Pre-sales support: assist senior engineers in scoping conversations, technical demos, and proof-of-concept exercises with prospective customers
Solution design assistance: help draft architecture diagrams, configuration designs, and statements of work under senior architect guidance
Deployments: lead and co-lead tenant build-outs, integrations, and migrations across our partner stack (EDR, SASE, IAM, WAF, SIEM, ITDR, NDR, EASM)
Configuration and hardening: apply our standard baselines, customize for customer requirements, document the result
Customer enablement: run training and knowledge-transfer sessions for customer admins post-deployment
Runbook authorship: every deployment improves the next one — you'll write and update reference configurations, runbooks, and change logs
Escalation coordination: work with vendor SE/TAM teams when issues need OEM-level support
Minimum Qualifications
1–3 years of hands-on work in a security tools role — could be a customer admin, a partner/SI engineer, or another vendor's deployment team
Hands-on exposure to at least one of these domains (one is enough — we'll build out the rest):
Endpoint Detection & Response (EDR / XDR)
SASE / SWG / Secure Web Gateway / CASB
Identity & Access Management / SSO / MFA
Web Application Firewall, CDN, DDoS protection
SIEM, log management, detection engineering
Vulnerability management / EASM
Active Directory security / ITDR
Network Detection & Response
Solid networking and OS fundamentals: TCP/IP, DNS, TLS, HTTP, Windows/Linux/macOS basics
Customer-facing comfort: you can stand in front of a client room and explain what you're doing without panicking
Documentation discipline: you write down what you did and why, because the next engineer is going to inherit it
Nice to have (not required)
Any vendor certification at associate/professional level: CrowdStrike CCFA, Netskope NCSP, Okta Professional, Akamai WSA, Google SecOps Practitioner, Microsoft SC-200, Fortinet NSE 4, Splunk Power User, etc.
Cloud platform familiarity — GCP, AWS, or Azure
Scripting in Python, PowerShell, or Bash
API and IaC exposure (Postman, Terraform, Ansible)
Experience presenting to non-technical stakeholders