433,997open jobs
14,907companies
65,055added this week
Browse all
Salary
$100k – $191k per year (Estimated)
Location
In office (Kansas City, Sarasota, Scottsdale)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Tenex.AI operates an artificial intelligence assisted managed detection and response service. Its agents triage alerts alongside human analysts. The company was founded by former security operations leaders.

Company Overview:

TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation, and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the MDR landscape.

We’re a fast growing startup backed by industry experts and top tier investor Andreessen Horowitz. As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round - joining now comes with limited risk and unlimited upside.

Culture is one of the most important things at TENEX.AI -explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work.

As a SOC Engineer, you'll operate across incident response, platform quality, and operational improvement - evaluating telemetry coverage, shaping response automation, handling high-severity escalations, and ensuring the tooling and workflows analysts depend on are fit for purpose. The role carries direct engagement across internal engineering teams and customers, and no shortage of hard problems to solve. We default to automation and AI wherever they produce better outcomes - and we want engineers who think the same way.

What You'll Do

  • Handle complex incident response and escalation. Take ownership of high-severity and technically complex incidents - leading investigation, driving containment decisions, and communicating findings clearly when it counts.

  • Assess and improve telemetry and logging coverage. Automate evaluation of customer environments for logging gaps and deficiencies across endpoint, network, identity, and cloud. Specify what's needed for effective detection and investigation, and work with customers and internal teams to close the gaps.

  • Ensure SIEM and detection quality. Apply deep platform knowledge to evaluate detection fidelity, data normalization, parser quality, and alert logic - identifying where coverage or quality falls short and partnering with detection engineering to address it.

  • Contribute to response automation quality. Work closely with the SOAR team to review enrichment logic, containment playbooks, and automation design - bringing an incident responder's perspective to what works under pressure and what doesn't.

  • Support technical needs across the organization. Serve as a knowledgeable resource for forward-deployed engineers, onboarding teams, and customers on questions spanning telemetry, investigation, platform behavior, and response - representing the SOC's technical depth across functions.

  • Improve SOC tooling and operational workflows. Identify friction in how analysts triage, investigate, and respond. Partner on tooling improvements, process changes, and reference content that raise consistency and quality across the team.

What You Bring

  • 5+ years in security operations, incident response, or detection engineering with demonstrated depth across multiple domains.

  • Strong fluency in logging and telemetry - able to evaluate an environment's coverage posture, identify deficiencies, and articulate what's needed for effective detection and investigation.

  • Hands-on experience with SIEM platforms (Google Chronicle, Microsoft Sentinel, and/or Splunk a plus) - enough to understand data modeling, rule architecture, and parser quality, and recognize when a deployment falls short of what our MDR SOC requires.

  • Solid understanding of response automation - enrichment pipelines, SOAR playbook structure, containment logic - and the judgment to evaluate whether automation is working as intended.

  • Working knowledge of cloud security architecture in at least one major cloud (AWS, Azure, or GCP), including native log sources and their value for investigation.

  • Scripting proficiency in Python or PowerShell for automation support, and integration work.

  • Familiarity applying AI or LLM-based tooling to security workflows - investigation assistance, alert triage, log analysis, or automation - is a strong plus.

  • Clear, confident communicator across technical and non-technical audiences - customers, engineers, and analysts alike.

Bonus Points

  • Multi-cloud breadth across AWS, Azure, and GCP security tooling and telemetry.

  • Experience with IaC (Terraform, CloudFormation) and DevSecOps practices.

  • Familiarity authoring detection runbooks, investigation guides, or SOC operating procedures.

  • Splunk Enterprise Security depth - ES notable events, risk-based alerting, correlation search architecture.

  • Container and Kubernetes security monitoring exposure.

  • Experience building or evaluating AI-assisted security tooling, agentic workflows, or LLM-augmented investigation and response.

Education & Certifications

  • Bachelor’s degree in Computer Science, Information Security, or a related field, OR equivalent work experience.

  • Relevant certifications - CISSP, GCIH, GCFE, GCDA, GREM, AWS/GCP security, or SIEM platform certifications - are a plus.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
433,997 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Kansas City
In office • 10+ years exp • Bachelor's Degree
Python
Go
JavaScript
TypeScript
C++
AI/ML
LangGraph
AutoGen
LangChain
Model Context Protocol
Embeddings
Prompt Engineering
Function Calling
AI Agents
Semantic Kernel
CrewAI
LLM
RAG
Google ADK
Hallucination
OpenAI
Human-in-the-Loop
LLM Guardrails
Tool Use
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Vector
Apply
AI, Sr Architect 1 day ago
In office • 15+ years exp • Bachelor's Degree
Python
Go
JavaScript
C++
AI/ML
LangGraph
AutoGen
LangChain
Model Context Protocol
Embeddings
Prompt Engineering
Function Calling
AI Agents
Semantic Kernel
CrewAI
LLM
RAG
Google ADK
Hallucination
Human-in-the-Loop
LLM Guardrails
Tool Use
DevOps
GCP
Azure
CI/CD
Git
AWS
Docker
Kubernetes
Vector
Apply
SOC Analyst - L1 2 hours ago
$53k – $134k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Kuwait City
DevOps
GCP
Azure
AWS
SLI/SLO/SLA
Cybersecurity
MITRE ATT&CK
Apply
$112k – $208k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • United States
Python
SQL
Scala
Databases
Snowflake
Databricks
Apache Kafka
Kafka
AI/ML
Hadoop
Spark
DevOps
Terraform
Azure DevOps
Prometheus
Azure
CI/CD
Git
AWS
Configuration Management
Cortex
GitHub
Analytics
Apache NiFi
Azure Data Factory
Apply
In office • 12+ years exp • Bachelor's Degree
AI/ML
Embeddings
LLM
RAG
DevOps
GCP
Azure
AWS
Docker
Kubernetes
Cybersecurity
GDPR
Apply
$110k – $311k per year (Estimated) • Remote/Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • San Jose • Sarasota • Kansas City
Python
Databases
Snowflake
Apache Kafka
Google BigQuery
Microsoft Fabric
BigQuery
Kafka
DevOps
Terraform
Prometheus
Azure
CI/CD
Docker
Kubernetes
Grafana
Platform Engineering
Bicep
Azure AKS
Cybersecurity
ISO 27001
SOC 2
Microsoft Entra ID
Apply
$37k – $69k per year (Estimated) • In office • Full-Time • 2+ years exp • Master's Degree • Scottsdale
AI/ML
Edge AI
Cybersecurity
Google SecOps
Management
Google Workspace
Gmail
Apply
$139k – $272k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree
Apply
$140k – $251k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree
AI/ML
LLM
Edge AI
Cybersecurity
Google SecOps
Apply
Remote/Hybrid • Full-Time • Sarasota • Scottsdale • Kansas City
Cybersecurity
GRR Rapid Response
Web3
Rollup
Marketing
Salesforce
Apply
$36k – $46k per year • In office • High School Diploma • Kansas City
Apply
$71k – $114k per year • Equity • In office • 3+ years exp • Kansas City
Apply
$84k – $169k per year (Estimated) • In office • 4+ years exp • Kansas City
Apply
Facilities Manager 3 days ago
$75k – $90k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Kansas City • Kansas City
Apply
$55k – $106k per year (Estimated) • In office • Bachelor's Degree • Kansas City
Design
AutoCAD
Apply
See all jobs
This is one of many
433,997 more open roles from verified company boards, updated every day.