2+ years of industry experience in a detection and response, corporate security, or generalist security engineering role
Degree in Computer Science or a related field, equivalent training, or professional experience
Hands-on experience with several of the following: alert triage, detection tuning and writing, detection-as-code, security log ingestion, investigations and security incident response, identity and access management (IAM), phishing response, user access reviews, managing endpoint detection and response tooling
Experienced and comfortable programing in at least one language (Python preferred) and comfortable using agentic development workflows
Familiarity with operating distributed cloud technology (AWS, CICD, GCP, Azure, Kubernetes, Docker, Terraform, etc.) and experience with corporate (SSO, SAML, IAM) and defensive security tooling (EDR, SIEM, CNAPP, ZTNA, etc.)
A collaborative approach to problem solving paired with strong written and verbal communication
Not sure if you meet 100% of the qualifications? We encourage you to apply anyway. We're interested in people are excited about this opportunity and eager to grow
Enjoy operating cross-functionally, building relationships, and influencing with technical expertise as you protect a fast-moving engineering organization
Get excited when something new lands on your desk, be it an interesting breach, a sweet exploit, a novel agentic architecture, an unfamiliar cloud primitive, or a bug class you haven't seen before
Love working in a developer-forward culture where your colleagues are builders who care deeply about code quality and customer satisfaction
Reach for automation first, you'd rather build a scalable, systematic solution to a security problem than make a noisy reactive solution which requires manual triage
Thrive with ownership and want more of it, you prefer to drive work end-to-end, and you're energized by the autonomy — and the mentorship — that comes with being on a small, high-trust team