Salary: £52,500 – 68,000 per year
Requirements
- 3–6 years of experience in a technical cybersecurity role, ideally spanning Security Operations and an engineering or customer-facing function.
- Demonstrable software development capability with the ability to write, review, and deploy code in a production context; Python is strongly preferred.
- Proven ability to write and tune detection rules in one or more SIEM platforms such as Splunk, Microsoft Sentinel, Elastic, or QRadar.
- Hands‑on experience building and troubleshooting integrations with cloud platforms such as AWS, Azure, or GCP, REST APIs, and common security tooling including SIEMs, EDRs, XDRs, and NDRs.
- Strong understanding of networking fundamentals, operating systems including Windows and Linux, and identity and access management concepts.
- Experience deploying or operating software in containerised environments such as Docker or Kubernetes.
- Excellent written and verbal communication skills with the ability to engage credibly with technical engineers and non‑technical stakeholders up to C‑level.
- Based in the United Kingdom with the right to work in the UK.
- Prior experience in a Forward Deployed Engineer, Customer Success Engineer, or Technical Account Manager role at a security or SaaS company is highly desirable.
- Experience supporting customer renewal engagements from a technical perspective, including building business cases, evidencing value, and closing coverage gaps ahead of renewal conversations, is highly desirable.
- Familiarity with log ingestion at scale and the operational and architectural challenges of onboarding diverse log sources across complex enterprise environments is highly desirable.
- Experience with CI/CD pipelines, Infrastructure‑as‑Code such as Terraform or Ansible, and modern DevSecOps practices is highly desirable.
- Exposure to machine learning or AI‑driven security analytics platforms is highly desirable.
- Relevant industry certifications such as CISSP, AWS Solutions Architect, GCIH, or equivalent are highly desirable.
- Experience supporting or replacing incumbent security platforms within enterprise customer transitions is highly desirable.
Responsibilities
- Lead end‑to‑end SenseOn platform deployments and complex log ingestion rollouts without customer disruption.
- Conduct architectural reviews to define deployment strategies and identify integration opportunities.
- Own the post‑sale technical relationship into steady‑state operations, delivering against technical success criteria tied to quantifiable security outcomes.
- Travel to UK and international customer sites approximately 25% of the time.
- Provide the technical evidence base and build business cases for renewals and expansions, translating platform telemetry and incident response data into clear customer outcomes.
- Proactively health‑check environments, close technical gaps, and resolve visibility issues ahead of renewal conversations.
- Collaborate with Sales Engineering to ensure continuity from pre‑sale technical validation through to post‑sale deployment.
- Write production‑quality software to build and maintain integrations across third‑party security tools, SIEMs, identity platforms, and AWS, Azure, and GCP environments.
- Contribute reusable connectors to our integration library and create custom automation to optimise security operations workflows.
- Work across backend languages, with Python preferred, and use Go, JavaScript, and Bash where valuable, leveraging RESTful APIs, webhooks, and data pipeline patterns.
- Write, tune, and maintain high‑fidelity, low‑noise SIEM detection rules by translating threat intelligence and attacker behaviour.
- Map coverage to the MITRE ATT&CK framework to address visibility gaps, and develop new detection logic with Security Operations.
- Iterate on rules post‑deployment to reduce false positives, and provide expert guidance to customers regarding their detection strategy and risk posture.
- Develop deep relationships with customer security leadership, acting as a trusted adviser across their security architecture.
- Proactively mitigate adoption risks, resolve deployment blockers, and conduct structured onboarding from platform fundamentals to advanced threat hunting.
- Monitor deployed environment health, address technical drift, and translate field experience into actionable product feedback internally.
- Partner with Sales Engineering on Proof of Value engagements, providing technical credibility to differentiate us.
- Contribute to bespoke technical demonstrations, architecture proposals, and solution designs for complex prospects transitioning from legacy platforms or traditional SIEM solutions.
- Act as a direct conduit between the field and product teams, raising well‑evidenced bugs, feature requests, and detection improvements.
- Participate in User Acceptance Testing for new platform releases to provide field‑informed quality assurance.
- Identify cross‑environment patterns to highlight new detection opportunities or platform capability gaps for the analytics backlog.
Technologies
- AI
- AWS
- Ansible
- Architect
- Azure
- Backend
- Bash
- CI/CD
- Cloud
- DevSecOps
- Docker
- GCP
- JavaScript
- Kubernetes
- Linux
- MacBook
- Machine Learning
- Python
- REST
- Security
- Splunk
- Terraform
- Windows
- DevOps
- Support
More
We are SenseOn, and this role sits at the intersection of security engineering, software development, and customer success. You will work directly with customers to deploy and configure our platform, develop integrations, and help ensure they achieve measurable security value quickly. You will report to the VP of Technology and collaborate closely with our Security Operations, Customer Success, Sales Engineering, and Product teams. This is a UK‑based role with approximately 25% travel to customer sites. We offer a competitive salary commensurate with experience, unlimited holiday allowance, a hybrid working model with flexibility around customer commitments, bi‑annual career progression reviews, a personal learning and development budget, a MacBook and necessary tooling, an enhanced pension scheme, and private healthcare through Vitality with rewards and discounts. We are an Equal Opportunity Employer and value customer obsession, excellence, courage, and doing good work together.
#J-18808-Ljbffr…
