--- title: 'Software Engineer II - ADEX at Abnormal' canonical: 'https://feeny.ai/job/software-engineer-ii-adex-abnormal-bengaluru-6d2j5m35t6s7' type: 'job' last_seen: '2026-09-11' --- # Software Engineer II - ADEX at Abnormal - **Company:** Abnormal - **Location:** Bengaluru, India - **Work type:** hybrid - **Posted:** 2026-06-22 - **Last confirmed live:** 2026-09-11 - **Apply:** https://abnormal.ai/careers/jobs/7774637003?gh_jid=7774637003 ## Job description ## About the Role Enterprises of all sizes trust Abnormal's AI-native security products to stop cybercrime and protect critical communications, identities, and infrastructure in the cloud. Our products are data- and systems-intensive, operating at high scale and low latency across multiple clouds and regions. As a Software Engineer II on the ADEX Team, you are a highly capable detection feature owner: you take a detection problem, come up with an idea, design a technical approach, and drive it end-to-end, from design and implementation through launch, operation, and continuous improvement. You will work with a world-class group of engineers, product managers, and data scientists to build and operate detection that is reliable, scalable, and AI-native by default. This role focuses on impersonation detection, including brand, lookalike-domain, VIP and employee impersonation. It is ideal for an engineer who has already shipped meaningful production systems, wants more ownership and impact, and is excited to use AI to build detection that was not possible before. ## About the Team The Advanced Detection of EXtended threats (ADEX) is an attack-detection team inside Abnormal's Detection org. We own several of the highest-visibility detection surfaces at the company, spanning attachment-based attacks, fraud, and impersonation. We work the way an analyst would: we study the attacks that get through, understand the underlying pattern, and translate it into system-level detection enhancements that generalize beyond the individual attack. We are also one of the most AI-forward teams at Abnormal. We build and operate LLM-based detection agents and treat internal AI tooling as a first-class deliverable. Every engineer here writes detection logic and builds AI agents. Impersonation is one of the most damaging and visible classes of attack we defend against, where even simple attacks that slip through erode customer trust, so this is a surface we hold to a very high bar. ## What You'll Do - Design, build, and operate detection that is core to Abnormal's products, from initial design through rollout, monitoring, and ongoing maintenance. - Own detection projects end-to-end, including those that begin with a degree of ambiguity: scope loosely defined problems, identify risks, define milestones, and deliver reliably. - Analyze attacks that get through. Pull and study missed-attack data, read the messages the way an attacker and an analyst would, identify the underlying pattern, and translate it into detection enhancements or entirely new detection systems. - Write and tune detection logic using scored signals and attributes, add new signals across the pipeline, and drive changes to launch with a strong focus on minimizing false positives. - Build and evaluate LLM-based detection agents, and measure precision and recall rigorously with our evaluation tooling. - Surface your detections as reusable intelligence that other products and teams across the platform can consume. - Participate in the on-call rotation for your detection surfaces, debug and resolve customer escalations, and feed learnings back into design, observability, and runbooks across regions. - Leverage AI as a core part of your development loop for code, tests, data analysis, experiments, and documentation, while maintaining strong engineering judgment and validation practices. - Contribute to team health and culture by documenting heavily, sharing learnings, and giving thoughtful feedback in code and design reviews. Must Haves - 3+ years of professional software engineering experience, with a track record of shipping and operating production systems. - Strong software engineering fundamentals: data structures, algorithms, system design basics, testing, debugging, and clean, maintainable code. - Strong Python proficiency and comfort learning new languages and frameworks as needed. - Solid data-analysis instincts. You are comfortable with SQL and reasoning over large datasets to find signals in noise. - A detection or adversarial mindset. You enjoy thinking like an attacker, reading real attack samples, and asking, "How would I get past this?" - Genuine fluency with AI-native development. You already use AI coding agents in your daily work and are excited to build LLM-powered detection, not just consume AI tools. - Demonstrated ability to own projects that carry some initial ambiguity: clarify and scope loosely defined requirements, make tradeoffs explicit, deliver on time, and communicate status clearly. - Excellent written and verbal communication, especially in remote, distributed teams. We make decisions in writing. - A strong growth mindset and sense of ownership. ## Nice to Have Skills - Experience with distributed systems, high-throughput pipelines, or large-scale data stores (e.g., PostgreSQL, DynamoDB, Redis, RocksDB, Kafka, Spark, OpenSearch/Elasticsearch). - Background in security, threat detection, anti-abuse, fraud detection, or trust and safety, particularly systems processing high volumes of email or communication data. - Experience with ML or LLM evaluation: precision/recall tradeoffs, eval harnesses, prompt iteration. - Familiarity with domain and DNS concepts (such as typosquatting and homoglyphs) or with identity and impersonation signals. - Experience with large-scale data tooling (e.g., Databricks, Spark, Airflow) and distributed pipelines. - Experience with containerization and orchestration (Docker, Kubernetes) and infrastructure-as-code tooling. - Familiarity with modern frontend frameworks (e.g., React) for full-stack roles, or with ML/ML Ops for Detection/MLE-focused roles. - Prior experience in a fast-paced, high-growth startup environment where you’ve had to balance speed, quality, and ambiguity. ## Why You'll Love It Here - You'll solve hard, meaningful problems at the intersection of AI, security, and large-scale detection, where your work maps directly to attacks caught and customers protected. - You'll work with smart, kind, and ambitious teammates who care deeply about detection craft, learning, and helping each other grow. - You'll get real ownership and autonomy over an important detection surface, not a ticket queue, with clear opportunities to grow toward Senior and Staff roles. - You'll be part of an AI-native R&D organization with strong investment in tools, workflows, and training to help engineers use AI to move faster while raising the quality bar. ## #LI-AD2 A note on AI in our process: Abnormal AI uses AI-assisted tools to help our recruiting team prepare for candidate interviews. These tools analyze resume content and role requirements to suggest interview questions and areas for the interviewer to explore.They do not make hiring decisions or screen candidates automatically. Every decision about a candidacy is made by a person. Further, if your application is successful and Abnormal AI makes a conditional offer of employment, we will carry out pre-employment checks which must be successfully completed to progress to a final offer. All processes and pre-employment checks are in line with prevailing legislation and Abnormal AI's policies relevant to our security and privacy standards. Abnormal AI is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by law. For our EEO policy statement please [click here](https://assets.contentstack.io/v3/assets/blt3a076cfd9753fa1f/blt9cbda641db7c0045/6a1e3d3a66aea075cd33e462/AAP_and_EEO_Statement.pdf). If you would like more information on your EEO rights under the law, please [click here](https://assets.contentstack.io/v3/assets/blt3a076cfd9753fa1f/blt4eb3a265cc7b1ca9/6a1e3d3bfe33e73c16ff026b/EEOC_Know_Your_Rights_Oct_30_2025.pdf). ## About Abnormal ## Company Overview - **One-liner**: Abnormal Security uses behavioral AI to autonomously detect and stop sophisticated email attacks, account takeovers, and insider threats for enterprises. - **Entity Type**: Private (Series D) - **Headquarters**: San Francisco, California, USA - **Founded**: 2018 - **Founders**: Evan Reiser (CEO) and Sanjay Jeyakumar (CTO) ## Core Business - **Primary industry**: Cybersecurity (Cloud Email Security, Identity Security, AI Security) - **Target customers**: B2B, Enterprise (over 25% of the Fortune 500) - **Mission statement**: "Stop crime with AI and bring cybersecurity from the future to defenders today." ## Products & Services - **Abnormal Behavioral Security Platform**: An AI-native, cloud-based platform that builds behavioral baselines for every user and entity in an organization to detect anomalies that indicate attacks. - **Email Security**: Autonomous detection and remediation of BEC, phishing, and account takeover attacks via API-based, cloud-native architecture. Deploys in 60 seconds with no MX changes. - **Identity Security**: Harden identities, detect compromise, and prevent insider threats by analyzing behavioral signals in real-time. - **Insider Threat**: Blocks fraudulent actors and malicious insiders by autonomously addressing anomalies. - **AI Security (Attune AI)**: Provides visibility and policy enforcement for all AI tools used within an organization, enabling AI governance. ## Market Standing - **Valuation/Market Cap**: Not publicly disclosed (last reported Series D valuation was $2.6B in 2022) - **Key Metric**: Over 25% of the Fortune 500 are customers. The company has stopped millions of attacks and saved billions in financial losses. - **Notable Investors/Partners**: Insight Partners, Greylock Partners, Menlo Ventures, CrowdStrike Falcon Fund (strategic investor) - **Growth Signals**: The company is AI-native from day one, with revenue growing rapidly. It is expanding its platform from email security into identity, insider threat, and AI governance. Headcount has grown significantly, and the company continues to hire across engineering, GTM, and operations. ## Competitive Advantages - **Behavioral AI Moat**: Unlike signature-based or rules-based security tools, Abnormal builds a unique behavioral baseline for every organization and user. This allows it to detect novel attacks that no other vendor sees. - **AI-Native Operations**: The company doesn't just build AI products—it runs its entire business (product, CS, finance, HR) with AI agents, compounding its speed of innovation. - **Deep Enterprise Trust**: Over 25% of the Fortune 500 give Abnormal the authority to autonomously make security decisions, a level of trust very few vendors achieve. - **Founding Team Origins**: Founders came from adtech (building anomaly-detection AI at scale) rather than traditional cybersecurity, giving them an outsider's perspective that led to the behavioral AI approach. ## Strategic Focus - **Platform Expansion**: Moving beyond email security into identity, insider threat, and AI security, building a unified behavioral security platform. - **AI-First Product Development**: Using AI agents to compress product development cycles from quarters to weeks, rapidly launching new products. - **Operational Efficiency**: Embedding AI across every internal function to drive automation and efficiency, allowing the company to scale without linear headcount growth. - **Market Leadership**: Capitalizing on the wave of AI-generated attacks to position behavioral AI as the only viable defense. ## Why Work Here - **Remote-First Culture**: From day one, Abnormal has been remote-first. Employees have the choice to work from home, from hub offices, or from co-working spaces (WeWork). Async work is the default, with deliberate synchronous overlap time. [abnormal.ai](https://abnormal.ai/careers/culture) - **High Autonomy, High Accountability**: No micromanagement. Clear expectations. Growth is based on impact, not tenure or title. "You don't wait your turn." [abnormal.ai](https://abnormal.ai/careers/culture) - **AI-Native Work Environment**: Every employee, regardless of role, gets access to the best AI tools and is expected to use them. The company rebuilds work processes around what AI makes possible—not by bolting AI onto old workflows. [abnormal.ai](https://abnormal.ai/careers/culture) - **Compressed Growth Timeline**: Because everything moves fast with AI, impact that would take quarters elsewhere happens in weeks. One person can do what used to take a team. Outsized impact is rewarded proportionally. [abnormal.ai](https://abnormal.ai/careers/culture) - **Transparent and Direct Culture**: "We say what's true, even when it's uncomfortable." Leaders are accessible, teams share learnings openly, and new hires get real ownership immediately. [abnormal.ai](https://abnormal.ai/about) - **Notable Perks**: Compensation is tied to impact, not role. The company offers flexibility as infrastructure, not a benefit. Employees see direct results from their work in a fast-growing, mission-driven company. ## Sources 1. [Abnormal AI - Official Website](https://abnormal.ai/) 2. [Abnormal AI - About Page](https://abnormal.ai/about) 3. [Abnormal AI - Careers & Culture](https://abnormal.ai/careers/culture) 4. [Abnormal AI - Open Roles](https://abnormal.ai/careers/open-roles) 5. [Abnormal AI - What We Are](https://abnormal.ai/about/what-we-are) 6. [Crunchbase - Abnormal Security](https://www.crunchbase.com/organization/abnormalsecurity) 7. [PitchBook - Abnormal Security](https://pitchbook.com/profiles/abnormal-security-168693-47) ## Other roles at Abnormal - [Sr. Customer Success Manager, Fed/SLED](https://feeny.ai/job/sr-customer-success-manager-fed-sled-abnormal-united-states-21zv7g243q1e) — United States - [Enterprise Account Executive - Chicago](https://feeny.ai/job/enterprise-account-executive-chicago-abnormal-united-states-j7jwcngch2k4) — United States - [Customer Success Manager, Enterprise (Missouri Valley)](https://feeny.ai/job/customer-success-manager-enterprise-missouri-valley-abnormal-united-states-2pjfc170be3k) — United States - [Professional Services Consultant (Spanish-Speaking)](https://feeny.ai/job/professional-services-consultant-spanish-speaking-abnormal-united-states-b8jeg5vrspgf) — United States - [Senior Professional Service Consultant](https://feeny.ai/job/senior-professional-service-consultant-abnormal-united-states-pnra459c653c) — United States - [Customer Success Manager, Canada (Toronto)](https://feeny.ai/job/customer-success-manager-canada-toronto-abnormal-canada-pf5jqvw84g5m) — Canada - [Digital Customer Success Manager](https://feeny.ai/job/digital-customer-success-manager-abnormal-united-states-0ybk9s6g3595) — United States - [Technical Support Engineer](https://feeny.ai/job/technical-support-engineer-abnormal-bengaluru-qs8a8wg1khm7) — Bengaluru, India - [Media Relations Manager](https://feeny.ai/job/media-relations-manager-abnormal-united-states-c1ha3y51t2hr) — United States - [FedRamp Compliance Analyst](https://feeny.ai/job/fedramp-compliance-analyst-abnormal-united-states-enrwqkx2fz1a) — United States