Lead offensive and defensive security engineering for a threat-hunting product: emulate attackers, perform threat research, design workflows, validate detection accuracy, run penetration tests and simulations, collaborate with data science, and guide product teams on security best practices.
About Us
System Two Security is driving SOC transformation with its unique application of AI computing with an initial focus on generative AI powered proactive threat research, threat analysis and iterative threat hunting. The product’s purpose-built language agents respond to new threat actors and attack patterns within minutes with its agentic workflows delivering end-to-end threat detection and containment from integrated feeds of raw cyber threat advisories. Early users of the product include prominent MSSPs, and enterprise SOCs across retail, healthcare, SaaS and technology verticals. It is based in Palo Alto, CA and is venture funded by The Hive.
Job Description
System Two Security is looking to hire a Principal Security Engineer with a wide expertise in both offensive and defensive measures in enterprise cybersecurity. The Principal Security Engineer is essential in enhancing development efforts for our flagship threat hunting product, working closely with Data Science and Data teams. This role puts you in a central role as the in-house expert focused on providing solution direction and validation for the System Two Security’s backend systems supporting the product. A key outcome is improving system accuracy.
Responsibilities
- Narrative Building: Integrate defensive tactics and controls with the threats and vulnerabilities into a single narrative.
- Emulation: Emulate the tools and techniques of attackers in the most realistic way possible.
- Threat Intelligence Research: Utilize threat intelligence and security research to stay informed about emerging threats, vulnerabilities, industry best practices, and regulations. Engage with peers and industry groups that share threat intelligence analytics. Conducting research to identify potential security threats
- Workflow Design: Develop efficient workflows for the threat hunting system.
- Accuracy Analysis: Assess and improve the accuracy of the S2S backend systems.
- Collaboration: Partner with the data science team to align efforts.
- Reporting: Communicate findings and insights effectively.
- Continuous Improvement: Seek ways to enhance cybersecurity practices within the product.
- Guidance: Provide guidance on industry standards and best practices to product managers and application developers.
- Design and execute testing and simulations: Penetration tests, technical controls assessments, cyber exercises, or resiliency simulations, and contribute to the development and refinement of assessment methodologies, tools, and frameworks
Required Skills
- Bachelor's degree in computer science, information technology, or a related field.
- 5+ years of work experience.
- Extensive experience in the field of cybersecurity.
- Experience in one or more technical roles in the areas of Security Operations, Threat Intelligence, Penetration Testing, Red Teaming, Purple Teaming, Threat Hunting or Incident Response.
- Experience with Threat Research and detection engineering.
- Experience in validation systems to reduce False Positives.
- Experience querying log sources within large centralized logging platforms, e.g. Splunk, Elastic, Cloudera, SQL.
- Functional understanding of how threat actors gain access, move laterally, privilege escalate, set persistence, and evade defenses to achieve objectives.
- Ability to critically examine an organization’s systems through the perspective of a threat actor and articulate risk in a clear and precise manner.
- Excellent communication and teamwork skills.
- Ability to stay up-to-date with the latest security trends and technologies.
- Ability to manage and balance business and technical requirements.
- Highly organized with an ability to manage competing priorities.
- Hold relevant industry certifications showcasing advanced expertise in cybersecurity and offensive testing methodologies or resiliency such as:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Offensive Security Certified Professional (OSCP)
- SANS Purple Team Certified
Preferred Skills
- Master's degree in cybersecurity or a related field.
- Experience developing AI.
- Strong leadership and project management skills.
- Experience building security technology roadmaps and transitioning in new technologies.
- Understand system and network telemetry generated by SOC tools.
- Experience in other technical areas: Security Products and Services, Security, Data and IP Services, Network Operations, and Cloud and Data Center Outsourcing.
- Experience with large scale data analysis.
- Working knowledge of MITRE ATT&CK framework.
Similar Jobs
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Design, develop, test, deploy, monitor, and maintain full-stack production software using Java, Python, APIs, services, data workflows, and cloud-native components. Build automated testing and CI/CD quality gates, apply secure and maintainable engineering practices, improve observability and operational reliability, modernize legacy systems, and collaborate across product, architecture, security, data, and operations teams. Use approved AI-assisted development tools responsibly throughout the software delivery lifecycle.
Top Skills:
APIsAutomated TestingCi/CdCloud-Native TechnologiesJavaMetricsObservabilityPythonSecurity ScanningStatic AnalysisStructured LoggingTracing
Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Designs, develops, debugs, and verifies embedded software and firmware for aerospace systems. Leads test architecture, verification strategies, certification activities, audits, design reviews, and bench setup. Evaluates emerging technologies, influences software architecture, automates processes with generative AI, and guides engineers while managing cross-functional stakeholders, quality, cost, and schedule objectives.
Top Skills:
CC++ChatgptDebuggersDo-178B/CEmbedded SoftwareEmbedded SystemsFirmwareLarge Language ModelsMatlabMulticore ProcessorsNatural Language ProcessingPythonSimulatorsVectorcast/Cover
Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Leads multiple aerospace datalink product development teams within an Aircraft Communication, Navigation and Surveillance center of excellence. Oversees avionics system and software development, program execution, quality, budgets, cost and cycle-time reduction, Agile transformation, digital engineering adoption, innovation, stakeholder engagement, and talent management. Requires strong avionics expertise, aerospace software design experience, knowledge of DO-178B/C and ARP4754A, and demonstrated technical and people leadership.
Top Skills:
AgileAIAircraft SystemsArp4754AAutomationAvionicsDigital ThreadDigital TwinHoneywell Operating SystemLean Product DevelopmentModel-Based Systems Engineering (Mbse)Rtca Do-178B/C
What you need to know about the Pune Tech Scene
Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.


