Overview:
Job Title: Email Security Lead
Location: Austin, TX/Sunnyvale, CA
Experience-10+ years
Role Description:
Technical Expertise
• End-to-end messaging abuse lifecycle ownership - automated enforcement, remediation, and deliverability, spanning both inbound and outbound spam/phishing mitigation for a large-scale email platform.
• Email security & authentication mastery - deep header analysis and protocol-level troubleshooting across SPF, DKIM, and DMARC to detect forgery, plus reputation-based mitigation strategies.
• Splunk-based observability & real-time detection - designing and maintaining monitoring dashboards, KPI tracking, alerting, and trend detection to enable rapid containment of anomalous mail traffic, spam, phishing, and related abuse.
• Automated enforcement pipeline engineering - building automation and workflows.
• Abuse detection & enforcement tuning - rules, classifiers, and threshold tuning for account-farming detection using pattern/behavioural analysis
• Adversarial threat hunting - identifying phishing kits and malicious delivery-testing campaigns; investigating malicious IPs using threat-intel tools
• Case-management platform administration - configuration, optimization, and triage-flow design to improve enforcement accuracy.
• Vendor threat-intel integration - partnering with third-party security vendors to embed high-fidelity threat intelligence into the detection ecosystem, strengthening efficacy against sophisticated abuse campaigns.
• Leadership
• Strategic ownership - setting anti-abuse operational strategy, aligning cross-functional stakeholders, and driving execution across global teams.
• SME & decision authority - acting as subject-matter expert for mail delivery/postmaster-type issues
• Executive communication - owning delivery of recurring status reports and business reviews, translating operational data into leadership-ready narratives and risk trade-offs.
• Process & documentation leadership - consolidating technical documentation and standardizing SOPs to support platform migrations and ensure global operational consistency.
• Risk balancing instinct - proactively weighing abuse mitigation against user-impact/false-positive risk and communicating those trade-offs clearly to leadership.
• Onshore-Offshore Coordinator Role
• Offshore team leadership - leading the offshore enforcement team directly, driving training and coaching to stay ahead of emerging messaging-abuse trends.
• Cross-functional bridge - coordinating between offshore execution teams and onshore/customer to resolve deliverability challenges and enforcement decisions in real time.
• Vendor-facing coordination - serving as the operational liaison with external vendor partners to integrate their threat intelligence into day-to-day offshore-executed enforcement workflows.
• Operations design - contributing to workflow, escalation, and SLA design supporting operations and consistent QA standards.
Skills:
EMAIL SECURITY,SPF,DKIM,DMARC