Security Engineer, Threat Research
Remote
ExtraHop is on a mission to protect and propagate trust by revealing the cybertruth: the truth about the attackers already inside an organization’s network, the truth about what they’re doing, and how to stop them at top speed. We partner with every customer, every day, to reveal it. Are you ready to join us?
We are ExtraHop. We’re on a mission to provide security teams with the intelligence they need to confront and stop advanced threats like supply chain attacks, zero day exploits, and ransomware attacks. Attackers still have the advantage. We’re taking it back with creativity, intellectual curiosity, and a sense of humor. Are you ready to help us reclaim the upper hand?
Do you like securing complex networks? Want to be a part of a collaborative team that builds solutions that protect some of the biggest networks in the world? ExtraHop is seeking a Senior Security Engineer experienced with threat detection and networking to grow our world-class Threat Research team.
We are looking for a self-starter that enjoys investigating cyber attacks and how adversaries are traversing the network for lateral movement. You must have a strong understanding of the attack lifecycle and a deep desire to stop attackers before they can do damage.
Duties & Responsibilities
- Support Threat Research and Detection Engineering teams by providing tools and automation to accelerate Research & Development.
- Develop and maintain a scalable research lab using modern Infrastructure-as-Code and Cloud-based technologies
- Develop and maintain internal systems, including but not limited to:
- Software deployment pipelines supporting continuous software delivery
- Pipelines for ingestion of new network identifiers to enable fingerprinting of device, software, and cloud services
- Central detection engineering metadata repository
- Continuous Testing and Validation pipelines
- Work with a collaborative, dedicated and seasoned team of engineers
Required Skills & Experience
- Bachelor’s degree or equivalent experience in computer science, engineering, or information technology
- Solid understanding of the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7 including ARP, IP, TCP, UDP, and HTTP
- Solid knowledge of Git, Python, Terraform, Ansible, and the use of scripting in support of CI/CD pipelines.
- Ability to work in a shared code repository while maintaining existing coding standards
- Experience deploying and maintaining systems using modern Orchestration and Infrastructure-as-Code technologies
- Experience working with container-based environments (Docker, LXC, etc)
- Experience using and managing virtual infrastructure for VMware, Hyper-V, Xen, and/or KVM.
- Experience with Azure and …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Applicants must be authorized to work for ANY employer in the U.S.
Benefits/Perks401k with employer match or Pension where applicable Bonus + benefits Educational reimbursement FSA and Dependent Care Accounts + EAP where applicable Honor System PTO and 9 Holidays (US only) + 3 Days of Paid Volunteer Time Hybrid and Remote Work Model Non-Commissioned
SkillsAnsible AWS Azure CI/CD pipelines Cloud Cybersecurity Docker Git HTTP Infrastructure as Code IP Orchestration OSI model Python Reporting Security TCP Terraform
EducationBachelor's degree in Computer Science Computer Science Engineering Information Technology
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9