Our client is building an AI-native cybersecurity platform tailored for lean security teams. The role centers on ensuring the platform operates smoothly within real customer environments by integrating with their existing toolchains, mapping data flows, creating workflows, and resolving issues promptly. This hands-on position involves deploying and maintaining the platform to address a variety of customer needs effectively.
Key Responsibilities
- Configure integrations with diverse customer systems, including cloud platforms, identity providers (IdPs), ticketing systems, vulnerability scanners, and CI/CD pipelines.
- Manage the complete onboarding process for customer log sources, encompassing parsers, normalization, and validation.
- Troubleshoot and debug integration and data ingestion failures, sometimes collaborating live with customers to resolve issues.
- Develop customized workflows and security program modules tailored to specific customer requirements, such as alert triage, vulnerability management, and compliance reporting.
- Adjust AI agent behavior and escalation logic to fit unique customer environments.
- Oversee post-sale tenant onboarding, including setting access policies, managing data ingestion, and mapping compliance requirements.
- Produce detailed runbooks and thoroughly document every deployment to ensure clarity and repeatability.
Required Qualifications
- 4 to 7 years of hands-on technical experience in roles such as SIEM/XDR implementation, MSSP analyst with automation exposure, or data/cloud/DevOps engineering working directly within customer environments.
- Demonstrated experience personally onboarding customer data end-to-end, covering log sources, credentials, parsers, and go-live processes.
- Proficiency with REST, GraphQL, SCIM, webhooks, and OAuth 2.0 protocols.
- Strong scripting and debugging skills, preferably in Python or a similar language.
Preferred Qualifications and Benefits
- Experience in SOC, SIEM, SOAR, or familiarity with identity and access management technologies such as SAML, SCIM, and RBAC is highly desirable.
- Exposure to application security tooling or large language model (LLM) products is a plus.
- Candidates should be proactive documenters, comfortable navigating complex, real-world environments, and capable of working effectively from rough briefs.
- The compensation package includes a competitive base salary with a premium for proven end-to-end onboarding expertise. Additional benefits include employee stock ownership plans (ESOP) and health coverage.
This is an in-person role. Interested candidates are encouraged to submit a resume along with a brief description of a customer environment they have onboarded end-to-end, highlighting the technology stack, challenges faced, and solutions implemented. Including a runbook or technical document authored by the candidate is also recommended to showcase documentation skills.