Applied Cyber, Email Security (Detection Engineering)

Doppel
United States
Workplace: RemoteFull timeUSD 120,000 - 180,000 annuallyFunction: CybersecuritySkills: ["Collaboration","Problem-solving","Adaptability","Communication"]

Investigate hard email threats and detection failures, then translate findings into scalable detections, evals, AI behavior, and production coverage. Build and validate detection logic end-to-end, using AI and coding agents to accelerate investigative work. Partner with Product, Engineering, and customers to address detection gaps, real-world TTPs, and edge cases, turning threat intelligence and tooling into new signals that improve protection across the platform.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Doppel
Doppel
3 days ago

Applied Cyber, Email Security (Detection Engineering)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live

Job Summary

Investigate hard email threats and detection failures, then translate findings into scalable detections, evals, AI behavior, and production coverage. Build and validate detection logic end-to-end, using AI and coding agents to accelerate investigative work. Partner with Product, Engineering, and customers to address detection gaps, real-world TTPs, and edge cases, turning threat intelligence and tooling into new signals that improve protection across the platform.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Own detection problems end-to-end: investigate emerging TTPs or false negatives, generate hypotheses, validate findings, and deliver production coverage and measurement.
  • •Use AI to accelerate work by building evals, supervising model behavior, applying coding agents to automation, and handling repetitive investigation tasks.
  • •Partner with Product and Engineering on signals, detection logic, edge cases, and validation approaches.
  • •Collaborate with customers and GTM teams on detection gaps, real-world TTPs, and platform behavior.
  • •Convert tooling, threat-intelligence partnerships, and provider relationships into new signals and detection capabilities.

Pay and Benefits

Salary: USD 120,000 - 180,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceParental Leave

Key Requirements

  • •Deep practitioner judgment across detection engineering, SOC/IR, threat intelligence/OSINT, or email/messaging security (breadth across multiple areas is a plus).
  • •Ability to move from messy detection failures to root cause, proving what matters in data and fixing FP/FN cases into durable improvements.
  • •Threat modeling mindset across phishing, BEC, impersonation, credential theft, ATO, and evolving social-engineering TTPs.
  • •Capacity to translate expert judgment into detection logic, evals, tests, requirements, and scalable systems.
  • •Comfort operating at the intersection of security, AI, product, and customers while moving quickly through ambiguity.
Experience:CybersecurityEmail securitySOC/IRThreat intelligenceOSINT
Skills:CollaborationProblem-solvingAdaptabilityCommunication
Tech Stack:AIAgentic AILLMCoding agentsEvalsDetection-as-codeM365Exchange OnlineGoogle WorkspaceSIEMThreat intelligenceOSINTSPFDKIMDMARCEmail-security APIs

Company Brief

Doppel
Doppel is an AI-native social engineering defense platform that detects, disrupts, and dismantles impersonation, phishing, and digital risk infrastructure for brands, executives, and employees using AI agents plus human analysis.
Industry: Cybersecurity
Company Size: Medium (51 to 250 employees)
Growth: Scaleup
Valuation: USD 500M to 1B
Funding: Series C
Headquarters: Covina, United States
Founded: 2022
Glassdoor
Glassdoor: 4.6
WebsiteLinkedInGlassdoor