JobBobsReal-time global job discoveryLive

Partner 20, Staff Engineer, Incident Response

A16z · San Francisco, California, United States · 2026-06-11

executive
Apply on the employer's site

About this role

<p><span style="font-family: 'times new roman', times, serif;">Founded in Silicon Valley in 2009 by Marc Andreessen and Ben Horowitz, Andreessen Horowitz (aka a16z) is a venture capital firm that backs bold entrepreneurs <a href="https://a16z.com/news-content">building the future</a> through technology. We are <a href="https://a16z.com/portfolio">stage agnostic</a>. We invest in seed to venture to <a href="https://a16z.com/growth/">growth-stage technology</a> companies, across <a href="https://a16z.com/ai/">AI</a>, <a href="https://a16z.com/bio-health/">bio + healthcare</a>, <a href="https://a16z.com/consumer/">consumer</a>, <a href="https://a16zcrypto.com/">crypto</a>, <a href="https://a16z.com/enterprise/">enterprise</a>, <a href="https://a16z.com/fintech/">fintech</a>, <a href="https://a16z.com/games">games</a>, and companies building toward <a href="https://a16z.com/american-dynamism/">American dynamism</a>. a16z has $100B+ under management across multiple funds.</span></p> <p><span style="font-family: 'times new roman', times, serif;">We’ve established a team that <a href="https://a16z.com/about/">is defined by</a> respect for the entrepreneur and the company-building process; we know what it’s like to be in the founder’s shoes. We’ve invested in <a href="https://a16z.com/portfolio/">companies</a> like Anduril, Airbnb, Coinbase, Cursor, Databricks, Deel, Figma, GitHub, Roblox, SpaceX, and Stripe. Our team is at the forefront of new technology, helping founders and their companies impact and change the world.</span></p> <h2><span style="font-family: 'times new roman', times, serif;">The Role</span></h2> <p><span style="font-family: 'times new roman', times, serif;">We're hiring a Staff Incident Response Engineer to anchor a16z's detection and response work. You'll own incident triage and response across AWS and GCP, write the detections that catch real threats in our SIEM, and run point when something serious happens.</span></p> <p><span style="font-family: 'times new roman', times, serif;">The threats here are not theoretical. We see capital call wire fraud attempts, vishing campaigns, social engineering against IT and partners, and occasionally more sophisticated actors (nation-state groups, organized criminal operations) who specifically target venture capital firms. Your work protects the firm, our LPs, and our portfolio companies. You'll work day to day with the Head of Cybersecurity, Security Engineering, IT, and Legal.</span></p> <p><span style="font-family: 'times new roman', times, serif;">This role requires an in-office presence 2 days a week in our San Francisco, CA office.</span></p> <h2><span style="font-family: 'times new roman', times, serif;">To join our team, you should be excited to: </span></h2> <ul> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Run incidents end to end, from first alert to post-mortem, across cloud and SaaS environments</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Write the detections that catch real threats, with a strong bias toward signal over noise and broad MITRE ATT&CK coverage</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Help shape the next generation of our SOC, including AI agent integration into triage and response workflows</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Partner across the firm during incidents: investing teams, Legal, Compliance, Finance, IT, and firm leadership all get pulled in, and this role keeps every audience aligned under pressure</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Drive post-mortems that lead to operational change, not process for its own sake</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Work against real adversaries, including nation-state groups, organized criminal operations, and threat actors who specifically target venture capital firms</span></li> </ul> <h2><span style="font-family: 'times new roman', times, serif;">Minimum Qualifications</span></h2> <ul> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">5+ years of incident response experience or equivalent demonstrated impact, with cloud IR depth across both AWS and GCP</span></li> <li style="font-family: 'times new roman', times, serif;"><span style="font-family: 'times new roman', times, serif;">Experience leading live incidents end to end — triage, containment,…

Skills asked for

Similar jobs

Apply on the employer's site

Your next role is already in here.

Search live openings from thousands of employers, save the ones worth a second look, and let JobBob keep watch for the rest.