As an Information Security Engineer, you'll enhance the security of Windows and Active Directory, reducing attack surfaces and developing detection tools for advanced threats.
A World-Changing Company
Palantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.
We're looking for an Information Security Engineer who can think broadly about how infrastructure is built, attacked, defended, and improved. You may have deep experience in one area—such as endpoint security, Active Directory, Data Loss Prevention, cloud security, identity, or detection and response—but you’re motivated by solving security problems across the environment.
As an Information Security Engineer focused on infrastructure security, you'll help protect Palantir's global endpoints, servers, identity systems, applications, networks, and data flows. You'll work across teams to reduce attack surface, improve defensive controls, investigate security events, and turn security findings into durable architectural and operational improvements.
This is not just a corporate security role; the adversaries we face are sophisticated. We need someone who understands both the details and the broader system: how a weakness in one part of the environment can create risk somewhere else, how controls interact, and how to build security improvements that hold up in practice.
As an Information Security Engineer focused on infrastructure security, you'll help protect Palantir's global endpoints, servers, identity systems, applications, networks, and data flows. You'll work across teams to reduce attack surface, improve defensive controls, investigate security events, and turn security findings into durable architectural and operational improvements.
This is not just a corporate security role; the adversaries we face are sophisticated. We need someone who understands both the details and the broader system: how a weakness in one part of the environment can create risk somewhere else, how controls interact, and how to build security improvements that hold up in practice.
Core Responsibilities
- Design, implement, and improve defensive security controls across endpoints, servers, identity systems, cloud services, SaaS applications, networks, and data flows
- Own or contribute to security posture improvements, including hardening standards, configuration management, vulnerability remediation, access controls, monitoring, and ongoing validation
- Evaluate security risks in new platforms, products, architectures, vendors, and services, and translate findings into practical recommendations and engineering work
- Build and maintain automation for security operations, such as configuration validation, drift monitoring, patching, access reviews, policy enforcement, alert triage, and security hygiene
- Partner closely with Identity, Infrastructure, Engineering, Legal, and other Information Security teams to improve security architecture and reduce recurring risk
- Translate findings from assessments, red team exercises, incident investigations, and operational reviews into durable fixes—including configuration changes, architectural improvements, policy updates, and automation
- Develop expertise in one or more security domains while remaining effective across the broader infrastructure security lifecycle
What We're Looking For
- Experience securing one or more major infrastructure domains, such as Windows, macOS, Linux, Active Directory, cloud platforms, SaaS applications, networking, identity systems, or enterprise endpoints
- A broad infrastructure security mindset and curiosity about systems outside your primary area of expertise
- Understanding of common infrastructure attack paths, adversary tactics, techniques, and procedures, and the security controls used to prevent, detect, and contain them
- Ability to assess complex environments and identify how weaknesses in identity, endpoints, applications, networks, cloud services, or data flows can combine to create security risk
- Experience evaluating security tooling and validating that controls are deployed effectively and continue to work as intended
- Familiarity with infrastructure-as-code, configuration management, CI/CD, or other approaches to making security controls repeatable and scalable
What We Value
- Ability to independently own projects, make progress through ambiguity, and balance competing priorities while collaborating effectively with colleagues
- Experience working in complex, high-assurance, regulated, or rapidly changing environments
- The ability to move between strategic problem-solving and hands-on technical work
- Strong written and verbal communication skills, including the ability to explain technical security risks and drive remediation with partner teams
- Contributions to security programs, tooling, automation, incident investigations, or technical research—whether public or internal
What We Require
- 5+ years of hands-on experience in information security, infrastructure security, security engineering, security operations, or a closely related field
- Demonstrated experience securing at least one major infrastructure or security domain, with the ability and interest to work across multiple domains
- Active TS/SCI security clearance, or eligibility and willingness to obtain one
- A strong sense of ownership, sound judgment, and integrity
Salary
The estimated salary range for this position is estimated to be $145,000 - $200,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual’s relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.
Our benefits aim to promote health and wellbeing across all areas of Palantirians’ lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.
Benefits
• Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance
• Employees are automatically covered by Palantir’s basic life, AD&D and disability insurance
• Commuter benefits
• Take what you need paid time off, not accrual based
• 2 weeks paid time off built into the end of each year (subject to team and business needs)
• 10 paid holidays throughout the calendar year
• Supportive leave of absence program including time off for military service and medical events
• Paid leave for new parents and subsidized back-up care for all parents
• Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation
• Stipend to help with expenses that come with a new child
• Employees can enroll in Palantir’s 401k plan
Life at Palantir
We want every Palantirian to achieve their best outcomes, that’s why we celebrate individuals’ strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians’ lives is just one of the ways we’re investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.
In keeping consistent with Palantir’s values and culture, we believe employees are “better together” and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for “Remote” work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.
If you want to empower the world's most important institutions, you belong here. Palantir values excellence regardless of background. We are proud to be an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability. If you need an accommodation for the application or hiring process, please reach out and let us know how we can help.
Please note that you will never be asked to submit a payment or share financial information to participate in our interview process. If you suspect that you've been contacted by a scammer, we recommend you cease all communication with the individual and consider reporting them to the relevant authorities, such as the US FBI Internet Crime Complaint Center (IC3).
If you would like to understand more about how your personal data will be processed by Palantir, please see our Privacy Policy.
If you would like to understand more about how your personal data will be processed by Palantir, please see our Privacy Policy.
Similar Jobs at Palantir Technologies
Artificial Intelligence • Software
This internship involves owning impactful information security projects, collaborating with internal teams and customers, independently solving ambiguous security problems, and delivering improvements that protect Palantir and its customers. Candidates will apply engineering and programming skills while developing practical security expertise and may need to obtain a US security clearance.
Top Skills:
C++JavaJavaScriptPython
Artificial Intelligence • Software
Build and maintain production infrastructure platforms (Rubix, Apollo, environment PaaS, observability) across fleets and clusters. Own full product lifecycle, collaborate with cross-functional teams, deploy secure solutions for civil and defense customers, and participate in field exercises to validate deployments.
Top Skills:
ApolloC++CiliumClineEnvoyFoundryGitGoGothamGradleGrafanaJavaJavaScriptKubernetesPythonReactReduxRubixTypescriptWindsurf
Artificial Intelligence • Software
Work on-site with customers to deliver end-to-end production software solutions using large-scale data and Gen AI. Own projects from architecture to deployment, build custom applications and LLM workflows, handle data engineering and cloud infrastructure, and maintain stakeholder relationships. Expect significant travel and autonomy.
Top Skills:
C++Cloud InfrastructureFront-End FrameworksGen AiJavaJavaScriptLlm WorkflowsPythonStorage SystemsTypescript
What you need to know about the NYC Tech Scene
As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.
Key Facts About NYC Tech
- Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
- Key Industries: Artificial intelligence, Fintech
- Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
- Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory
