AI SOC Analysts that never sleep. So you can.
Head of Security Research
Location
United States
Posted
17 days ago
Salary
$220K - $255K / year
Seniority
Lead
Job Description
Head of Security Research
Dropzone AI
• Lead & Build a High-Impact Security Engineering and Research Team • Build a team of elite security engineers and world-class domain experts across Detection and Response, including alert investigation, threat hunting, detection engineering, and threat intelligence • Act as a player/coach, setting strategic research and engineering directions while staying deeply involved in technical work • Establish a culture of high-quality research, rapid iteration, and operator-first thinking • Drive Product Effectiveness • Build and refine measurement and evaluation frameworks to ensure the analysis our agents produced is high quality and mirrors expert human outputs • Owns the process of encoding expert human intuitions and techniques into our agentic system • Work closely with rest of engineering to continuously improve the efficacy of our agents in real world deployments • Reimagine Detection and Response with agents • Prototype and test new ideas where unlimited analytical capacity can fundamentally change cyber defense • Serve as a key voice in shaping Dropzone’s product roadmap based on real-world operation experience • Pressure-test assumptions about how AI should be applied in security operations • Help define what “autonomous defense system” actually looks like in practice and be an industry thought leader around it
Job Requirements
- 8+ years in detection and response with strong experience in security engineering, threat hunting, SOC, or incident response
- 3+ years experience managing a team of security engineers, threat hunters, SOC analysts, etc
- Background in building and running SOC functions, detection programs, or security research teams
- Proven experience leading high-performing technical teams while staying hands-on
- Able to mentor across multiple domains (detections, intel, IR) without being siloed
- Opinionated about what world-class looks like in threat intelligence, hunting, detection engineering, SOC, and IR
- Able to collaborate closely with engineering and product teams
- Early-stage startup mindset. You thrive on ambiguity and move with lightspeed execution.
Benefits
- company paid health insurance
- 401K Plan with employer match
- Self-Managed PTO
- parental leave
- more
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Control Specialist, Fluent Ukrainian
SupportYourAppSupport-as-a-Service that helps companies scale faster by taking care of their customers’ needs.
• Забезпечувати повний цикл розслідування та координації дій у відповідь на порушення безпеки або робочих процесів • Вести комунікацію з клієнтами та стейкхолдерами під час Data Breach інцидентів • Проводити Root Cause Analysis інцидентів, розробляти превентивні заходи та готувати звітність для топменеджменту • Аналізувати операційні процеси клієнтів з урахуванням інцидентів для виявлення потенційних загроз та формувати рекомендацій щодо проактивного підвищення рівня безпеки • Перевіряти безпеку постачальників, програмних платформ та сторонніх сервісів • Здійснювати аудит нових локацій для найму щодо відповідності стандартам захисту даних і впровадження інструментів безпеки • Готувати документацію та процедури управління інцидентами, а також підтримувати внутрішню базу знань.
Security Manager
AutomoxAll your endpoints. Always configured. Always secured. Cloud-native IT operations for modern organizations.
• Translates high-level departmental strategy into team-level goals, milestones, and execution plans. • Takes responsibility for the performance, reliability, and culture of the team. • Anticipates resourcing needs, skill gaps, and operational risks; escalates appropriately. • Drives continuous improvement across workflows, processes, and operational practices. • Ensures team deliverables are scoped clearly, prioritized effectively, and completed on time. • Manages workload, planning, sprint cycles, and backlog health. • Implements processes that improve quality and predictability of output. • Supports cross-functional coordination, ensuring stakeholders understand timelines and dependencies. • Removes roadblocks that impede team progress and ensures issues are escalated appropriately.
Senior Security Engineer
AutomoxAll your endpoints. Always configured. Always secured. Cloud-native IT operations for modern organizations.
• Build proactive security automation aimed at decreasing manual remediation work. • Research new and novel ways to accomplish security work and publish your findings on our blog. • Participate in a monthly security on-call rotation for critical escalations. • Build security capabilities utilizing the attacker mindset and other adversary research.
Cybersecurity Specialist – Offensive
Casas Bahia TecnologiaA Tecnologia do Grupo Casas Bahia - A dedicação nunca foi tão forte!
• Plan and conduct complex penetration tests (red team, adversary simulation, chained attacks), including hybrid environments (on-premises, cloud, and mobile), focusing on realistic, high-impact scenarios; • Structure and evolve attack methodologies, frameworks and playbooks, aligning offensive initiatives with business risks and the organization’s strategic priorities; • Lead Red Team and Purple Team exercises and simulations based on real TTPs (MITRE ATT&CK), assessing the effectiveness of defensive and response controls; • Develop advanced techniques, exploits, tools and automations, and research vulnerabilities (0-day, n-day, business logic) and new exploitation methods; • Support security investigations with an offensive perspective, helping reproduce attacks, validate hypotheses and identify compromise vectors; • Act as a mentor for junior, mid-level and senior staff, raising the team’s technical level and disseminating knowledge; • Work closely with security leadership, architecture and business stakeholders, translating technical risks into organizational impact and supporting strategic decisions; • Evaluate the effectiveness of controls (EDR, WAF, IAM, SIEM, etc.) through advanced offensive techniques; • Produce high-level reports with risk assessment, financial impact and strategic recommendations, as well as detailed technical documentation; • Propose structural improvements to security posture, tools, processes and offensive capabilities.



