Security Research Team Lead
Lead and develop a cybersecurity research team focused on turning enterprise security data and research into actionable insights, validated assessments, and product capabilities. Partner with product, engineering, data, and customer-facing teams while remaining involved in technical research and AI-
Responsibilities
- Manage, mentor, and grow a team of security researchers.
- Define and prioritize the research roadmap with product and engineering teams.
- Lead research into enterprise security platforms, configurations, policies, coverage, and defensive capabilities.
- Guide the collection, modeling, correlation, and validation of security data.
- Translate fragmented telemetry and configuration data into assessments, prioritized findings, and recommendations.
- Define research requirements and security logic for integrations, control assessments, and exposure prioritization.
- Establish research quality standards, validation methods, and accuracy measures.
- Shape security knowledge, reasoning logic, and evaluation methods for AI-powered capabilities.
- Lead technical customer discussions and convert feedback into research and product improvements.
- Coordinate with product, engineering, data, and customer-facing teams to deliver customer outcomes.
Requirements
- Experience managing, mentoring, and developing security researchers or a closely related technical team.
- At least 6 years of hands-on experience in cybersecurity research, security control assessment, detection engineering, exposure management, or a related field.
- Deep knowledge of enterprise security platforms, including EDR, SIEM, firewalls, IAM, and vulnerability management tools.
- Experience analyzing complex security datasets, defining data models, and correlating information across sources.
- Proficiency with Python, SQL, or similar tools for data investigation, hypothesis testing, and research validation.
- Strong technical judgment and the ability to review methods, challenge assumptions, and guide work through ambiguity.
- Experience turning research into practical product capabilities and delivering projects end to end.
- Ability to lead technical customer discussions and explain complex findings to technical and non-technical stakeholders.
- Understanding of attacker techniques, enterprise environments, cloud and identity security, and security control relationships.
Nice to have
- Red teaming, penetration testing, adversary emulation, or attack-path analysis experience.
- Experience building or evaluating AI-powered security capabilities or agentic workflows.
- Experience with automated security control assessments, exposure management, or security control validation.
- Experience collaborating with data engineering or data science teams on security data pipelines and analytics.
- Experience hiring and scaling a research team.
- Published research, open-source contributions, CVEs, or conference presentations.