doppel - Solutions Architect, Detections
Requirements
• 3+ years of experience in OSINT investigations, threat intelligence, or detections engineering. • 1+ years of experience conducting SOCMINT investigations. • Experience using URL intelligence platforms and constructing complex queries (for example, URLScan, VirusTotal, or Spamhaus). • Demonstrated knowledge of common phishing and credential theft TTPs. • Demonstrated knowledge of common social media, paid ad, and SERP abuse patterns. • Strong ability to support ad hoc customer requests and collaborate in cross functional discussions with Product and Engineering teams. • Excellent written and verbal communication skills in English. • A degree in cybersecurity, information assurance, intelligence studies, or data analytics. • Experience creating advanced SERP queries (Google dorks). • Experience using, building, or supporting agentic workflows beyond answer and response interactions (for example, Claude Code, Codex, OpenClaw, or self hosted LLM agents).
Responsibilities
• Support post sales detection operations for customers by translating risk, brand abuse, and phishing use cases into effective and scalable detection coverage across website domains, SOCMINT, and other related surface areas. • Conduct onboarding, detection logic implementation, and sourcing workflows for select customers. • Build, refine, and validate platform automation logic using proprietary frameworks to support alert triaging and movements. • Investigate and conduct root cause analyses (RCAs) for missed detections, false positives, false negatives, improper alert movements, and low volume customers. • Work alongside Customer Success Managers (CSMs), Account Executives (AEs), and Technical Account Managers (TAMs) to support ad hoc detection requests and platform configurations. • Collaborate cross functionally with Engineering, Product, and other Solutions Architecture teams to surface platform limitations, share detection findings, and contribute ideas for process improvements. • Stay up to date with trends, patterns, and evolving TTPs related to agentic phishing, credential theft, recruitment scams, social media impersonation, disinformation, and paid ads abuse.
Benefits
• 75,000 to 95,000. • Meaningful equity so you share in Doppel’s success. • Remote first culture with flexibility built in. • Flexible PTO, comprehensive health benefits, parental leave, and more. • A high growth environment where your work has immediate impact and visibility. • Doppel is the first platform built to dismantle digital deception at scale. We scan over 150 billion entities daily and deploy continuously adaptive AI SOC agents, paired with expert human analysts, to uncover and disrupt the infrastructure behind phishing, impersonation, and online fraud before attacks can spread. Our Threat Grid turns every customer signal into shared intelligence, making each disruption smarter, faster, and more effective. • We’re not just another cybersecurity company. We’re defining the future of social engineering defense, where trust is protected, and deception becomes unprofitable. Backed by top-tier investors and trusted by some of the world’s most recognized brands, Doppel is growing fast. If you’re driven to solve real-world problems with bold technology, we’d love to meet you.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT