Cyber Defense Platforms Staff Engineer

Alnylam PharmaceuticalsCambridge, MA
$174,300 - $235,700Hybrid

About The Position

As the Associate Director (Staff Engineer) for Cyber Defense Platforms, you will own the defense technology stack end-to-end: SIEM, SOAR, EDR, DLP, email security, and anti-phishing platforms, along with the detection content, automation, and tooling that make them effective. This is a senior individual contributor role with enterprise-wide impact: every alert triaged, threat detected, and incident contained across the company depends on the systems you build and operate.

Requirements

  • 8+ years of progressive experience in security engineering, security operations, or detection engineering, with demonstrated ownership of defense and security platforms
  • Deep hands-on expertise architecting and administering: SIEM, SOAR, EDR, DLP, or email security and anti-phishing platforms
  • Strong software engineering skills in a language commonly used for security automation (e.g., Python, Go, PowerShell), with experience building production-quality integrations and tooling
  • Proven experience building and managing detection content at scale, measured against frameworks like MITRE ATT&CK
  • Track record of delivering measurable operational improvements through automation, such as reduced response times or expanded capacity without added headcount
  • Ability to operate autonomously in a build-from-zero environment and drive technical work across teams you don't manage
  • Experience standing up or modernizing a security operations stack (SIEM migration, SOAR implementation, EDR rollout) from early maturity

Nice To Haves

  • Cloud security experience, particularly AWS-native security services
  • Experience in regulated industries (pharma, biotech, healthcare, financial services)
  • Relevant certifications (e.g., GIAC GCDA/GDAT/GCIA, CISSP) or equivalent expertise

Responsibilities

  • Own the deployment, configuration, administration, and lifecycle of defense platforms including SIEM, SOAR, EDR, DLP, email security, and phishing
  • Define the platform roadmap: evaluate, deploy, integrate, and rationalize security technologies to maximize defensive coverage and operational efficiency
  • Engineer and maintain security data pipelines across the enterprise: log source onboarding, normalization, enrichment, retention, and cost management
  • Own the detection content lifecycle end-to-end: development, testing, tuning, versioning, and retirement of rules and analytics across all platforms
  • Establish detection-as-code practices, including version control, peer review, CI/CD deployment, and automated validation of content
  • Map detection coverage to MITRE ATT&CK, identify gaps, and partner with threat intel, IR, and offensive security to convert findings into durable detections
  • Design and build SOAR playbooks and workflow automation that reduce manual analyst effort and accelerate triage and response, including automated handling of user-reported phishing
  • Build internal tooling, integrations, and APIs that connect security platforms to each other and to enterprise systems
  • Set the standards for how Cyber Defense builds, deploys, and operates its technology, and serve as the technical authority for the defense technology domain
  • Lead cross-functional technical initiatives across IT, infrastructure, and engineering teams, and mentor engineers and analysts across the broader team

Benefits

  • medical, dental, and vision coverage
  • life and disability insurance
  • a lifestyle reimbursement program
  • flexible spending and health savings accounts
  • a 401(k)with a generous company match
  • paid time off
  • wellness days
  • holidays
  • two company-wide recharge breaks
  • generous family resources and leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service