SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
7AI is building an Agentic Security Platform that deploys swarming AI agents to automate security operations and shift human analysts to higher-value work. As a Tier 3 Security Analyst, you will be a technical leader and escalation point for junior analysts, responsible for validating AI-driven security investigations, triaging alerts, and hunting for malicious activity across customer environments.
You will analyze investigations completed by 7AI's agents for accuracy and completeness, correlating data from cloud, endpoint, identity, and network sources to understand the full picture of attacks. You'll mentor junior analysts, serve as the technical expert for complex investigations, and work directly with customers ranging from SOC analysts to CISOs to resolve threats and secure their environments. Your role includes proactive threat hunting using advanced AI agents, retrospective analysis to prove maliciousness of stopped threats, and helping customers understand the security value delivered.
You will architect scalable processes to build high-functioning security operations while maintaining quality and resilience. Collaboration with Sales, Engineering, and Product teams is essential—you'll provide feedback on customer experience and help optimize the AI platform based on real-world security operations. You'll stay current with emerging cybersecurity trends, attack techniques, and AI-driven threats.
Required: 5+ years in cybersecurity operations with hands-on alert investigation across multiple sources (endpoint, network, identity, email, cloud). Strong understanding of security monitoring tools (XDR, SIEM, IDS/IPS, IDP), MITRE ATT&CK frameworks, and incident triage methodologies. Proficiency in SIEM querying (SPL, KQL, FQL, SQL) and malware analysis. Proven mentorship and collaboration skills with strong interpersonal abilities.
Preferred: Managed Services environment experience, incident handling background, and relevant certifications (Security+, GSEC, GCIH).