Cybersecurity Engineer (Detection & Response)

Posted 6 Days Ago
Be an Early Applicant
2 Locations
Hybrid
Mid level
Artificial Intelligence • Software • Automation
The Role
Build and operate the company’s corporate cybersecurity program, including SIEM/SOAR detection and response, endpoint protection, MDM, identity and Zero Trust controls, vulnerability management, cloud and SaaS security, incident investigation, infrastructure reviews, documentation, and audit support.
Summary Generated by Built In
Why we exist:

Swarmer develops software that makes drones autonomous and allows them to operate together, in large, coordinated teams — no pilots needed. Our technology has been battle-tested in Ukraine— the world’s most intense proving ground for drone warfare.

In March 2026, we became the first Ukrainian defense startup to go public on NASDAQ, following a $15M Series A — the largest investment in a Ukrainian defense tech company since the start of the war.

Working at Swarmer means operating at the intersection of engineering rigor and frontline reality. The problems and environments are complex, and the stakes are very real. We built this software to enable democratic nations to defend themselves.

If you are motivated by building resilient systems that matter and by seeing the direct impact of your work, you’ll find purpose here.

What we’re looking for:

We're looking for an experienced Cybersecurity Engineer to join our team. You'll be responsible for defending our endpoints, identities, SaaS stack, networks, and cloud environment against the people actively trying to breach them. Product security lives with a separate team, so your focus stays sharp: keep the corporate perimeter tight.

This is a builder's role, not a maintainer's. You'll stand up and run our detection stack (SIEM/SOAR, EDR), lock down and manage the device fleet (MDM, hardening), and design identity controls built on ZeroTrust principles (SSO, MFA, ZTNA).

You won't be handed a mature security program to babysit. You'll design it, implement it, and operate it, with recognized frameworks as your guardrails and real-world attack patterns as your test cases.

What you’ll do:
  • Own and continuously improve our SIEM/SOAR capabilities, including log source onboarding, detection rules and correlation logic, alert tuning, dashboards, automated response workflows, and integration across the security stack

  • Monitor and analyze security events and logs to catch anomalies and potential threats; investigate, contain, and remediate incidents, documenting timelines, root causes, and lessons learned

  • Deploy and manage endpoint and server protection across the fleet (EDR/NGAV, MDM), including policy enforcement, compliance configuration, and hardening baselines (encryption, security policies, benchmarks)

  • Implement and operate identity and Zero Trust access controls, including SSO, MFA, conditional access, ZTNA, device posture checks, RBAC, least privilege, privileged access management, and periodic access reviews

  • Manage vulnerabilities across endpoints, servers, and cloud, with risk-based prioritization and remediation tracking

  • Monitor cloud and SaaS security posture, remediate misconfigurations, and review third-party integrations and access scopes

  • Review infrastructure projects and architecture from a security lens, ensuring secure-by-default configurations

  • Document technical security controls (runbooks, hardening guides) and support internal and external audits

What we need:
  • 4+ years of hands-on experience in cybersecurity or IT infrastructure engineering, with a clear specialization in security

  • Hands-on experience with SIEM/SOAR platforms, covering log source integration, detection engineering, alert investigation, and security automation

  • Hands-on experience with EDR/NGAV platforms, covering endpoint policy management, detection, investigation, and response

  • Experience hardening and managing endpoints across Windows, macOS, and Linux, including MDM platforms

  • Experience with identity and Zero Trust access technologies, including SSO, MFA, conditional access, device posture, and ZTNA

  • Solid grasp of networking fundamentals (TCP/IP, DNS, DHCP, VPN), with practical experience configuring firewalls and other network security controls

  • Working knowledge of common attack techniques and how to detect and prevent them

  • Practical familiarity with recognized security frameworks and standards (e.g., CIS, NIST, MITRE ATT&CK)

  • Strong risk-assessment instincts, with the ability to prioritize pragmatically and explain technical issues clearly to non-technical colleagues

  • English proficiency, for documentation, vendors, and external partners

Would be an advantage:

  • Scripting ability for automating security and infrastructure tasks (Python, Bash, PowerShell, or SOAR playbooks)

  • Experience with vulnerability management platforms

  • Working knowledge of cloud and SaaS security controls (e.g., CSPM/SSPM)

  • Relevant security certifications

  • Experience working in enterprise or critical-infrastructure environments

What you’ll get:
  • Professional growth through working with cutting-edge defense technologies and exposure to international security best practices.

  • Direct impact: your work protects systems that operate in real, high-stakes environments.

  • A fast-paced environment with minimal bureaucracy and no “process for the sake of process”.

  • Competitive salary and a comprehensive benefits package (insurance, paid sick leave, 20 paid days off per year).

  • Benefits of the defense sector (e.g., reservation, etc.).

  • Flexible remote work options where possible.

How’s the hiring process going:

✔️ Recruiter Screen → ✔️ Technical Interview → ✔️ Final Interview → ✔️ Security check → ✔️ Offer

Ready to Apply?

Skills Required

  • 4+ years of hands-on experience in cybersecurity or IT infrastructure engineering, specializing in security
  • Hands-on experience with SIEM/SOAR platforms, including log integration, detection engineering, alert investigation, and automation
  • Hands-on experience with EDR/NGAV platforms, including endpoint policy management, detection, investigation, and response
  • Experience hardening and managing Windows, macOS, and Linux endpoints, including MDM platforms
  • Experience with identity and Zero Trust technologies, including SSO, MFA, conditional access, device posture, and ZTNA
  • Solid networking fundamentals, including TCP/IP, DNS, DHCP, and VPN, with practical firewall and network security configuration experience
  • Working knowledge of common attack techniques and their detection and prevention
  • Practical familiarity with CIS, NIST, and MITRE ATT&CK security frameworks and standards
  • Strong risk assessment skills and ability to explain technical issues to nontechnical colleagues
  • English proficiency for documentation, vendors, and external partners
  • Scripting ability using Python, Bash, PowerShell, or SOAR playbooks
  • Experience with vulnerability management platforms
  • Working knowledge of cloud and SaaS security controls, such as CSPM or SSPM
  • Relevant security certifications
  • Experience in enterprise or critical-infrastructure environments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Austin, Texas
54 Employees
Year Founded: 2023

What We Do

Swarmer develops software systems that allow unmanned vehicles to act autonomously and work together in large teams. Its systems are centered on ethical AI and require humans to make all life-or-death decisions, while also allowing computers to do what they do best—processing large quantities of information and reacting to the rapidly changing environment in split seconds. Swarmer has successfully demonstrated swarms of up to 25 drones working together in GNSS-denied environments. In the near future, it plans to demonstrate combined-arms operations involving 100+ drones of various kinds, working in concert to seamlessly integrate UAS, USV, UGV, and stationary launchers into a single swarm that functions as one unit. Beyond defense applications, Swarmer’s hardware-agnostic platform positions the company to transform civilian markets from precision agriculture and emergency response to infrastructure inspections and environmental monitoring.

Similar Jobs

Pfizer Logo Pfizer

Feasibility Strategic Analytics Lead (FSAL) - Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
33 Locations
121990 Employees
116K-193K Annually

Mondelēz International Logo Mondelēz International

Senior Director, Global Supply Chain Excellence Program & Focused Improvement Lead

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
29 Locations
90000 Employees
174K-287K Annually

Pfizer Logo Pfizer

Machine Learning Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
32 Locations
121990 Employees
163K-272K Annually

Pfizer Logo Pfizer

Senior Director, Innovation, Data & Analytics (IDA) Lead

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
32 Locations
121990 Employees
231K-385K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account