Job Summary
Join our brand new D&R team and help service our biggest customers, who trust us to offer a tailored service responding to high-severity threats across their enterprises. As a leading AI SOC platform covering the full SecOps lifecycle from triage to response, Intezer blends deep security expertise with cutting-edge AI. We investigate every alert at forensic depth, disrupting the traditional MDR market and empowering security teams at companies like Nvidia, MGM Resorts, Salesforce, and Equifax. If you're excited to jump in, do high-impact work, and help shape how modern SOCs operate as we grow fast, we'd love to have you.
Responsibilities
- Investigate and resolve high-severity threats escalated by our AI SOC platform across major enterprise customers
- Lead triage, containment, and remediation of live incidents, working directly with customer security teams
- Write and maintain playbooks, detection content, and escalation procedures under the direction of the Head of Detection & Response
- Communicate findings clearly to customer SOC teams and stakeholders, translating technical detail into risk and recommended actions
- Feed real-world incident learnings back to Product and Research to improve detection logic and the platform itself
- Use AI-native tooling and automation to scale your own output, and help shape how the team works with it
- Participate in an on-call rotation for critical customer incidents
What We're Looking For
- 5+ years in security operations, incident response, or threat detection, ideally handling high-volume, high-severity incidents
- Background from an MSSP, MDR provider, IR consultancy, or in-house enterprise SOC
- Hands-on experience across the IR lifecycle: detection, triage, forensics, containment, remediation, and post-incident reporting
- Working knowledge of the modern threat landscape (ransomware, cloud intrusions, identity-based attacks, supply chain compromise)
- Experience with EDR, SIEM, and SOAR tooling and how detections flow through a modern SOC
- Genuine interest in applying AI/LLM tools to security operations, whether automating enrichment, building triage pipelines, or using AI-assisted analysis in investigations
- Comfortable working directly with enterprise customers, including under pressure during active incidents
- Familiarity with malware analysis and threat intelligence concepts (you don't need to reverse binaries, but you should speak the language)
- Self-directed and comfortable in a fast-moving startup where processes are still being built
E-mail maxb@Intezer.com with your application.
