SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
7AI is a foundational AI security company founded in 2024 by Cybereason co-founders Lior Div and Yonatan Striem-Amit. The company emerged from stealth in February 2025 with a platform that pairs a federated SIEM with AI agents capable of detecting, investigating, responding to, and hunting threats, complemented by dedicated threat hunting and threat intelligence capabilities. Backed by $166 million in funding from Index Ventures and Blackstone, 7AI is building the AI foundation for security operations in the agentic era.
As a Security Analyst (Tier 2), you will validate and extend the work of 7AI's AI agents, investigating malicious activity they detect and hunting for emerging threats in customer environments. You'll work directly with customers ranging from SOC analysts to CISOs to triage alerts and resolve incidents. Your responsibilities include analyzing and validating AI agent investigations for accuracy and completeness, correlating data across cloud, endpoint, identity, and network sources to build comprehensive attack pictures, investigating malicious activity and assessing risk prevented for customers, using 7AI's agents to hunt for emerging threats and feeding findings back into product detections, assisting customers with threat monitoring and alert prioritization during active incidents, reviewing logs and findings to proactively identify threats and anomalies, communicating with customers across technical backgrounds, helping build repeatable processes as the team scales, collaborating with Engineering and Product teams to share customer feedback and tune the AI platform, and staying current on emerging threats including AI-driven attacks.
This is an early-stage opportunity where your work will directly shape 7AI's direction alongside security veterans who have built similar platforms before. The culture emphasizes respect, collaboration, and a shared commitment to excellence.
REQUIREMENTS:
- 2+ years of experience in security operations
- Comfortable with on-call weekend shifts as needed
- Hands-on experience investigating alerts across endpoint, network, identity, email, and cloud sources, including intrusion detection systems and endpoint protection platforms
- Strong understanding of security monitoring tools such as XDR, SIEM, IDS/IPS, and IDP
- Familiarity with log and telemetry concepts
- Working knowledge of common attack techniques and frameworks like MITRE ATT&CK, and incident triage methodologies
- Strong analytical and problem-solving skills with ability to verify AI-driven analysis and make independent security decisions
- Experience querying SIEM data with SPL, KQL, FQL, or SQL
- Familiarity with malware analysis methods
- Strong interpersonal skills with service-oriented mindset
- Track record of collaborating well in a team
NICE TO HAVE:
- Prior experience in a managed services environment
- Incident handling experience
- Relevant certifications: Security+, GSEC, or GCIH