Role OverviewAs the Associate Director (Staff Engineer) for Cyber Defense Platforms, you will own the defense technology stack end-to-end, including SIEM, SOAR, EDR, DLP, email security, and anti-phishing platforms. This is a senior individual contributor role with enterprise-wide impact, responsible for deploying, configuring, and maintaining defense platforms, as well as defining the platform roadmap and establishing detection-as-code practices.
What You Will Do
Your main day-to-day responsibilities will include owning the deployment, configuration, and administration of defense platforms, defining the platform roadmap, and establishing detection-as-code practices. You will also be responsible for building and maintaining detection content, automating workflow, and integrating security platforms with enterprise systems.
Why It Might Be a Fit
To be successful in this role, you will need to have 8+ years of progressive experience in security engineering, security operations, or detection engineering, with demonstrated ownership of defense and security platforms. You should have deep hands-on expertise in architecting and administering SIEM, SOAR, EDR, DLP, or email security and anti-phishing platforms, as well as strong software engineering skills in a language commonly used for security automation.
Requirements
- 8+ years of progressive experience in security engineering, security operations, or detection engineering
- Deep hands-on expertise in architecting and administering SIEM, SOAR, EDR, DLP, or email security and anti-phishing platforms
- Strong software engineering skills in a language commonly used for security automation (e.g., Python, Go, PowerShell)
- Proven experience building and managing detection content at scale, measured against frameworks like MITRE ATT&CK
- Track record of delivering measurable operational improvements through automation
- Ability to operate autonomously in a build-from-zero environment and drive technical work across teams you don't manage
- Experience standing up or modernizing a security operations stack (SIEM migration, SOAR implementation, EDR rollout) from early maturity
- Cloud security experience, particularly AWS-native security services
- Experience in regulated industries (pharma, biotech, healthcare, financial services)
- Relevant certifications (e.g., GIAC GCDA/GDAT/GCIA, CISSP) or equivalent expertise
Benefits
- Comprehensive benefits including medical, dental, and vision coverage
- Life and disability insurance
- Lifestyle reimbursement program
- Flexible spending and health savings accounts
- 401(k) with a generous company match
- Paid time off
- Wellness days
- Holidays
- Two company-wide recharge breaks
- Generous family resources and leave
]]>