We are looking for an experienced Tech Lead to drive the architecture, design, development, and delivery of a next-generation cybersecurity SaaS platform covering SIEM, EDR, XDR, security analytics, threat detection, and automated response. The tech lead will work closely with architects, product managers, security researchers, and engineering teams to build a highly scalable, secure, cloud-native platform capable of processing large volumes of security telemetry and delivering real-time detection, investigation, and response capabilities. The ideal candidate should have strong hands-on software engineering experience, a cloud-first mindset, and a solid understanding of the complete software development lifecycle, CI/CD, deployment, and release management.
The core responsibilities for the job include the following:
Technical Leadership and Architecture:
- Lead the design and development of scalable cybersecurity SaaS platforms.
- Define technical solutions and participate in architecture and design decisions.
- Translate product requirements into scalable, maintainable technical solutions.
- Drive engineering best practices around performance, reliability, scalability, security, and observability.
- Conduct architecture/design reviews and code reviews.
- Identify technical risks, dependencies, and bottlenecks and drive their resolution.
- Mentor and guide engineers and establish strong engineering practices.
Cybersecurity Platform Development:
- Strong understanding of SIEM (Security Information and Event Management).
- Experience or understanding of EDR and XDR platforms.
- Security analytics and threat detection.
- Security event/log management.
- Threat intelligence and alert management.
- Alert correlation and incident investigation.
- Detection rules, analytics, and automated security response.
- Experience building cybersecurity products or security platforms is highly preferred.
Cloud-First Development:
- Strong hands-on experience designing and developing applications using AWS and/or Microsoft Azure.
- Cloud-native architecture and services, including compute, containers, serverless, storage, and managed databases;
- Messaging, API management, IAM, networking, security, monitoring, and auto-scaling.
- Experience designing multi-tenant SaaS platforms is a strong advantage.
- Experience with Kubernetes, Docker, and Infrastructure as Code such as Terraform or CloudFormation.
Data and Security Analytics:
- Experience working with high-volume security data and distributed systems.
- Streaming and event-driven architectures.
- Kafka or similar messaging systems.
- Distributed data processing and data lake/lakehouse architectures.
- Search and analytics platforms.
- SQL and NoSQL databases.
- Real-time analytics, log ingestion, and data retention/lifecycle management.
- Experience handling large-scale security telemetry / high-EPS environments is highly desirable.
Software Development Lifecycle:
- Own and contribute to requirements analysis, technical design, development, testing, CI/CD, deployment,
- production validation, monitoring, and continuous improvement.
- Establish engineering standards for code quality, testing, documentation, security, and maintainability.
- Drive unit, integration, security, and performance testing practices.
Release and Deployment Management:
- Drive release planning and coordination across development, staging, and production environments.
- Manage versioning, branching/merging strategies, CI/CD pipelines, and deployment automation.
- Ensure environment readiness, release validation, rollback strategies, production deployment, and post-release monitoring.
- Manage hotfixes, patches, change management, and production releases.
- Experience with GitHub, GitLab, Jenkins, Azure DevOps, or similar CI/CD platforms is preferred.
DevSecOps and Security:
- Integrate security into the software development lifecycle.
- Implement secure coding and development practices.
- Support vulnerability and dependency management.
- Implement SAST, DAST, SCA, container, and infrastructure security scanning.
- Ensure secure secrets and configuration management.
- Promote DevSecOps and shift-left security practices.
Team Leadership:
- Lead and mentor a team of software engineers.
- Break down complex requirements into technical tasks.
- Provide technical guidance and review designs and implementations.
- Drive engineering quality and delivery commitments.
- Collaborate with Product, QA, DevOps, Security, and Architecture teams.
- Participate in technical interviews and help build the engineering team.
Requirements:
- Strong software engineering and system design skills.
- Strong knowledge of distributed systems and microservices.
- Experience building scalable SaaS applications.
- Strong programming experience in one or more of Java, Go, Python, or Node.js/TypeScript.
- Strong REST API and event-driven architecture knowledge.
- Strong SQL and database fundamentals.
- Experience with Git and modern development practices.
- Strong AWS and/or Azure experience.
- Kubernetes / Docker and cloud-native application development.
- CI/CD pipelines, automated testing, deployment automation, and production troubleshooting.
- Cybersecurity Knowledge: SIEM, EDR / XDR, SOC operations, security event processing, threat detection, alert correlation, incident response, threat intelligence, and security analytics.
- Knowledge of the MITRE ATT&CK framework.
Good to Have:
- Experience building a commercial cybersecurity SaaS product.
- Experience with high-scale security data ingestion and analytics.
- Experience with multi-tenant architectures.
- Experience with Kafka, Flink, Spark, Trino, ClickHouse, OpenSearch/Elasticsearch, or similar technologies.
- Experience with AI/ML-based security analytics or AI-based SOC automation.
- Experience with SOAR / automated security response.
- Knowledge of Zero Trust architecture.
- Experience with SOC 2, ISO 27001, GDPR, or similar compliance frameworks.
- Experience with 24x7 production systems and incident management.
Leadership Expectations:
- The candidate should operate at both technical and leadership levels and be comfortable owning the complete engineering lifecycle: product requirements, architecture, design, development, testing, CI/CD, release, production observability, and continuous improvement.
- The tech lead is expected to be a hands-on technical leader, not only a people manager, and should be comfortable solving complex engineering and production problems.
Preferred Profile:
- 8-12+ years of software engineering experience.
- 3+ years in a technical leadership role.
- Strong experience with cloud-native SaaS platforms.
- Strong AWS/Azure knowledge.
- Experience with cybersecurity products such as SIEM, EDR, XDR, SOAR, or security analytics.
- Strong system design and distributed systems expertise.
- Strong ownership, problem-solving, communication, and collaboration skills.
- Ability to work in a fast-paced product engineering environment.

