DNSFilter Logo

DNSFilter

Principal ML/AI Threat Engineer

Posted 6 Days Ago
Easy Apply
Remote
Hiring Remotely in United States
155K-175K Annually
Expert/Leader
Easy Apply
Remote
Hiring Remotely in United States
155K-175K Annually
Expert/Leader
The Principal ML/AI Threat Engineer will design and implement scalable threat intelligence systems, focusing on adapting ML models for threat detection and attribution from DNS telemetry.
The summary above was generated by AI

DNSFilter’s mission is to protect our customers and partners with products they love to use! We are revolutionizing network security by providing fast, accurate, and reliable threat protection and content filtering. We're a rapidly growing company dedicated to creating a safer internet for businesses and organizations worldwide. Leveraging AI-driven threat intelligence, DNSFilter empowers our customers to proactively block threats before they impact their networks. We foster a collaborative, innovative, and results-oriented culture where every team member contributes to our mission of making the internet safer.

As we continue our product-fueled growth by adding new features and broadening our solution to meet the needs of the global market, it's clear there's a missing piece. That's where you come in!

DNSFilter is seeking a Principal ML/AI Threat Engineer to design and deliver scalable, real-time threat intelligence systems from DNS telemetry. This hands-on Principal IC role focuses on architecting, training, and deploying adaptive ML/AI models for malicious and benign infrastructure clustering, pattern identification, content categorization, and high-confidence actor attribution at scale. You will build production-grade systems to transform raw DNS signals into campaign-aware, actor-linked detections.
Eligible candidates have and can work successfully in a small to mid-sized fast-paced, hyper-growth, SaaS start-up or scale-up, and are located in the United States or Canada.

We recognize that people come with a wealth of experience and talent beyond just the technical requirements of a job. If you feel like this job is for you, please apply. We believe diversity of experience and skills, including transferable skills, combined with passion, is a key to innovation and excellence; therefore, we encourage people from all backgrounds to apply to our positions!

In this role, You Will: 

  • Infrastructure Clustering Systems
    • Design and maintain clustering frameworks to group and categorize malicious network indicators/assets at scale.
    • Analyze threat actor patterns and continuously evaluate cluster stability for adversarial drift, refining models for adaptation and resilience.
    • What Success Looks Like: Increased, high-confidence coverage of malicious infrastructure clusters that remain stable despite adversarial mutation.
  • Pattern Derivation & Model Development
    • Identify persistent adversary fingerprints in DNS and convert them into functional products by building, training, and architecting performant AI/ML models at scale, utilizing hybrid detection and mitigation layers.
    • What Success Looks Like: Measurable reduction in time-to-detection for emerging DNS-borne threats. Measurable increase in customer coverage.
  • Real-Time Adaptive Detection
    • Build systems for scaled analytical decision-making, training, branching, drift detection, and recognizing real-world threats. Integrate feedback and balance adaptability with precision to eliminate false-positive amplification.
    • What Success Looks Like: Real-time detection systems that adapt without measurable degradation in precision.
  • Attribution-Supporting Intelligence
    • Develop infrastructure-linking methodologies, partner with researchers to validate attribution hypotheses, and implement informed confidence scoring.
    • What Success Looks Like: Repeatable attribution-supporting infrastructure intelligence.
  • Intelligence as a Service
    • Deliver production services with clear SLAs/SLOs, explainability, confidence metrics, monitoring, and observability, ensuring compatibility with DNSFilter’s vision and tech stack.
    • What Success Looks Like: Creating new methodologies, heuristics, and fingerprints to categorize threats at scale.
  • Travel
    • Present at security conferences, specifically ISAC.

To qualify for this role, You Have: 

  • 10+ total years across the fields of AI engineering, applied ML, detection engineering, threat research, or threat intelligence automation.
  • Experience building production AI/ML systems operating on high-volume telemetry.
  • Strong background in: Statistical analysis, Clustering methods, and Feature engineering at scale.
  • Deep understanding of adversarial tradecraft as observed in DNS or network data.
  • Strong Python proficiency, cloud architectures, and experience with distributed processing systems.
  • Experience designing technical systems independently at the principal scope.
  • Ability to work hours overlapping with Eastern Time.
  • Must be eligible to work in your region of hire without sponsorship from an employer now and/or in the future.

Bonus points for: 

  • Direct experience with passive DNS or resolver telemetry.
  • Examples of hands-on work that has led to measurable outcomes.
  • Experience building network-based risk and/or confidence scoring mechanisms.
  • Familiarity with modern AI-engineering techniques and adaptive model strategies.
  • Background in cybersecurity, particularly nation-state APTs, major cyber groups, and threat actor automation.
  • Experience building explainable detection systems for customer-facing products.

We Offer:

  • Pathway to promotion to additional organizational positions and responsibilities based upon results and performance, not just time in the chair.  You help us grow, and we will help you grow.
  • Passionate and intelligent colleagues who work hard and have a good time doing it
  • Paid company-wide week off at the end of each year
  • Flexible Vacation Policy
  • Awesome company swag
  • Full medical, dental, and vision benefits for US, UK, and Canada-based employees
  • Full short-term disability and life benefits; available long-term disability
  • Retirement savings account options with vested company matching for qualifying employees
  • In-person annual gatherings. Last time we all spent a week on a beach in the Dominican Republic!


DNSFilter is a pay-for-performance organization, which means there is an opportunity to advance your compensation based on performance over time. The hiring base pay is dependent on several factors, including level, function, training, transferable skills, work experience, business needs, and geographic location. As a hybrid company, our compensation reflects the cost of labor across several U.S. and global geographic markets. We pay differently based on those defined markets. Our Talent Team can share more about the specific salary range for the job location during the hiring process.

DNSFilter participates in the E-Verify program.

At DNSFilter, we utilize sophisticated software and tools to identify and eliminate Deepfake candidates. This approach helps us maintain the integrity of our hiring process, ensuring that we select the most qualified and genuine individuals to join our team.

U.S. hiring salary range
$155,000$175,000 USD

Top Skills

AI
Cloud Architectures
Distributed Processing Systems
Machine Learning
Python

Similar Jobs

A Minute Ago
Remote or Hybrid
US
45-45 Hourly
Mid level
45-45 Hourly
Mid level
Agency • Gaming • Marketing Tech • Mobile • Analytics
The Digital Accessibility Analyst will ensure web and mobile applications meet WCAG standards, collaborate with teams on accessibility initiatives, and document remediation solutions for digital content.
Top Skills: Axe DevtoolsConfluenceCSSHTMLJavaScriptJawsJIRAMicrosoft TeamsMS OfficeNvdaSlackSmartsheetTalkbackVoiceoverWave
A Minute Ago
Remote or Hybrid
USA
130K-200K Annually
Senior level
130K-200K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Design, lead, and evolve the Channel Integrity Program to manage risks related to bribery, corruption, and fraud, utilizing predictive analytics and compliance strategies.
Top Skills: AIData ScienceMachine LearningSalesforce
2 Minutes Ago
Remote or Hybrid
New York, NY, USA
140K-215K Annually
Senior level
140K-215K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The role involves designing data pipelines, developing metrics and visualizations, collaborating with teams to track product KPIs, and ensuring data integrity within a cybersecurity environment.
Top Skills: AirflowAWSAzureCassandraDbtElasticsearchETLGoGCPKafkaOracle CloudPostgresPythonRedisSQLTableau

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account