Building secure systems at scale

Engineer Builder Problem Solver
Jared Lee

About Me

I'm a Security Engineer with a degree in Computer Science and a former SOC analyst focused on detection and response, cloud security, and building automation that keeps systems secure without slowing teams down. I thrive in fast-paced hypergrowth startup environments and serve as a technical advisory board member and speaker at security events, sharing practical ways to build scalable, low-friction defenses.

Outside of engineering, I'm usually planning a warm-weather escape, exploring new places, or searching for good food like it's a competitive sport. I have a habit of optimizing anything within reach, whether it's workflows, devices, or travel plans.

Tech Stack

Python
Java
AWS
SQL
Regex
Splunk
Elastic
CrowdStrike
Tines
Snowflake
Databricks
Claude

Professional Experience

Staff Security Engineer

HubSpot

Feb 2025 – Present

Remote

Key Achievements

  • Built stack assurance platform for 10k+ devices, providing full visibility and auto-remediating issues
  • Created AI-driven software analysis pipeline, enabling auto-whitelisting across entire corporate environment
  • Developed Slack app for SOC, enabling one-click responses to insider and external threats
  • Reviewed SaaS tools and threat models, guiding security protections and configuration decisions
AI/ML Security Python SQL AWS Stakeholder Influence

Senior Security Engineer

HubSpot

Nov 2020 – Feb 2025

Remote

Key Achievements

  • Integrated automation into CASB, securing 30M+ public cloud files across all platforms
  • Elevated AWS security readiness from 75% to 95%, cutting corporate attack surface dramatically
  • Mentored a team of engineers, boosting automation adoption and secure coding across projects
  • Influenced leadership to adopt frictionless security, enabling safer, faster product development
Python Cloud Security Data Security Microservices Project Management

Security Engineer, Detection & Automation

HubSpot

Apr 2018 – Nov 2020

Cambridge, MA

Key Achievements

  • Automated detection workflows eliminating thousands of manual SOC hours
  • Scaled Splunk ingestion infrastructure for TBs of data, maintaining consistent high performance
  • Developed custom integrations normalizing diverse data sources, expanding overall security coverage
  • Created anomaly baselines to detect insider-risk behaviors, reducing potential undetected threats
Python Java AWS SIEM SOAR Threat Modeling

Security Analyst, Threat Hunting & IR

HubSpot

May 2017 – Apr 2018

Cambridge, MA

Key Achievements

  • Led PICERL-driven incident response for 4,300+ employees, improving containment and recovery speed
  • Developed playbooks reducing response time and standardizing investigations across teams
  • Conducted targeted threat hunts, uncovering compromises and critical detection gaps
  • Drove high-severity bug bounty fixes across product teams, mitigating key vulnerabilities
Incident Response Case Management Threat Hunting Scripting Splunk

Featured Projects

🎤 Conference Speaker

SecureWorld Boston Speaker

Presented at SecureWorld Boston on securing 30+ million public cloud files with minimal user impact. Demonstrated how CASB technology, automation, and user feedback created a scalable approach to dramatically improve cloud security posture. View presentation →

CASB Cloud Security Automation Public Speaking
🎯 Advisory Board

Tines Technical Advisory Board

Selected as a top 1% SOAR builder to join Tines' Technical Advisory Board. Collaborate with product leadership to shape platform innovations, drive industry trends, and advance the future of security automation.

SOAR Product Strategy Automation Advisory
🔐 Zero Trust

Enterprise RBAC & Zero Trust

Architected a company-wide zero-trust access model using audit log analysis to eliminate over-privileged accounts. Built automated RBAC workflows with least-privilege enforcement and temporary access patterns, reducing access requests by 80% while strengthening security posture across the organization.

Okta Python RBAC Audit Logs
📋 Software Inventory

AI-Powered Software Inventory & Whitelisting

Built an AI-driven classification system to automatically detect and assess Chrome extensions and installed software. Using an allowlist approach based on categories and risk levels, the system integrates threat intelligence feeds and custom blacklists to identify high-risk tools, eliminating manual review of 16,000+ extensions and applications while improving enforcement accuracy and security visibility.

AI/ML Threat Intelligence Python Automation
🔑 Access Management

Slack-Based AWS Access Automation

Built a Python-based AWS tool allowing employees to request permissions and groups directly from Slack. Access is automatically provisioned based on roles and risk level, fully temporary, logged, and secured with MFA and biometrics, simplifying IAM management while reducing security risk.

AWS IAM Python Slack Automation Zero Trust
🤖 AI Agent

AI-Powered SOC Triage Agent

Built an AI-powered SOC agent to handle initial review and triage of security alerts. Leveraging documentation and knowledge sources, the agent autonomously enriches, responds to, and escalates incidents as needed. Built on Anthropic's Claude Sonnet, it reduces manual intervention while serving as an intelligent first layer in the SOC.

AI/ML Anthropic Claude SOC Automation Incident Response

Let's Connect

I enjoy contributing to the engineering and security community. If you’d like to collaborate on a project, invite me to speak, or connect, I’d love to hear from you!