The opportunity
At Braze, we have found our people. We’re a genuinely approachable, exceptionally kind, and intensely passionate crew.
What you'll do
Respond to security alerts and events: triage, contain, and help investigate - with support from senior engineers on higher-severity incidents
Follow and help improve our incident-response playbooks, and capture what you: learn so the next response goes faster
Pull the right data (cloud logs, endpoint telemetry) to reconstruct what happened and support the response
Review changes, designs, and cloud configurations for security issues, and: give practical, specific feedback to the teams making them
Operate and improve identity and access across AWS and GCP: handle access requests, run least-privilege reviews, and keep access hygiene high
Reason about IAM policies and permissions: spotting risky or over-broad access and proposing tighter alternatives
What they're looking for
- Run and tune our security tooling day to day: CrowdStrike (EDR/CSPM), SIEM, cloud-native security services, and vulnerability scanners such as Tenable
- Triage the alerts these tools produce: separate real signal from noise, tune out false positives, and escalate what matters
- Keep tooling healthy: coverage, agent deployment, integrations, and configuration
- Write small scripts (Python) to automate repetitive work and reduce manual toil