TENEX
Cybersecurity
ForwardDeployedDataEngineer
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Forward Deployed Data Engineer at TENEX. Skills: Detection engineering, Content engineering, SIEM, SOAR. Author detection rules. Tune detection rules”
Industry & Context.
Problem-solving; Troubleshooting
What They're Looking For.
Must Have
3+ years in detection engineering, 3+ years in content engineering, 3+ years in security operations, Proficiency in SIEM detection rule development, Experience building SOAR playbooks, Experience maintaining SOAR playbooks, Experience with log parser development, Knowledge of MITRE ATT&CK framework, Experience with Python, Experience with cloud run functions, Experience with REST API integrations, Experience building security dashboards, Understanding of threat intelligence
Nice to Have
CISSP certification, CISM certification, GIAC certifications, Google Cloud Professional certification, Microsoft SC-200 certification, Microsoft AZ-500 certification, AWS Certified Solutions Architect certification
What You'll Do.
Author detection rules
Maintain detection rules
Author correlation logic
Tune correlation logic
Maintain correlation logic
Author threat content
Maintain threat content
Develop SOAR playbooks
Maintain SOAR playbooks
Develop automation workflows
Maintain automation workflows
Build cloud run functions
Build API integrations
Collaborate with Deployment Engineers
Monitor detection coverage gaps
Develop content for gaps
Incorporate threat intelligence
Incorporate adversary TTPs
Train customers on content
Train customers on dashboards
Train customers on platform
Support AI-assisted content generation
How You'll Work.
Team & Collaboration
Collaboration with customers; Collaboration with Deployment Engineers
Communication Scope
Customer-facing communication; Technical training
Full Job Description
COMPANY OVERVIEW: TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the AI-Native MDR landscape. We’re a fast growing startup backed by industry experts and top tier investors led by Crosspoint Capital Partners and also backed by Shield Capital, DTCP (formerly Deutsche Telekom Capital Partners), Deepwork Capital, and the Florida Opportunity Fund. Seed round led by Andreessen Horowitz (a16z). As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside. Culture is one of the most important things at TENEX.AI http://TENEX.AI—explore our culture deck at culture.tenex.ai http://culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work. ABOUT THE ROLE As a Forward Deployed Data Engineer — SIEM/SOAR, you build the content that powers TENEX's MDR delivery. From detection rules and log parsers to SOAR playbooks, dashboards, and custom API integrations, your work is what makes the platform intelligent. You are also a technical trainer — helping customers understand the content they're running and the platform they're operating. JOB RESPONSIBILITIES - Author, tune, and maintain detection rules, correlation logic, and threat content across Google SecOps and Microsoft Sentinel - Build and validate log parsers for new data sources integrated into customer environments - Develop
Applying for this Forward Deployed Data Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about TENEX?
Real rants from real employees. Read before you apply.