← Back to results

Forward Deployed Security Automation Engineer

Join TENEX.AI as a Forward Deployed Security Automation Engineer to enhance cybersecurity through automation and AI-driven solutions.

Location
San Jose, CA, United States
Compensation
Not disclosed
Level
mid
Type
full time · Hybrid

Posted by employer 2 days ago

First seen on Joblaze 1 day ago

Last verified on the company career page 1 day ago

What you'll build

  • Deploy, configure, and maintain SIEM, SOAR, and EDR environments
  • Troubleshoot and resolve EDR agent problems
  • Develop, test, and deploy production Python services
  • Build automated containment or remediation workflows
  • Create and maintain internal tooling

Must have

  • Deep, hands-on experience operating multiple SIEM/SOAR/EDR platforms
  • Proven software engineering experience building and maintaining production Python services and APIs
  • Experience integrating with complex vendor APIs
  • Demonstrated experience building automated detection and response workflows
  • Track record of taking end-to-end production ownership of a platform

Nice to have

  • Experience managing multi-tenant EDR structures
  • Proficiency in Go and/or Python
  • Detection-as-code experience
  • Background working at MDR/MSSP providers
  • Experience with SOAR vendors or EDR vendor engineering teams

Practical constraints

  • 4 days onsite M-TH

AI in the day-to-day

We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection.

Requirements

Education
Bachelor's degree

Not disclosed in this posting: compensation, years of experience, visa sponsorship.

Benefits

Competitive salary and benefits package Culture of growth and development

Joblaze summary

The Forward Deployed Security Automation Engineer at TENEX.AI is responsible for integrating AI agents with various security platforms, deploying and maintaining environments like SIEM, SOAR, and EDR across multiple vendors. This role requires strong software engineering skills, particularly in Python, and a deep understanding of security operations and automated workflows. Ideal candidates will have a background in cybersecurity, particularly within MDR or EDR environments, and should be comfortable taking ownership of production platforms. TENEX.AI emphasizes a collaborative culture and is backed by significant investment, positioning it for rapid growth.

Joblaze insights

  • Listed yesterday — first seen on Joblaze October 7, 2026. Last confirmed on TENEX.AI's careers page October 7, 2026.
  • Python appears in 41.1% of 192 comparable mid security roles in United States; Google SecOps appears in 1% of 192 comparable mid security roles in United States.

Quick facts

Is the Forward Deployed Security Automation Engineer role remote?
It's hybrid — TENEX.AI expects some on-site time in San Jose, CA, United States.
Where is the role based?
TENEX.AI is hiring for this position in San Jose, CA, United States.
What's the tech stack?
Joblaze extracted these technologies from the posting: CrowdStrike, EDR, Google SecOps, Microsoft Defender, Microsoft Sentinel, Python.
What seniority level is this role?
TENEX.AI targets mid-level candidates for this position.
Is this full-time or contract?
Full-time for this Forward Deployed Security Automation Engineer role at TENEX.AI.

From the original posting

Company Overview:

TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.

We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.

Reporting to Software Engineering, the Forward Deployed Security Automation Engineer owns the integration layer between our AI agents and the security platforms they work with. You will deploy and maintain SIEM, SOAR, and EDR environments across a wide range of vendors, and build the software, automated response workflows, and internal tooling that connect them.

Location: San Jose, CA or Overland Park, KS. We will require 4 days onsite M-TH.

You will:

  • Operate security platforms across vendors: Deploy, configure, and maintain sandboxes of SIEM, SOAR, and EDR environments across vendors such as CrowdStrike, SentinelOne, Microsoft Defender, Splunk, Microsoft Sentinel, and Google SecOps. Manage prevention policies, host groups, custom IOAs, and exclusions on EDR platforms, detection content on SIEM platforms, and connectors on SOAR platforms.

  • Resolve platform issues: Troubleshoot and resolve EDR agent problems across our environments, managing performance impacts, kernel or driver conflicts, upgrade rollouts, and false positive tuning.

  • Build production software: Develop, test, and deploy production Python services (not just scripts). Manage the full lifecycle including APIs, workers, queues, tests, CI, and containers.

  • Automate detection and response: Partner with other teams in engineering to build automated containment or remediation workflows, including host isolation, process kills, file quarantine, account disabling, and ticket creation.

  • Design safety guardrails: Architect strict guardrails on automated response actions—this is the strongest signal of success in the role. You will build approval thresholds, allow lists for critical hosts, rate limits on isolation actions, audit trails, and safe release or rollback paths.

  • Own the platform in production: Take end-to-end ownership of the platform's reliability and latency outcomes (such as time from alert to containment), and participate in the on-call rotation for security tooling.

  • Build internal tooling: Create and maintain tools utilized by other teams, ensuring they are observable by debugging your own software with logging, metrics, or alerting you put in place.

Requirements:

  • Deep, hands-on experience operating multiple SIEM/SOAR/EDR platforms

  • Proven software engineering experience building and maintaining production Python services and APIs.

  • Experience integrating with complex vendor APIs and managing auth, rate limits, and retries.

  • Demonstrated experience building automated detection and response workflows with carefully designed safety guardrails.

  • Track record of taking end-to-end production ownership of a platform, rather than just a component.

Nice-to-haves:

  • Experience managing multi-tenant EDR structures

  • Proficiency in Go and/or Python

  • Detection-as-code experience (rules in version control, testing, CI deployment).

  • Background working at MDR/MSSP providers, SOAR vendors, EDR vendor engineering teams, or on the detection and response teams of security-mature technology companies.

Education & Certifications

  • Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field.

  • Relevant certifications (AWS/GCP Professional Engineer, Kubernetes, or security-related credentials) are a plus.

Why Join Us?

  • Opportunity to work with cutting-edge AI-driven cybersecurity technologies and Google SecOps solutions.

  • Competitive salary and benefits package.

If you're passionate about combining cybersecurity expertise with artificial intelligence and have experience with Google SecOps and Chronicle, we encourage you to apply!

Standard company text repeated across TENEX.AI's postings is omitted here.

Similar positions

TENEX.AI
Forward Deployed Data Engineer
TENEX.AI · Kansas City, MO SOC
TENEX.AI
Forward Deployed AI Engineer
TENEX.AI · Kansas City, MO SOC
TENEX.AI
Software Engineer
TENEX.AI · San Jose, CA
TENEX.AI
Software Engineer II
TENEX.AI · San Jose, CA
TENEX.AI
Senior Software Engineer
TENEX.AI · San Jose, CA