SlipstreamJobsFresh Startup & VC-Backed Jobs

Forward Deployed Engineer

Aistrike - Jersey City, NJ, United States - Hybrid

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

AiStrike is building AI-powered cyber defense solutions that help organizations cut through alert fatigue and automate threat investigation and response. The platform uses AI and machine learning to adopt an attacker mindset, reducing alert volume from 100 to 5 while providing analysts with context and link analysis. As a Forward Deployed Engineer, you will be a hands-on engineer embedded with customers, responsible for building and maintaining AiStrike deployments in their environments. You will work directly with Solutions Architects, Product, Engineering, and Customer Experience teams to turn proofs of concept into production systems. Key responsibilities include: - Onboarding customer data end-to-end: connecting SIEM, EDR/XDR, identity, cloud, and email sources; normalizing data to a common schema; and ensuring complete, timely data arrival - Building connectors, APIs, scripts, and webhooks for customer-specific use cases; troubleshooting integrations, pipelines, and authentication issues - Developing custom agents and automations across the full workflow: ingestion, enrichment, investigation, and outputs (reports, notifications, approvals, containment actions) - Integrating AiStrike with customer response tooling: SOAR, ticketing systems, and EDR/identity/firewall controls - Configuring environment context for analytics: privileged accounts, service accounts, VIP users, and critical assets - Owning the technical build of PoCs and production migrations across SaaS and single-tenant cloud deployments - Translating one-off customer builds into reusable connectors and product capabilities; feeding field evidence back to Product and Engineering This is a high-ownership role in a fast-growing startup. You will work directly with customers to translate loosely stated requirements into working solutions and communicate trade-offs effectively. REQUIREMENTS: - 3+ years in software engineering, security engineering, solutions engineering, forward deployed engineering, or similar role, with code running in customer production environments - Strong Python proficiency - Experience building integrations against REST APIs, SDKs, and webhooks; handling OAuth, service-principal authentication, pagination, rate limits, and retries - Hands-on experience with LLMs: prompting, tool use, structured output, and output validation - Working experience with AWS, Azure, or GCP; containers and Kubernetes - Familiarity with security telemetry from multiple sources: SIEM (Microsoft Sentinel, Splunk, Google SecOps, Elastic), EDR/XDR (CrowdStrike, Microsoft Defender), identity (Entra ID, Okta), CNAPP (Wiz), SOAR - Ability to query data in SQL and at least one SIEM query language (KQL, SPL) - Methodical debugging skills across logs, data pipelines, networking, and authentication in unfamiliar systems - Direct customer-facing experience: ability to translate requirements into solutions and explain trade-offs - Comfort with high-growth startup environment, high ownership, ambiguity, and willingness to travel domestically NICE TO HAVE: - Log normalization experience (OCSF or similar schemas) and ETL pipeline building for high-volume security data - SOAR playbook development (Palo Alto XSOAR, Splunk SOAR, Tines, Torq) - Agent frameworks or tool protocols (Model Context Protocol); self-hosted model experience (vLLM, Ollama) - Infrastructure as code (Terraform, Helm) - MSSP or multi-tenant security platform experience

Similar roles