We are building Watcher, a coding agent security product. Watcher is deployed in production and monitors billions of agent tokens per month across engineering teams at agent-building scale-ups and multinational enterprises. Every one of those deployments involves custom engineering: integrating with the customer's coding agents and security stack, running in their cloud or on-prem environment, and tuning monitors to their workflows.
We are looking for a Forward Deployed Engineer to own that work end to end. You will be the technical face of Watcher to customers across the entire lifecycle: running technical evaluations and POCs with prospects, deploying Watcher into customer environments, building the integrations and custom capabilities they need, and providing white-glove support that turns early customers into long-term partners. You are an engineer first. When a customer needs something, your default is to build it, and then to work with the product team to decide what becomes part of the core product.
This is truly a "start-up role." You will be one of the first dedicated customer-facing engineers, you will have significant say in shaping how Apollo deploys and supports Watcher, and you can earn more responsibility quickly. As we grow, this role can develop toward leading forward-deployed engineering, solutions architecture, or core product engineering, depending on your interests.
KEY RESPONSIBILITIES
- Deployment and integration engineering (~40%)
Own customer deployments end to end: cloud, on-prem, and self-hosted backends, from architecture discussion through production rollout.
Build integrations between Watcher and customer environments: coding agent setups (Claude Code, Codex, Cursor), SIEM and security operations tooling, identity and access systems, CI/CD pipelines.
Configure and tune monitors, policies, and permissions for each customer's workflows, and validate that monitoring quality holds on their real traffic.
Debug issues in environments you don't control, often under time pressure, and drive them to resolution with the product team.
Pre-sales and technical evaluation (~30%)Run technical evaluations and POCs with prospects: scope the pilot, deploy Watcher on their agent traffic, and demonstrate concrete value (caught failures, security coverage, developer experience).
Serve as the technical counterpart to security and engineering leaders during evaluations: answer architecture and security questions, run demos on the prospect's actual use cases rather than canned examples.
Work with our AI Security & Control Engineer on security questionnaires, architecture reviews, and customer pen-test support during procurement.
Feed honest signal back into the team about why deals progress or stall technically.
White-glove support and product feedback (~30%)Be the named technical contact for key customers. Own their escalations, incident communication, and feature requests.
Build customer-specific capabilities where warranted, and drive the "should this be product?" conversation with the Engineering Manager and product engineers so one-off work compounds into the roadmap.
Turn deployment experience into leverage: documentation, deployment tooling, and runbooks that make every subsequent deployment faster and less bespoke.
Represent the voice of the customer in planning: you will know better than anyone what real security and platform teams need from Watcher.
REPRESENTATIVE PROJECTS
Land a lighthouse enterprise: Run a POC for a large enterprise with a strict security posture: scope the pilot with their security team, stand up a self-hosted backend inside their infrastructure, integrate with their SIEM, tune monitors on their traffic, and present results that convert the pilot into a production contract.
Build a reusable deployment path: After your first several deployments, turn the bespoke steps into a repeatable, documented, partially automated deployment package (infrastructure templates, integration modules, validation checks) that cuts time-to-production for new customers by more than half.
Ship a customer-driven capability into the product: Take a recurring customer request (e.g. a custom alert routing scheme or a new agent integration), build it for the customer who needs it, generalize it with the product team, and ship it as a core Watcher feature.
Rescue a wobbly account: A customer's monitors are noisy, their engineers are annoyed, and their security lead is questioning the renewal. Diagnose the root causes of their traffic, retune the configuration, fix the underlying issues with the product team, and win back their confidence.
JOB REQUIREMENTS
Strong engineering foundation. 3+ years building and shipping production software. You can work across the stack (Python and TypeScript primarily), read unfamiliar code fast, and are comfortable with cloud infrastructure, networking basics, and deployment tooling. You will regularly build under constraints you don't choose, in environments you don't control.
Genuinely good with customers. You communicate clearly with both hands-on engineers and security leadership, you stay calm and constructive when something is on fire, and customers come away trusting you. This is not a tolerance requirement; you should like this part of the job.
High agency and ownership. When a customer is blocked, you don't wait for a ticket to be routed. You find the problem, fix it or escalate it with a proposed solution, and follow through until it's resolved.
Startup pace. You are excited about a fast-moving environment, comfortable with ambiguity and changing priorities, and willing to grind when it matters, including occasionally at customer-driven hours.
Judgment on custom vs. core. You can tell the difference between a request worth building bespoke, a request that should become a product, and a request to push back on, and you can deliver that pushback to a customer gracefully.
Strong written communication. Deployment docs, incident updates, and POC reports need to be clear and precise.
Comfortable leveraging AI heavily for engineering and customer work, while holding the output to a high standard.
Strong nice-to-havesPrior FDE, solutions engineering, or professional services experience, especially at a developer-tools, security, or infrastructure company.
Experience deploying software into enterprise environments: on-prem, VPC deployments, SSO/identity integration, security reviews, procurement processes.
Familiarity with the enterprise security stack (SIEM, DLP, endpoint tooling) and with how security teams evaluate vendors.
Experience with coding agents as a power user or builder. You have used Claude Code, Codex, Cursor, or similar tools heavily, or built agent tooling yourself.
Pre-sales exposure: you have run POCs or technical evaluations and know how to demonstrate value on a prospect's terms.
Willingness to travel occasionally to customer sites.
Explicitly not requiredFormal AI safety background. We need excellent customer-facing engineers who can learn the AI safety context.
Sales experience or quota history. You support deals technically; you don't carry a number.
Deep expertise in every technology we use. We care about demonstrated ability to learn fast in unfamiliar environments, which is the core skill of this job.
BENEFITS
This role offers market competitive salary, equity, and competitive benefits.
Salary: San Francisco: $222,000 - $290,000; London: £149,000 - £195,000
Our engineers effectively have an unlimited token budget. If a better result costs more compute, use it.
Flexible work hours and schedule
Unlimited vacation
Unlimited sick leave
Up to 6 months of paid parental leave
Comprehensive health, dental and vision insurance
Retirement savings with competitive employer matching (e.g. 401(k) for US employees)
Lunch, dinner, and snacks are provided for all employees on workdays
Paid work trips, including staff retreats, business trips, and relevant conferences
A yearly $1,000 (USD) professional development budget
Relocation support and visa fees (if applicable)
LOGISTICS
Time Allocation: Full-time
Location: This is an in-person role working out of our London or San Francisco office, with occasional travel to customer sites. We offer flexible working hours and some wfh arrangements.
Visa sponsorship: We sponsor visas in both the UK and US. Sponsorship isn't guaranteed for every role or candidate, but if we make you an offer, we'll work with you to find the right visa route.
Skills Required
- 3+ years building and shipping production software
- Strong engineering foundation with Python and TypeScript
- Ability to work across the stack and read unfamiliar code quickly
- Comfort with cloud infrastructure, networking basics, and deployment tooling
- Strong customer communication skills with engineers and security leadership
- High agency and ownership in resolving customer problems
- Comfort working at startup pace with ambiguity, changing priorities, and occasional customer-driven hours
- Ability to distinguish bespoke requests from core product opportunities and push back appropriately
- Strong written communication skills
- Comfort leveraging AI heavily while maintaining high quality standards
- Prior forward-deployed engineering, solutions engineering, or professional services experience
- Experience deploying software into enterprise environments, including on-premises or VPC deployments, SSO or identity integration, security reviews, and procurement processes
- Familiarity with enterprise security tooling such as SIEM, DLP, or endpoint tools
- Experience using or building coding agents such as Claude Code, Codex, or Cursor
- Pre-sales experience running proofs of concept or technical evaluations
- Willingness to travel occasionally to customer sites
What We Do
Apollo Research is an AI safety organization and evaluations start-up focused on reducing risks from scheming frontier AI. The company conducts fundamental research into the science of scheming and operates a technical evaluation and research platform to detect deception and audit high-risk failure modes in advanced AI systems, with the mission of advancing AI alignment and safeguarding humanity from potential risks of scheming AI.







