation.
- Build and tune SIEM, EDR, and SOAR detections and response automation, including tooling that reduces manual security work.
- Harden corporate security infrastructure across identity, SSO/MFA, endpoints, email, and vulnerability management.
- Perform threat modeling, secure design reviews, and code reviews for implant firmware, surgical robotics, BCI systems, infrastructure, ASIC, clinical and consumer applications, and cloud backends.
- Write code and collaborate with engineering teams to remediate product security vulnerabilities.
- Conduct internal security assessments and penetration tests, triage external vulnerability reports, and drive remediation.
- Establish security standards, incident response runbooks, and secure development practices with software, infrastructure, IT, and compliance teams.
Requirements
- Hands-on experience in security engineering, security operations, or product/application security, or exceptional ability in lieu of traditional experience or qualifications.
- Strong fundamentals in operating system internals, networking, and authentication/authorization, with experience across Linux, macOS, and Windows.
- Experience detecting, investigating, and responding to security incidents.
- Ability to independently identify security problems and implement end-to-end fixes.
- Clear communication with technical and non-technical stakeholders and sound judgment under pressure.
- Preferred: product security experience in threat modeling, secure code review, or penetration testing of web, mobile, or embedded targets.
- Preferred: experience securing AWS or similar cloud environments, Kubernetes/containers, and infrastructure-as-code.
- Preferred: embedded, firmware, or hardware security experience, especially in medical devices or safety-critical systems.
- Preferred: familiarity with FDA premarket cybersecurity guidance, HIPAA, or SOC 2.
- Preferred: detection engineering or security automation experience, CTF, bug bounty or public security research, OSCP or relevant certifications, and experience mentoring engineers or owning security processes.
Benefits
- Full-time employees receive medical, dental, and vision insurance through a PPO plan.
- Benefits include paid holidays, commuter benefits, meals provided, equity in the form of RSUs, a 401(k) plan, parental leave, and flexible time off, with stated exclusions for temporary employees and interns.
- The position offers growth potential and opportunities to work on brain-computer interface technology.
Tech Stack
Categories
About Neuralink
Neuralink builds implantable brain–computer interfaces and a neurosurgical robot to read and stimulate neural activity for medical and assistive uses. The privately held company, founded in 2016 and headquartered in Austin, develops a wireless implant and software enabling people with paralysis to control computers and external devices; it has FDA Breakthrough Device designations and began human clinical trials. Its business model centers on regulated medical devices sold through healthcare providers and research partnerships.
