9 hours ago
Base Salary
$120k - $180k/yr
Responsibilities
- Own email threat detection problems end-to-end, from emerging tactics or false negatives through investigation, detection hypotheses, validation, production coverage, and measurement.
- Build evaluations, supervise model behavior, use coding agents, and automate repetitive investigative work with AI.
- Partner with Product and Engineering on signals, detection logic, edge cases, and validation.
- Work with customers and GTM teams to identify detection gaps, real-world tactics, and platform behavior.
- Turn tooling, threat-intelligence partnerships, and provider relationships into new signals and detection capabilities.
- Translate practitioner judgment into detection logic, evaluations, tests, requirements, and scalable systems.
Requirements
- Deep practitioner judgment in one or more of detection engineering, SOC/incident response, threat intelligence/OSINT, or email/messaging security.
- Ability to investigate messy detection failures, establish root cause, analyze data, and turn false-positive and false-negative cases into durable fixes.
- Ability to think as both an attacker and defender across phishing, BEC, impersonation, credential theft, account takeover, and evolving social-engineering tactics.
- Ability to convert expert judgment into scalable detection logic, evaluations, tests, requirements, and systems.
- Ability to work across security, AI, product, and customer contexts and use coding or AI agents effectively.
- Preferred experience with SPF, DKIM, DMARC, email headers, mail flow, M365/Exchange Online, Google Workspace, email-security APIs, detection-as-code, evaluation datasets or labeling, model benchmarks, LLM/ML security systems, agentic security workflows, autonomous triage, LLM evaluation systems, Agentic SOC, SIEM/TI tooling, or threat-intelligence provider partnerships.
Benefits
- Remote-first culture.
- Flexible PTO, comprehensive health benefits, and parental leave.
- Meaningful equity.
- High-growth environment with immediate technical and customer impact.
Categories
About Doppel
Doppel builds an AI-driven social engineering defense platform that unifies email security, digital risk/brand protection, and human risk management for enterprises. The SaaS platform disrupts phishing and impersonation by scanning across web and communication channels and executing automated takedowns of lookalike domains, rogue profiles, and malicious infrastructure. Privately held and founded in 2022, it is backed by a16z and Bessemer, with customers including OpenAI, United Airlines, and Coinbase.
