5+ years in security engineering, with meaningful experience in detection engineering, security operations, or incident response — and the software skills to build your way out of repetitive work
Strong software engineering in Python or Go (TypeScript a plus). You design maintainable systems and write production code, not just one-off scripts
Cloud and Kubernetes detection depth: Experience with GCP or AWS logging, Kubernetes audit and runtime telemetry, workload identity, and turning raw signals into actionable detections
Detection and adversary expertise: The ability to model realistic attacker behavior, hunt across complex systems, test detection coverage, and distinguish meaningful signal from noise
Hands-on incident response: You've participated in on-call, led incidents, and written postmortems that changed how a team operates
Experience building reliable automation or developer-facing systems: You can design APIs and workflows, instrument what you build, evaluate quality, and operate it in production
A pragmatic product mindset: You can identify users and requirements, prioritize the highest-leverage problems, define success, and ship iteratively
Experience building or operating AI agents for security workflows such as alert triage, investigation, evidence collection, or human-in-the-loop response
Proficiency using AI tooling to accelerate security investigations and engineering work
Understanding of AI threats, adversarial testing, and the security boundaries of LLM and agent workloads
Exposure to SOC 2 or ISO 27001 monitoring and evidence automation
Experience with infrastructure as code such as Terraform or Helm
Experience securing both SaaS and self-hosted or air-gapped deployments
Annual salary range: $180,000- $240,000 USD