Engineering Manager - NodeZero Tripwires
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
What You'll Do
We're hiring an Engineering Manager to lead the team behind NodeZero Tripwires. Deception has always been a good idea and a hard problem. Honeypots were too heavy. Honeytokens were too easy to scatter in the wrong places, and defenders drowned in alerts they couldn't trust. The hardest part was never building a decoy. It was knowing where to put it.
You'll lead a team, set the technical bar, partner with Product on the roadmap, and work closely with our Attack team to keep tripwire design grounded in current adversary tradecraft. You'll be in design reviews, you'll be the one asking why an alert fired, and you'll own the standard. Signal-to-noise is not a metric for this product. It is the product.
In this role, you will:
Own the delivery strategy for Tripwires: decoy and deception development, detection, alerting, and the customer-facing experience around them.
Partner closely with Product to sequence the roadmap, and expand Tripwires coverage.
Recruit, mentor, and retain engineers who care about both distributed systems craft and the security domain.
Oversee the design of new tripwire types that are attractive to attackers and indistinguishable from legitimate assets.
Invest in operational excellence; SLOs, observability, on-call, and incident response.
Partner with the Attack team to create tight feedback loops so new offensive findings translate into new detection coverage.
Establish healthy team practices: design reviews, technical writing, clear API contracts with neighboring teams, and durable decision records.
What You'll Bring
Experience managing backend, data, or platform engineering teams, with a track record of shipping through the team.
Solid fundamentals in backend and distributed systems: data modeling, API design, queues/streams, and the tradeoffs between batch and streaming.
Comfort with modern cloud infrastructure (AWS preferred), containers, and observability tooling (Datadog or similar).
Ability to lead through technical ambiguity โ you can facilitate a design discussion, help the team converge, and know when to dig in yourself.
Clear written communication: you can put together a roadmap, a design doc, or a postmortem the rest of the company can read.
A sense of ownership for how the team operates day-to-day, not just what it ships.
Working knowledge of deception technology: honeypots, honeytokens, canaries.
Nice to have:
Exposure to event-driven architectures or streaming platforms (Kafka, Pulsar, Kinesis, Flink, or similar).
Understanding of how attackers move through an environment post-compromise: credential access, lateral movement, and privilege escalation.
Background in cybersecurity, pentesting, or vulnerability management.
Familiarity with Python and/or Go.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at Horizon3 ai
Senior Product Marketing Manager (Internal and Cloud Pentesting) at Horizon3
Horizon3 ai
United StatesField Enablement Manager (Chicagoland Area) - Horizon3
Horizon3 ai
ChicagoSenior Detection Engineer
Horizon3 ai
United StatesPartner Operations Manager, MSSP
Horizon3 ai
United StatesExplore Top Companies in this Space
Keeper Security
Cybersecurity / Information Technology / Enterprise Software
Sprinto
Information Technology / Cybersecurity / Enterprise Software
AfterQuery
Artificial Intelligence / Enterprise Software / Data Solutions / Applied Research
DubClub
Technology / Information and Internet / Sports / SaaS
Horizon3 ai
View Company ProfileHorizon3.ai is a leading cybersecurity firm that revolutionized the industry with NodeZero, the world's first fully autonomous penetration testing platform. Founded in 2019 by former US Special Operations and national security experts, the company shifts the paradigm from reactive defense to proactive offense. Under the hood, NodeZero acts as an automated ethical hacker, continuously discovering, exploiting, and providing remediation paths for critical vulnerabilities across on-premise, cloud, and hybrid environments. Their primary target audience includes enterprise CISOs, IT directors, and managed service providers (MSPs) who need to rigorously validate their security posture without the massive cost and infrequent cadence of traditional human pentesting. What sets Horizon3.ai apart in the crowded InfoSec market is its ability to safely execute real-world attack vectors in production environments at scale, allowing security teams to fix exploitable weaknesses before threat actors can weaponize them.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.
