Defensive Security Analyst
About this role
What we're looking for:
We need someone with 2-5 years of experience in security operations who has hands-on incident response and detection engineering skills. You should be comfortable working in a cleared (TS/SCI) environment, operating on Linux systems, and navigating AWS cloud infrastructure. Bonus points if you've done memory forensics, threat hunting, or have a systems engineering/administration background.
What you'll do:
Rotate through on-call incident response shifts, triaging human-generated tickets and driving security incidents to resolution
Triage and analyze machine-generated alerts from our SIEM (Splunk) and custom alerting platforms, identifying real threats from noise
Build and maintain detection logic and alerting strategies across cloud-based infrastructure (primarily AWS and Linux)
Conduct focused threat hunting exercises across network segments to identify existing compromises and develop new detections
Perform host forensics, memory forensics, network forensics, and log analysis in support of investigations
Write automation to accelerate alert triage and incident response workflows
Onboard new log sources and engineer detection coverage for new infrastructure components
Collaborate closely with cloud infrastructure and cloud ops teams operating in the high-side environment
Contribute to the broader Palantir security operations mission beyond the USG-specific team
Write clear technical summaries of security incidents for distribution to senior stakeholders
Company at a glance
Palantir is a publicly traded software company specializing in data integration and analysis solutions for government agencies and enterprises across national security, healthcare, energy, finance, and manufacturing sectors.
What happens next
Skip the application pile. I get you in front of the people who decide.
Confirm the fit
A few questions to make sure this role is the right shape for you. Two minutes.
I pitch you to the company
I write the intro, send it to the founder, and handle the back-and-forth.
A meeting lands on your calendar
When the company wants to meet, I get the call on your calendar. You just show up.
Culture & values
Celebrate individuals' strengths, skills, and interests from first interview to long-term growth
Do not rely on traditional career ladders
Pay attention to the needs of the community to optimize growth opportunities
Ensure many pathways to success at Palantir
Believe employees are 'better together'
In-person work affords opportunity for more creative outcomes
Encourage employees to work from offices to foster connectivity and innovation
Many teams offer hybrid options allowing employees to work from home one or two days a week
Allow employees to strike the right trade-off for their personal productivity
Know someone who'd be great for this?

