Participate in active threat hunting, analysis of security events, and incident triage (as it arises)
End to end security event and/or incident response cycle duties, root cause analysis, incident commander duties, and cross-functional collaboration to other business areas
Chart our strategy for AI adoption to aid in automated triage and response
Develop, tune, and manage tools to gather security telemetry data
Build detection rules and threat hunting queries
Help improve processes, procedures, technologies, and runbooks for detection and response
Challenge existing detection and response assumptions that were built for human-speed threats
Support the technical and operational aspects of high-visibility security initiatives
Pair on incidents, review detection logic, and coach engineers through post-incident deep-dives
Use threat modeling to prioritize detection coverage and assess impact during active incidents
Requirements
9+ years of experience in a security role with significant incident response experience
Proficiency in web applications and cloud technologies
Strong foundational knowledge of information security and common attacks, tactics, techniques, and procedures
Familiarity with operating systems internals, malware functionality, and persistence mechanisms
Hands on experience with SIEM, SOAR, EDR and MDM platforms
5+ years of professional development experience, delivering large engineering projects
Strong mental threat model for web applications and cloud data flows.
Experience building, tuning, and validating AI agents, including running them alongside manual analysis until you trust the output.
Tech Stack
Cloud
Benefits
equity package
annual performance bonus
competitive benefits that support you and your family