Senior AI/ML Engineer
Location
Remote, USA
Employment Type
Full time
Location Type
Remote
Department
Engineering
Overview
Application
Company Overview
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation, and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast-growing startup backed by industry experts and top-tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
As a Senior AI/ML Engineer at TENEX, you will be a senior technical leader and architect responsible for designing, developing, and optimizing scalable, high-performance AI systems. You will play a crucial role in implementing our AI-driven cybersecurity solutions while collaborating across engineering teams and contributing to technical innovation.
Culture is one of the most important things at TENEX.AI—explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
Location: This role will require Monday - Thursday onsite in any of our locations. WFH Friday.
Job Responsibilities
Project Execution: Lead and own the architecture and delivery of technical components of complex projects. This means communicating effectively to align on requirements, executing on high-quality code, and collaborating with senior engineers and stakeholders throughout the development lifecycle.
AI Layer Engineering: Design & build the AI layer that powers autonomous detection, RAG-backed investigation, and auto-remediation workflows.
Productionize Reasoning Engines: Develop and productionize large-scale LLMs, graph-based reasoning engines, and streaming feature pipelines that operate on billions of security events.
Evaluation & Reliability: Own evaluation & reliability—from prompt libraries and fine-tuning to red-team testing, latency budgets, and fallback strategies.
Cross-Functional Collaboration: Lead cross-functional initiatives, partnering with Product, Detection Engineering, and Customer Success to translate real-world attacker behavior into robust ML and rule-based detections.
Push the Frontier: Experiment with retrieval-augmented generation, tool-calling agents, and multi-modal models (text + logs + graphs) to keep defenders decisively ahead.
Mentorship: Provide technical mentorship to junior engineers, foster engineering best practices, and contribute to architectural design reviews.
Required Skills & Qualifications
Software Engineering & Architecture Expertise
Core Engineering: 7+ years of experience in software development, engineering production systems using modern programming languages (Python, Go, Rust, or Java).
Agentic Systems: Deep knowledge of agentic systems design, such as Centralized and/or Decentralized MAS (Multi-Agent Systems) architectures.
Graph Architectures: Solid understanding of Graph structures and specifically graph databases.
Orchestration Frameworks: Hands-on experience building agents, orchestration frameworks (LangChain/LangGraph, Agno AGI, or custom), and evaluation harnesses.
Distributed Systems: Deep understanding of microservices architecture, containerization (Docker, Kubernetes), and event-driven systems.
APIs: Strong fundamentals in API design (REST/gRPC) and distributed systems.
Soft Skills
Communication: Clear, concise communication skills and a bias for collaborative problem-solving.
Leadership Alignment: Proven track record of gathering consensus and guiding multi-stakeholder initiatives through uncertain boundaries.
Analytical Rigor: Strong problem-solving and analytical skills.
Nice-to-have
Domain Background: Prior work in cybersecurity (SIEM, EDR, SOAR, or MDR).
Startup Mentality: Background driving high-impact engineering initiatives in high-growth startups or enterprise SaaS.
Cloud Infrastructure: Familiarity with cloud infrastructure security (AWS, GCP, or Azure).
Education & Certifications
Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field.
Relevant certifications (AWS/GCP Professional Engineer, Kubernetes, or security-related credentials) are a plus.
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and Google SecOps solutions.
Collaborate with a talented and innovative team focused on continuously improving security operations.
Competitive salary and benefits package.
A culture of growth and development, with opportunities to expand your knowledge in AI, cybersecurity, and emerging technologies.
If you're passionate about combining cybersecurity expertise with artificial intelligence and have experience with advanced multi-agent architectures, we encourage you to apply!
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
AI Enablement Engineer
Location
Kansas City Metro; San Jose, CA; Sarasota, FL HQ
Employment Type
Full time
Location Type
On-site
Department
Engineering
Overview
Application
Company Overview
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation, and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast-growing startup backed by industry experts and top-tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
As an AI Enablement Engineer at TENEX, you will partner with our current AI Engineer to build TENEX's internal AI platform: the reusable tools, integrations, and AI work companion that help every TENEX'er do their best work. You will partner with teams across the company to surface needs that shape our platform roadmap, then own that roadmap and ship against it predictably. This role is internal-facing. Your "customers" are your colleagues, and your impact is measured by how much faster, smarter, and more leveraged TENEX becomes because of the platform you build.
This role is right for someone who finds satisfaction in building systems that scale beyond themselves, who would rather embed AI fluency across the company than be the only person who can do this work.
Culture is one of the most important things at TENEX.AI. Explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
Location: This role will require Monday through Thursday onsite in our Kansas City office (preferred), with San Jose or Sarasota, FL also considered. WFH Friday. Candidates must live in or be willing to relocate to one of these three cities.
Job Responsibilities
Build and evolve TENEX's internal AI platform: a reusable foundation of tools, custom skills, Claude Projects, integrations, and department-specific specialists that scale AI impact across every team.
Partner with teams across TENEX (Sales, Customer Success, Marketing, Finance, Legal, HR, Detection Engineering, Security Operations, Forward-Deployed Engineering) to surface needs that shape our internal AI platform roadmap.
Own and execute against a published roadmap. Predictable, visible execution is a core expectation of this role.
Maintain, expand, and refine our AI work companion based on user feedback and emerging needs.
Build integrations between Claude and our internal tools (e.g., Ashby, Wonderlic, Fireflies, Asana, Google Chat) using webhooks, MCP connectors, and APIs. Favor reusable patterns over one-off solutions.
Run enablement: training sessions, documentation, AMAs, and 1:1 onboarding to help every TENEX'er become more AI-native.
Contribute to AI governance, monitoring, and security tooling decisions as TENEX scales its AI usage.
Required Skills & Qualifications
Anthropic Claude ecosystem expertise
Has shipped real work using Anthropic's Claude products, including Claude.ai, Claude Code, Cowork, Projects, custom skills, and MCP connectors. Tutorial-level familiarity is not enough. You should be able to point to things you've built that are actually in use by other people.
Comfortable using Claude Code for technical work, including building scripts, integrations, and tooling.
Strong prompt engineering instincts and an ability to translate vague user needs into clear, scoped AI workflows.
Familiarity with Gemini Enterprise is a plus, as we also use it.
Engineering fundamentals
5+ years of experience in software development. Python is preferred. Comfort with REST APIs, webhooks, and JSON-based integrations is required.
Comfortable working across the integration surface: reading API docs, configuring webhooks, debugging auth flows, building lightweight services that connect tools together.
Familiarity with version control (Git/GitHub) and modern engineering practices.
Demonstrated ability to design and build for reuse. You see common patterns across requests and abstract them into platform capabilities rather than building one-off solutions every time.
Security and data handling
Strong instincts for protecting sensitive data. You understand that internal AI workflows must be designed with strict guardrails around what data they can access, especially when customer information, employee information, or internal IP could be in scope. You build accordingly.
Demonstrated production experience working with sensitive data (PII, customer data, internal IP, or regulated data). You can speak to specific decisions you've made to protect it.
Familiarity with AI-specific security risks: prompt injection, data leakage to third-party LLMs, unsanctioned tool use, output misuse. You consider these risks proactively, not retroactively.
Working knowledge of secrets management, secure SDLC practices, and the basics of compliance frameworks (e.g., SOC 2).
Communication and cross-functional skills
Can sit with a CSM, finance lead, recruiter, or executive and translate their workflow into something AI can help with, without condescension, without overengineering, and without losing patience.
Comfortable presenting to groups: running training sessions, demoing new tools at all-hands meetings, hosting AMAs.
Strong written communication. You will write documentation, policy drafts, status updates, and company-facing announcements.
Comfortable saying "no" or "not yet" when an idea isn't ready, scoped, or appropriately resourced.
Nice-to-have
Experience building or maintaining an internal AI platform at another company.
Familiarity with Asana, Atlassian (Jira/Confluence), Google Chat, Google Workspace, Salesforce, Ashby, or other common B2B SaaS tools we integrate with.
Background in change management, technical writing, or internal enablement.
Experience with cybersecurity, even at a basic level, since several of our internal workflows involve our security and detection teams.
Hands-on experience with AI governance, AI security tooling, or AI usage monitoring platforms.
Soft skills
Strong consultative instincts. You naturally ask "why" and "what does success look like" before building.
Curious about other people's work. Energized by helping non-technical teammates use AI effectively.
Self-directed. You will not have someone managing your daily work, and you will be expected to triage, prioritize, and execute independently.
Bias toward shipping, paired with predictable execution. We move fast, iterate, and deliver against committed timelines.
Platform mindset. You think about how to make your work multiply through other people rather than scaling only with your own time.
Education & Certifications
Bachelor's degree in Computer Science, Engineering, or a related field, or equivalent practical experience.
Anthropic certifications, AI/ML certifications, or security-related credentials are a plus but not required.
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
Forward Deployed Security Engineer
Location
Kansas City, MO SOC; Sarasota, FL HQ; Scottsdale, AZ
Employment Type
Full time
Location Type
Hybrid
Department
FDE
Overview
Application
Company Overview:
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
Culture is one of the most important things at TENEX.AI—explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
About the Role
As a FDE Security Solution Engineer at TENEX, you deploy, manage, and advise on specialized security tooling across one or more assigned domains. Every SE&A engineer operates a dual mandate: technical practitioner and trusted security advisor. You keep customer environments healthy, help them improve their posture, and enable them to understand and act on their security risks.
Job Responsibilities
Deploy, configure, and manage specialized security tooling across one or more assigned domains — Cloud (Wiz, SCCE, Defender for Cloud), AI Security (WitnessAI, ModelArmor, Purview), Network (ExtraHop, CEP), Endpoint (ENT.AI, Defender for Endpoint, Thinkst Canary), and Identity (Defender for Identity)
Maintain ongoing health of customer security tooling across assigned domains — remediating misconfigurations, detecting drift, and continuously optimizing tool performance
Deliver advisory services as part of the dual-function mandate — including tabletop exercises, maturity assessments, and compliance readiness support (SOC 2, NIST, ISO, CMMC)
Develop customer-facing security roadmaps and posture improvement recommendations tailored to the customer's environment and risk profile
Enable customers through training on deployed tools and security best practices within their environment
Collaborate with the Rapid Deployment team on log source onboarding and cross-tool integrations into the SIEM
Document all configurations, advisory outputs, and customer environment details
Escalate complex technical or advisory challenges to Security Solution Architects or the Manager
Required Skills & Qualifications
Technical & Industry Expertise
3+ years in information security engineering or a related technical field
Hands-on experience deploying and managing security tools in one or more domains: cloud, AI, network, endpoint, or identity security
Experience delivering technical advisory services, security assessments, or consulting engagements
Familiarity with compliance frameworks including SOC 2, NIST, ISO 27001, and CMMC
Knowledge of MITRE ATT&CK and how it applies to relevant security domains
Experience developing customer-facing security roadmaps and remediation recommendations
Strong technical documentation skills
Soft Skills
Strong problem-solving and troubleshooting skills with a bias toward action
Excellent customer-facing communication and collaboration abilities
Ability to thrive in a fast-paced, high-performance startup environment
Passion for cybersecurity, automation, and continuous improvement
Education & Certifications
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent practical experience)
Relevant certifications such as CISSP, CISM, GIAC certifications, Google Cloud Professional, Microsoft SC-200/AZ-500, or AWS Certified Solutions Architect are a plus
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and next-generation security platforms
Collaborate with a talented and innovative team focused on continuously improving security operations
Competitive salary and benefits package
A culture of growth and development, with opportunities to expand your expertise in AI, cybersecurity, and engineering
Be part of building something new — TENEX's Forward Deployed Engineering organization is a greenfield opportunity to define how enterprise security is delivered at scale
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
Forward Deployed Data Architect
Location
Kansas City, MO SOC; Sarasota, FL HQ; Scottsdale, AZ
Employment Type
Full time
Location Type
Hybrid
Department
FDE
Overview
Application
Company Overview:
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
Culture is one of the most important things at TENEX.AI—explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
About the Role
As a FDE Security Solution Architect — SIEM/SOAR, you set the technical direction for TENEX's content engineering practice. You own the architecture of how detection content, parsers, playbooks, and integrations are built and scaled across platforms. You are the escalation point, the quality standard, and the force multiplier for the Security Solution Engineers — SIEM/SOAR team.
Job Responsibilities
All responsibilities of a Security Solution Engineer — SIEM/SOAR, at greater scale and complexity
Define the content architecture strategy across platforms — detection frameworks, parser standards, playbook taxonomy, and dashboard design
Lead platform-specific content roadmaps (Google SecOps, Sentinel, AWS) aligned to customer coverage targets
Serve as the senior technical escalation point for all Security Solution Engineer — SIEM/SOAR technical challenges — including parsers, detection logic, SOAR automation, API integrations, and custom scripting
Partner with the FDE and SE&A teams to translate customer-specific findings into reusable, scalable content
Evaluate new data sources, integrations, and vendor partnerships for content expansion
Drive adoption of AI-assisted content generation tooling and establish quality review standards
Mentor Security Solution Engineers — SIEM/SOAR and contribute to hiring and technical growth of the team
Required Skills & Qualifications
Technical & Industry Expertise
5+ years in detection engineering and/or content architecture with SIEM platform expertise
Demonstrated expertise defining content strategy and architecture across multiple SIEM platforms (Google SecOps, Sentinel, and/or others)
Deep proficiency in detection logic, parser development, SOAR automation, and REST API integrations
Experience leading platform content roadmaps and driving adoption of AI-assisted content tooling
Strong scripting and development skills (Python, cloud functions, APIs)
Track record of mentoring engineers and elevating team technical standards
Experience translating cross-customer needs into scalable, reusable content
Soft Skills
Strong problem-solving and troubleshooting skills with a bias toward action
Excellent customer-facing communication and collaboration abilities
Ability to thrive in a fast-paced, high-performance startup environment
Passion for cybersecurity, automation, and continuous improvement
Education & Certifications
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent practical experience)
Relevant certifications such as CISSP, CISM, GIAC certifications, Google Cloud Professional, Microsoft SC-200/AZ-500, or AWS Certified Solutions Architect are a plus
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and next-generation security platforms
Collaborate with a talented and innovative team focused on continuously improving security operations
Competitive salary and benefits package
A culture of growth and development, with opportunities to expand your expertise in AI, cybersecurity, and engineering
Be part of building something new — TENEX's Forward Deployed Engineering organization is a greenfield opportunity to define how enterprise security is delivered at scale
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
Forward Deployed Security Architect
Location
Kansas City, MO SOC; Sarasota, FL HQ; Scottsdale, AZ
Employment Type
Full time
Location Type
Hybrid
Department
FDE
Overview
Application
Company Overview:
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
Culture is one of the most important things at TENEX.AI—explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
This role is perfect for those already in the Phoenix AZ, Sarasota, FL or Kansas City, MO metro area, or eager to join us. Immerse yourself in a high-performance environment built on integrity, innovation, and a relentless drive to protect our customers.
About the Role
As a FDE Security Solution Architect at TENEX, you design security architectures, lead high-stakes advisory engagements, and serve as the senior technical escalation point for the SE&A team across one or more assigned security domains. You are a force multiplier — elevating the team's technical quality while maintaining deep hands-on expertise.
Job Responsibilities
All responsibilities of a Security Solution Engineer — Cloud, AI, Network, Endpoint & Identity, with ownership of more complex customer environments and higher-stakes advisory engagements
Design and validate security architectures across one or more assigned domains — making tool selection, integration, and configuration recommendations across Cloud (Wiz, SCCE, Defender for Cloud), AI Security (WitnessAI, ModelArmor, Purview), Network (ExtraHop, CEP), Endpoint (ENT.AI, Defender for Endpoint, Thinkst Canary), and Identity (Defender for Identity)
Lead higher-stakes advisory engagements — board briefings, security roadmap presentations, BC/DR reviews, and vendor risk assessments
Serve as the senior technical escalation point for engineering and advisory challenges within the team
Partner with Field CISOs on executive-level customer relationships and strategic security planning
Identify reusable patterns from customer engagements and contribute to team-wide methodology and playbooks
Support pre-sales technical conversations and solution scoping when needed
Mentor Security Solution Engineers and contribute to the technical growth of the SE&A team
Required Skills & Qualifications
Technical & Industry Expertise
5+ years in information security with significant advisory or architecture experience
Demonstrated expertise designing security architectures across one or more domains (cloud, AI, network, endpoint, identity)
Experience leading executive-level advisory engagements including board briefings and security roadmap development
Strong familiarity with compliance frameworks (SOC 2, NIST, ISO 27001, CMMC)
Track record of partnering with sales teams on solution design and pre-sales technical conversations
Proven mentorship and team leadership experience
Soft Skills
Strong problem-solving and troubleshooting skills with a bias toward action
Excellent customer-facing communication and collaboration abilities
Ability to thrive in a fast-paced, high-performance startup environment
Passion for cybersecurity, automation, and continuous improvement
Education & Certifications
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent practical experience)
Relevant certifications such as CISSP, CISM, GIAC certifications, Google Cloud Professional, Microsoft SC-200/AZ-500, or AWS Certified Solutions Architect are a plus
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and next-generation security platforms
Collaborate with a talented and innovative team focused on continuously improving security operations
Competitive salary and benefits package
A culture of growth and development, with opportunities to expand your expertise in AI, cybersecurity, and engineering
Be part of building something new — TENEX's Forward Deployed Engineering organization is a greenfield opportunity to define how enterprise security is delivered at scale
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside.
Culture is one of the most important things at —explore our culture deck at to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.
About the Role
As a Forward Deployed Data Engineer — SIEM/SOAR, you build the content that powers TENEX's MDR delivery. From detection rules and log parsers to SOAR playbooks, dashboards, and custom API integrations, your work is what makes the platform intelligent. You are also a technical trainer — helping customers understand the content they're running and the platform they're operating.
Job Responsibilities
Author, tune, and maintain detection rules, correlation logic, and threat content across Google SecOps and Microsoft Sentinel
Build and validate log parsers for new data sources integrated into customer environments
Develop and maintain SOAR playbooks, automation workflows, and dashboards for common alert types and operational use cases
Build cloud run functions, scripts, and API integrations where native connectors or content do not exist
Collaborate with Deployment Engineers to ensure content is ready for new customer go-lives
Monitor detection coverage gaps and proactively develop content to address them
Incorporate threat intelligence and adversary TTPs (MITRE ATT&CK) into detection logic
Serve as an advanced enablement resource for customers — training them on detection content, dashboards, and platform capabilities at a deeper technical level
Document all content with clear metadata, use cases, and tuning notes
Support AI-assisted content generation workflows with human review as the quality gate
Required Skills & Qualifications
Technical & Industry Expertise
3+ years in detection engineering, content engineering, or security operations
Strong proficiency in SIEM detection rule development — YARA-L for Google SecOps, KQL for Sentinel, or similar
Experience building and maintaining SOAR playbooks and automation workflows
Proficiency with log parser development for diverse data source types
Knowledge of MITRE ATT&CK framework and its application to detection content
Experience with Python, cloud run functions, and REST API integrations
Experience building security dashboards for operational use cases
Understanding of threat intelligence and how TTPs translate into actionable detection logic
Soft Skills
Strong problem-solving and troubleshooting skills with a bias toward action
Excellent customer-facing communication and collaboration abilities
Ability to thrive in a fast-paced, high-performance startup environment
Passion for cybersecurity, automation, and continuous improvement
Education & Certifications
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent practical experience)
Relevant certifications such as CISSP, CISM, GIAC certifications, Google Cloud Professional, Microsoft SC-200/AZ-500, or AWS Certified Solutions Architect are a plus
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and next-generation security platforms
Collaborate with a talented and innovative team focused on continuously improving security operations
Competitive salary and benefits package
A culture of growth and development, with opportunities to expand your expertise in AI, cybersecurity, and engineering
Be part of building something new — TENEX's Forward Deployed Engineering organization is a greenfield opportunity to define how enterprise security is delivered at scale
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We combine cutting-edge AI with human expertise to deliver security operations that are better, faster, and more cost-effective than traditional approaches.
We're a fast-growing startup backed by industry experts and top-tier investors led by Crosspoint Capital. Our team is mission-driven, customer-obsessed, and building something that matters — a new standard for how security operations should work.
Culture is one of the most important things at TENEX.AI — explore our culture deck at to witness how we embody our values every day.
This role is perfect for those already in the Sarasota, FL or Kansas City, MO metro area, or eager to join us. Immerse yourself in a high-performance environment built on integrity, innovation, and a relentless drive to protect our customers.
About the Role
As a Forward Deployed Implementation Engineer at TENEX, you are the engine that gets customers live. You will execute end-to-end platform deployments, onboard log sources, load TENEX's library of security content, and train customers so they get value from day one. This is a hands-on, customer-facing technical role for engineers who love seeing things work.
Job Responsibilities
Execute end-to-end platform deployments across Google SecOps and/or Microsoft Sentinel for new customers
Onboard log sources, configure data connectors, and validate ingestion pipelines
Load and deploy existing TENEX content into customer environments — including parsers, dashboards, detections, and playbooks developed by the Security Solution Engineers — SIEM/SOAR
Work from standardized playbooks to deliver MDR coverage within target SLOs
Troubleshoot connectivity, ingestion, and configuration issues during deployment
Enable customers through hands-on training — teaching them to navigate, understand, and get value from their deployed platform
Document deployment configurations and handoff notes for the ongoing support team
Manage multiple concurrent customer deployments depending on complexity and platform
Escalate technical blockers to Senior Engineers or Manager when appropriate
Required Skills & Qualifications
Technical & Industry Expertise
2+ years in cybersecurity, IT operations, cloud engineering, or a related technical field
Hands-on experience with SIEM platforms, particularly Google SecOps and/or Microsoft Sentinel
Experience with log source onboarding, data connectors, and ingestion pipeline configuration
Familiarity with data pipeline technologies such as Bindplane, OpenTelemetry, Cribl, or similar
Scripting experience in Python, Bash, or similar languages
Understanding of networking fundamentals and security operations workflows
Experience with cloud platforms (GCP, Azure, and/or AWS)
Soft Skills
Strong problem-solving and troubleshooting skills with a bias toward action
Excellent customer-facing communication and collaboration abilities
Ability to thrive in a fast-paced, high-performance startup environment
Passion for cybersecurity, automation, and continuous improvement
Education & Certifications
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or a related field (or equivalent practical experience)
Relevant certifications such as CISSP, CISM, GIAC certifications, Google Cloud Professional, Microsoft SC-200/AZ-500, or AWS Certified Solutions Architect are a plus
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and next-generation security platforms
Collaborate with a talented and innovative team focused on continuously improving security operations
Competitive salary and benefits package
A culture of growth and development, with opportunities to expand your expertise in AI, cybersecurity, and engineering
Be part of building something new — TENEX's Forward Deployed Engineering organization is a greenfield opportunity to define how enterprise security is delivered at scale
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
Threat Detection Engineer
Location
Sarasota, FL HQ; Kansas City, MO SOC
Employment Type
Full time
Location Type
Hybrid
Department
Security Operations
Overview
Application
About Tenex: TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape.
We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside
About the Role: Tenex is seeking a highly motivated and skilled Threat Detection Engineer to join our growing Security Operations team. In this critical role, you will be responsible for proactively identifying and mitigating security threats by developing and implementing advanced detection rules (YARA-L). You will work with our Security Operations team and leverage your deep understanding of attack methodologies, security vulnerabilities, and log analysis to enhance security posture and protect assets.
Culture is one of the most important things at TENEX.AI—dive into our culture deck at culture.tenex.ai to see how we live it every day, with a deep emphasis on the collaboration and community that only in-person work delivers.
Responsibilities:
Design, develop, implement, and maintain custom detection rules, correlation searches, and alerts within Google Security Operations (SecOps) to identify malicious activity, security incidents, and policy violations.
Utilize your expertise in the SecOps detection engine and YARA-L syntax to create efficient and effective detection logic.
Analyze large datasets of security logs and events from various sources (e.g., cloud platforms, endpoint detection and response (EDR), network devices, applications) to identify patterns and anomalies indicative of threats.
Stay up-to-date with the latest threat intelligence, attack techniques, and security trends to proactively develop new detection strategies.
Collaborate closely with Security Analysts to tune detections logic based on incident analysis and threat landscape changes.
Contribute to the development and maintenance of security documentation, including YARA-L rules, response strategies, playbooks, and operational procedures.
Participate in the evaluation and integration of new security tools and technologies.
Automate detection creation, threat intelligence gathering, and rule deployment.
Provide mentorship, training, and guidance to junior team members.
Qualifications:
Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent practical experience).
Minimum of 5 years of experience in a security operations role, with a strong focus on threat detection and analysis.
Proven experience developing and implementing YARA-L rules within Google Security Operations (SecOps) is essential.
Experience with threat intelligence and its integration into detection strategies.
Deep understanding of security principles, common attack vectors, and threat actor tactics, techniques, and procedures (TTPs).
Strong analytical and problem-solving skills with the ability to analyze complex security logs and identify meaningful patterns.
Proficiency in scripting languages such as Python or similar for automation and analysis.
Experience working with various security technologies and data sources, including but not limited to:
Cloud security platforms (e.g., GCP, AWS, Azure)
Endpoint Detection and Response (EDR) solutions
Security Information and Event Management (SIEM) systems
Network security devices (firewalls, intrusion detection/prevention systems)
Identity and Access Management (IAM) systems
The ability to effectively communicate technical information to both technical and non-technical audiences.
Ability to work independently and as part of a team in a fast-paced environment.
Preferred Qualifications:
Relevant security certifications such as Security+, CySA+, GCIH, GCIA, or similar.
Familiarity with MITRE ATT&CK framework and its application in developing detection rules.
Experience with SOAR (Security Orchestration, Automation and Response) platforms.
Knowledge of data science and machine learning concepts as applied to security analytics.
Why Join Us?
Opportunity to work with cutting-edge AI-driven cybersecurity technologies and Google SecOps solutions.
Collaborate with a talented and innovative team focused on continuously improving security operations.
Competitive salary and benefits package.
A culture of growth and development, with opportunities to expand your knowledge in AI, cybersecurity, and emerging technologies.
If you're passionate about combining cybersecurity expertise with artificial intelligence and have experience with Google SecOps and Chronicle, we encourage you to apply!
Apply for this Job
Powered by
Privacy PolicySecurityVulnerability Disclosure
Listed by TENEX.AI for a position based in the United States. Employers on this board attest they are hiring domestically.
Select a role
The full posting opens here — pay, setting and the full description, without leaving the list.