We're looking for a security practitioner who wants to go deeper than monitoring dashboards and triaging alerts. Someone who understands what good detection looks like, knows their way around a SIEM, and isn't afraid to roll up their sleeves with APIs and automation. You'll be the bridge between the security products our customers already trust and the our company platform that validates whether those products are actually doing their job.
Opportunity Highlights
Our integrations team is responsible for connecting our company with the security products that make up enterprise defense stacks worldwide - EDR and XDR platforms, SIEMs, vulnerability management tools, threat intelligence platforms, email security products, and cloud security solutions.
You'll own the full lifecycle of these integrations: building new ones, keeping existing ones healthy, and setting up realistic lab environments that mirror what our customers actually run. When something breaks in the field (or can't be reproduced internally) you'll be the one figuring it out.
You won't be doing this alone. You'll work closely with our Product, Engineering, and Security teams, and you'll have access to modern AI-powered development tools that let you move fast without sacrificing quality.
The Impact You Will Have
Design, build, and maintain integrations with leading third-party security products
Own the full lifecycle of existing integrations - maintenance, bug fixes, upgrades, and reliability improvements
Research vendor APIs, authentication flows, event schemas, and product capabilities to unlock new integrations
Translate complex security telemetry into normalized, actionable data
Build and maintain lab environments that mirror real enterprise security deployments
Reproduce field scenarios, validate detections, and troubleshoot integration behavior end-to-end
Investigate issues in customer-like environments when they can't be reproduced internally
Continuously evaluate new security technologies and identify integration opportunities
Use modern AI-driven development tools to accelerate delivery and improve quality
Requirements: We care far more about what you've done than what your title was. These are the signals we're looking for:
Hands-on experience in a cybersecurity role - Security Engineer, Detection Engineer, SOC Analyst, SIEM Engineer, Security Automation Engineer, or similar
Real familiarity with at least 2-3 security products (EDR/XDR platforms, SIEMs like Splunk, Elastic, or QRadar) - you've built alerts, written rules, consumed the data
Comfort working with APIs, JSON, web services, and automation workflows - you don't need to be a developer, but you're not intimidated by code
Experience with scripting languages (JavaScript, Python, or similar) - even if it's been in support of security work rather than pure engineering
A track record of troubleshooting complex product environments and getting to the root cause
Experience building, configuring, or maintaining enterprise security products in lab or production environments
Strong understanding of modern security architecture - you know how the pieces fit together
Fast learner with an ownership mindset - you're the type who figures things out
This position is open to all candidates.