Conduct cloud security assessments across a range of environments, primarily on AWS and Azure.
Design and build detection logic and alerting for cloud control plane activity.
Write automation to speed up assessment work and extract data.
Collaborate during Purple Team exercises to test customer detection capabilities.
Produce clear, high-quality reports for technical and executive audiences.
Help advance service offerings through methodology development and tooling contributions.
Requirements
Strong practical experience with AWS and Azure, including identity, compute, networking, storage, serverless, and logging and monitoring services.
A solid grasp of cloud architecture patterns and where security assumptions tend to break down in practice.
Detection engineering experience: writing queries, developing alerting logic, and cutting through noise in cloud-native and third-party SIEM/XDR environments.
Working knowledge of how threat actors operate in cloud environments.
Cloud security configuration analysis experience: tracing how misconfigurations chain into realistic attack paths.
Solid scripting ability in Python or equivalent.
Experience writing queries across platforms such as KQL, SPL, or cloud-native query engines.
Strong written and verbal communication in English. Additional language proficiency is advantageous.
Tech Stack
AWS
Azure
Cloud
Python
Benefits
Market leader in compensation and equity awards
Comprehensive physical and mental wellness programs
Competitive vacation and holidays for recharge
Paid parental and adoption leaves
Professional development opportunities for all employees regardless of level or role
Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections