2 months ago
Zapopan, MexicoSenior
Responsibilities
- Define and own SOC and product security detection coverage strategy, standards, naming conventions, quality criteria, ATT&CK mappings, heatmaps, and operational KPIs.
- Build and ship detections-as-code, automated triage, agentic response workflows, and supervised automations across the detection lifecycle.
- Architect AI agent identity, scoped delegation, audit logging, kill-switch controls, guardrails, and human-oversight mechanisms.
- Support and enhance code-signing and cryptographic infrastructure for firmware signing, device identity, attestation, unlocking, HSM monitoring, certificate management, and access provisioning.
- Develop automation and tooling for signing pipelines, PQC adoption, cryptographic telemetry, KPI dashboards, audit logging, and anomaly detection.
- Embed with firmware, CI/CD, manufacturing, and operations teams to integrate SAST, SBOM, attestation, supply-chain, and security controls.
- Perform adversary emulation and purple team exercises, close detection and control coverage gaps, and strengthen governance controls.
- Lead security program components, define technical standards, influence roadmap and architecture decisions, and mentor analysts, engineers, and firmware personnel.
- Develop runbooks, training materials, and knowledge documentation and participate in operational, KPI, CISO, and Cryptographic Architecture Board governance rhythms.
Requirements
- Bachelor’s degree in Information Security, Cybersecurity, Computer Science, Software Engineering, or a related field.
- 4–6+ years of relevant hands-on experience.
- Advanced English proficiency is mandatory.
- Software development proficiency with Python preferred, API integration, infrastructure-as-code, and CI/CD pipeline development.
- Hands-on security engineering experience with detection engineering, Microsoft Sentinel and/or Splunk, incident response workflows, and end-to-end detection lifecycle ownership.
- Deep MITRE ATT&CK and MITRE ATLAS experience, including TTP mapping, coverage analysis, adversarial ML threat modeling, and AI-agent attack vectors.
- Production experience building AI agents, agent frameworks, RAG pipelines, or agentic orchestration, plus knowledge of NIST AI RMF and OWASP AI security controls.
- Working knowledge of HSM operations, certificate lifecycle management, code-signing pipelines, PKI, CA hierarchies, certificate policies, and key management.
- Ability to lead technical decisions, influence adjacent domains, align outcomes with business requirements, embed with partner teams, and coach across technical levels.
- Preferred experience with Entrust nShield, Fortanix DSM, EJBCA, KeyFactor, Venafi, COSE/CBOR, Authenticode, SBOM signing, attestation, ML-DSA, LMS/LMOD, hybrid cryptography, CNSA, NIST PQC, ISO 27001, SOX ITGC, Defender XDR, Security Copilot, Logic Apps, KQL, Azure, Splunk SPL, MCP, LangChain, Entra Workload Identities, Okta, or comparable platforms.
- Prior FDE, solutions engineering, detection engineering, or product security engineering experience in enterprise manufacturing or hardware product environments is preferred.
Benefits
- The role embeds with firmware, CI/CD, manufacturing, and operations teams and operates across Solidigm’s global technology organization.
- The position includes participation in daily, weekly, monthly, and quarterly governance activities, including CISO reviews and the Cryptographic Architecture Board.
