Salary
💰 $170,000 - $185,000 per year
Tech Stack
AWSCloudGoGoogle Cloud PlatformKubernetesPython
About the role
- Develop AI-driven security solutions: design and implement log management, detection rules, behavior baselines, security event triage, incident response and forensic workflows, and reporting
- Utilize AI workflow tools to provide consistent 365/7 response and scale detection/response capabilities
- Automate threat assessments: leverage AI for threat intelligence gathering, maintain threat actor and TTP catalogues, identify mitigations
- Provide subject matter expertise in application security, API-based architectures, Kubernetes, and agentic/LLM-enabled threats
- Collaborate across teams (system and product owners, Legal, PR, Senior Leadership) to ensure incident readiness and translate detection/response requirements
- Stay informed on security trends, threat actors, and vulnerabilities to improve protections
- Mentor and educate business teams on logging, secure coding, architecture, vulnerability remediation, and compliance
- Drive continuous improvement of security processes and tools and advocate for new technologies
- Uphold ethical AI practices and respect for user privacy in security measures
Requirements
- Strong understanding of application security threats, particularly in modern API-based architectures and Kubernetes-based operating environments
- Familiarity with CI/CD pipelines and newer threats related to LLMs and Agentic AI
- Familiar with threat modelling and use of threat catalogues to capture threat actors, tactics, techniques, and procedures
- Technical ability to establish user and entity behavioural analysis (UEBA) and rule-based detections at large scale and high log volumes
- Experience with automated event correlation to reduce alert fatigue
- Hands-on incident response and forensics experience to contain and eradicate incidents
- Proficiency in at least one modern programming language such as Go or Python (desired)
- Experience with cloud platforms notably AWS or GCP and containerized environments
- Familiarity with relevant open-source and commercial security software, security data lake technologies, and network/host/cloud detection and forensic tools
- Strong foundation in threat intelligence, detection, response, and forensics
- Product-builder mindset and ability to collaborate with Legal, PR, and Senior Leadership