Overview
In this role you own day-to-day security operations and extend our SecOps AI agents. You’ll drive vulnerability remediation with cross-functional teams and keep security posture visible across multiple cloud platforms. You’ll combine hands-on security expertise with AI tooling to automate and inform secure decisions, shaping incident response and governance in a fast-growing, culture-first agency environment. You’ll work closely with internal teams to balance protection with productivity, contributing to Brainlabs’ mission of data-driven, secure media success.
Responsibilities
- Own day-to-day security operations including vulnerability management, approvals, threat model reviews and incident support
- Operate and extend SecOps AI agents handling Mend triage, MCP assessment, documentation review and incident scribing
- Make final security decisions escalated by agents by setting clear conditions rather than blanket blocks
- Drive vulnerability remediation in collaboration with development and platform teams, with escalation when fixes stall
- Maintain security posture visibility across GCP, AWS and Azure projects and partner with SEP2, the external MDR provider
Key requirements
- Solid security operations experience (security engineering, appsec or platform security)
- Strong knowledge of GCP IAM, service accounts, logging and org policy; AWS/Azure familiarity a plus
- Ability to read code to assess whether a SAST finding is real
- Fluency with AI tooling and a practical, build-with-it mindset
- Clear written communication for decision-focused documentation
- Comfort with saying no with rationale and yes with conditions; ownership mindset for a function rather than a queue
- Clear written communication
- Decision-making with accountability
- Ownership and initiative
- GCP IAM, service accounts, logging, org policy
- AWS and Azure familiarity
- SAST interpretation
…
