ABOUT 7AI
7AI is the foundational AI security company. Founded in 2024 by Cybereason co-founders Lior Div and Yonatan Striem-Amit, we came out of stealth in February 2025 to take on the non-human work of the SOC. Our platform pairs a federated SIEM with AI agents that detect, investigate, respond, and hunt, plus dedicated threat hunting and threat intelligence, with humans on the loop.
Backed by $166 million in total funding from investors including Index Ventures and Blackstone, we're building the AI foundation for security operations in the agentic era, and we're still early. That's the appeal: you'll join at a pivotal stage where your work shapes what 7AI becomes, alongside security veterans who've built this before. Our culture runs on respect, collaboration, and a shared bar for excellence, all pointed at one goal, delivering real outcomes for the customers who trust us to defend them.
OVERVIEW
7AI's AI agents take on a lot of the SOC's non-human work, but scaling that trust requires senior analysts who can validate the hardest cases and mentor the team doing it. As a Tier 3 Security Analyst, you'll be the technical lead and escalation point for junior analysts reviewing 7AI Agent investigations. You'll validate the agents' work, prove out the threats they stopped, and hunt for malicious activity across customer environments. You'll also help build the processes that let this team scale without losing quality.
What You’ll Do:
- Analyze and validate investigations completed by the AI Agents for accuracy and completeness, evaluating risk
- Lead and mentor junior analysts and serve as the technical expert and key escalation point for investigations
- Correlate data from various data sources including cloud, endpoint, identity, network, etc. to understand that full picture of a malicious activity
- Investigate malicious activity that the 7AI Agents responded to and understand the complexity of the attack that was stopped including the risk that was prevented for customers
- Use our advanced AI Agents to hunt in customer environments to detect and remediate emerging threats, ultimately contributing to detections that will be folded back into the product
- Assist customers with ongoing threat monitoring, triage, and prioritization of security alerts as needed but especially during incidents to resolve threats and secure the environment
- Proactively identify potential threats and anomalies in customer environments by reviewing logs and malicious findings
- Utilize your supreme communication skills to engage with customers who vary in their level of technical depth and focus (from SOC analysts to CISOs)
- Architect processes while we build out this elite organization to scale the operation sustainably while maintaining consistent quality
- Collaborate with the Sales, Engineering, and Product teams, providing feedback on the customer experience and assist in optimizing and tuning the AI platform
- Stay current with emerging cybersecurity trends, vulnerabilities, and new attack techniques, especially the field of AI-driven attacks
What We're Looking For:
- 5+ years of experience in cyber security operations
- Hands-on experience with investigating alerts and across multiple sources (endpoint, network, identity, email, cloud, etc.)
- Strong understanding of security monitoring tools (XDR, SIEM, IDS/IPS, IDP, etc.)
- Familiarity with log \ telemetry concepts
- Experience analyzing and investigating security alerts from multiple sources, including intrusion detection systems, network monitoring tools, and endpoint protection platforms
- Strong knowledge of common attack techniques and frameworks (MITRE ATT&CK) and incident triage methodologies
- Strong analytical and problem-solving skills, with the ability to verify AI-driven analysis and make independent security decisions
- Data querying experience with SIEM querying technologies (SPL, KQL, FQL, SQL, etc) and familiarity with log / telemetry concepts
- Strong knowledge with Malware Analysis methods
- Great interpersonal skills with a service oriented mindset
- Proven track record of successfully collaborating in a team, including mentorship skills and ability to teach complex concepts
Nice to Have:
- Prior experience in a Managed Services environment
- Incident Handling experience
- Relevant certifications: Security+, GSEC, GCIH
Seen 21 days ago · 7AI postings close after a median of 16 days.
Original posting on 7AI's site ↗
Posting text belongs to the employer. Removal requests: contact us.
Nearby
Live postings like this one
Same employer first, then the same role elsewhere.
- Hybrid1d ago
- Hybrid7d ago
- Hybrid11d ago
- Hybrid16d ago
- Hybrid19d ago
- Hybrid21d ago
- Hybrid21d ago
- Hybrid21d ago
One job at a time
One posting. One CV. $25.
Pick the job you actually want and we write for it.