bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesTenexSOC Engineer

SOC Engineer

Tenex · Kansas City, MO SOC · On Site · Active · Ashby

Job facts

FieldValue
CompanyTenex
TitleSOC Engineer
Normalized title-
Department / teamSecurity Operations / Security Operations
LocationKansas City, MO, United States
Work modelOn Site
Employment typeFull Time
Salary-
Statusactive
ATS providerAshby
Posted / first seen / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Tenex.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Ashby.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Kansas City.Open
Department jobsActive postings in Security Operations.Open
Work model jobsActive On Site postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyTenex
Source969e0518-cef3-4013-b0b2-70138c189abd
ATS providerAshby

Description

Company Overview: TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is composed of industry experts with deep experience in cybersecurity, automation, and AI-driven solutions. Backed by leading investors, we are rapidly growing and seeking top talent to join our mission of revolutionizing the MDR landscape. We’re a fast growing startup backed by industry experts and top tier investor Andreessen Horowitz. As an early employee, you’ll play a meaningful role in defining and building our culture. Get in on the ground floor. We’re a small but well-funded team that just raised a substantial round – joining now comes with limited risk and unlimited upside. Culture is one of the most important things at TENEX.AI —explore our culture deck at culture.tenex.ai to witness how we embody it, prioritizing the irreplaceable collaboration and community of in-person work. As a SOC Engineer, you'll operate across incident response, platform quality, and operational improvement — evaluating telemetry coverage, shaping response automation, handling high-severity escalations, and ensuring the tooling and workflows analysts depend on are fit for purpose. The role carries direct engagement across internal engineering teams and customers, and no shortage of hard problems to solve. We default to automation and AI wherever they produce better outcomes — and we want engineers who think the same way. What You'll Do Handle complex incident response and escalation. Take ownership of high-severity and technically complex incidents — leading investigation, driving containment decisions, and communicating findings clearly when it counts. Assess and improve telemetry and logging coverage. Automate evaluation of customer environments for logging gaps and deficiencies across endpoint, network, identity, and cloud. Specify what's needed for effective detection and investigation, and work with customers and internal teams to close the gaps. Ensure SIEM and detection quality. Apply deep platform knowledge to evaluate detection fidelity, data normalization, parser quality, and alert logic — identifying where coverage or quality falls short and partnering with detection engineering to address it. Contribute to response automation quality. Work closely with the SOAR team to review enrichment logic, containment playbooks, and automation design — bringing an incident responder's perspective to what works under pressure and what doesn't. Support technical needs across the organization. Serve as a knowledgeable resource for forward-deployed engineers, onboarding teams, and customers on questions spanning telemetry, investigation, platform behavior, and response — representing the SOC's technical depth across functions. Improve SOC tooling and operational workflows. Identify friction in how analysts triage, investigate, and respond. Partner on tooling improvements, process changes, and reference content that raise consistency and quality across the team. What You Bring 5+ years in security operations, incident response, or detection engineering with demonstrated depth across multiple domains. Strong fluency in logging and telemetry — able to evaluate an environment's coverage posture, identify deficiencies, and articulate what's needed for effective detection and investigation. Hands-on experience with SIEM platforms (Google Chronicle, Microsoft Sentinel, and/or Splunk a plus) — enough to understand data modeling, rule architecture, and parser quality, and recognize when a deployment falls short of what our MDR SOC requires. Solid understanding of response automation — enrichment pipelines, SOAR playbook structure, containment logic — and the judgment to evaluate whether automation is working as intended. Working knowledge of cloud security architecture in at least one major cloud (AWS, Azure, or GCP), including native log sources and their value for investigation. Scripting proficiency in Python or PowerShell for automation support, and integration work. Familiarity applying AI or LLM-based tooling to security workflows — investigation assistance, alert triage, log analysis, or automation — is a strong plus. Clear, confident communicator across technical and non-technical audiences — customers, engineers, and analysts alike. Bonus Points Multi-cloud breadth across AWS, Azure, and GCP security tooling and telemetry. Experience with IaC (Terraform, CloudFormation) and DevSecOps practices. Familiarity authoring detection runbooks, investigation guides, or SOC operating procedures. Splunk Enterprise Security depth — ES notable events, risk-based alerting, correlation search architecture. Container and Kubernetes security monitoring exposure. Experience building or evaluating AI-assisted security tooling, agentic workflows, or LLM-augmented investigation and response. Education & Certifications Bachelor’s degree in Computer Science, Information Security, or a related field, OR equivalent work experience. Relevant certifications — CISSP, GCIH, GCFE, GCDA, GREM, AWS/GCP security, or SIEM platform certifications — are a plus. Why Join Us? Opportunity to work with cutting-edge AI-driven cybersecurity technologies and Google SecOps solutions. Collaborate with a talented and innovative team focused on continuously improving security operations. Competitive salary and benefits package. A culture of growth and development, with opportunities to expand your knowledge in AI, cybersecurity, and emerging technologies. If you're passionate about combining cybersecurity expertise with artificial intelligence and have experience with Google SecOps and Chronicle, we encourage you to apply!

Full job record

Job IDc4d3239d5c35462b5a472f0a682fccf6db5a3ca8
Org ID2a42b02b-55c6-4982-8349-34055488588f
Source ID969e0518-cef3-4013-b0b2-70138c189abd
Board ID969e0518-cef3-4013-b0b2-70138c189abd
Providerashby
Provider Job Key6f0eaa54-32dc-4631-84d4-1167519e81f3
TitleSOC Engineer
Normalized Title
Statusactive
Activeyes
Location TextKansas City, MO SOC
DepartmentSecurity Operations
TeamSecurity Operations
Employment Typefull_time
Workplace Typeon_site
Remote Policy
CountryUnited States
RegionMO
CityKansas City
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://jobs.ashbyhq.com/tenex/6f0eaa54-32dc-4631-84d4-1167519e81f3
Apply URLhttps://jobs.ashbyhq.com/tenex/6f0eaa54-32dc-4631-84d4-1167519e81f3/application
First Seen At2026-05-29 06:26:56Z
Last Seen At2026-06-06 09:23:08Z
Last Checked At2026-06-06 09:23:08Z
Last Changed At2026-05-29 06:26:56Z
Inactive At
Source Posted At
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=ashby/board=tenex/date=2026-06-06/2026-06-06T09-22-37-234Z-5a92d0acc560b6ee8007f44c35845fe8170599d534aee744356c59d618bbf835.json
Event Fields
{
  "content_hash": "43028a989e5dbd02e084b3d2cfa09367e8e82c72222ce4649a98858f7df5f454",
  "source_hash": "84101cdf1ec6539ad266a6b92273e289f322c5fc70fa722c6ea89b5a36f5c87f",
  "last_changed_at": "2026-05-29T06:26:56.003Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Kansas City, MO SOC",
    "city": "Kansas City",
    "region": "MO",
    "country": "United States",
    "is_remote": false,
    "confidence": 0.9
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T09:23:08.169Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "Kansas City, MO SOC",
      "city": "Kansas City",
      "region": "MO",
      "country": "United States",
      "is_remote": false,
      "confidence": 0.9
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": "on_site",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "id": "6f0eaa54-32dc-4631-84d4-1167519e81f3",
  "team": "Security Operations",
  "title": "SOC Engineer",
  "jobUrl": "https://jobs.ashbyhq.com/tenex/6f0eaa54-32dc-4631-84d4-1167519e81f3",
  "address": null,
  "applyUrl": "https://jobs.ashbyhq.com/tenex/6f0eaa54-32dc-4631-84d4-1167519e81f3/application",
  "isListed": true,
  "isRemote": false,
  "location": "Kansas City, MO SOC",
  "updatedAt": null,
  "apiVersion": "ashby-non-user-graphql-v1",
  "department": "Security Operations",
  "publishedAt": null,
  "workplaceType": "OnSite",
  "employmentType": "FullTime",
  "secondaryLocations": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/c4d3239d5c35462b5a472f0a682fccf6db5a3ca8?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/2a42b02b-55c6-4982-8349-34055488588fJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/969e0518-cef3-4013-b0b2-70138c189abdJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/c4d3239d5c35462b5a472f0a682fccf6db5a3ca8/eventsJSON