Senior Staff Threat Researcher, Detection Engineering
Location
United States + 3 moreAll locations: United States, Germany, Ireland, United Kingdom
Posted
26 days ago
Salary
Not specified
Job Description
Job Requirements
- 10+ years of professional experience as a security architect, detection developer, reverse engineer, security researcher, or CNO developer
- Expert‑level Python expertise
- OS‑specific telemetry (Windows Security/Sysmon logs, Linux, MacOS)
- Windows PowerShell monitoring
- SIEM detections
- EDR detections/signatures
- Suricata, Sigma, and Yara rules
- Development of anomaly‑ and behavioral‑based detections
- Tuning and optimization of detections for all the above
- Leadership & Technical Impact:
- Experience leading and mentoring groups of developers while contributing code independently
- Experience designing and building detection frameworks and processes
- Experience managing and measuring security efficacy of detections
- Experience managing and measuring cost efficiency of detection frameworks
- Deep understanding of networking security principles and flows
- Experience leading Agile development teams, preferably with formal Agile training
- Nice to Have:
- Understanding of the Arctic Wolf service delivery model
- Experience with the Arctic Wolf detection framework and infrastructure
- Commitment to continuous learning and skills development
- B.Sc. in a technical field (CS, CE, EE, Math, Physics, etc.) with M.Sc./PhD preferred
- In addition, you have proven leadership experience from previous projects, regardless of title held. You have the ability to perform programming tasks and large engineering projects with independence and expertise. You will be responsible for guiding and mentoring other staff members and will regularly lead technical projects. You have a high level of mastery over software development best practices, security research and building reusable software based on that research. You have a history of delivering successful projects, as well as some lessons learned from failures.
- On-Camera Policy
- To support a fair, transparent, and engaging interview experience, candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection, improves communication, and allows for full engagement from both candidates and interviewers. We understand that technical, bandwidth, or location-related challenges may occasionally prevent video use. If this applies, candidates are required to notify us in advance so we can explore appropriate accommodations.
Related Guides
Related Job Pages
More Software Engineer Jobs
The role involves designing and building real-time trading systems for sports betting, focusing on execution and risk management across multiple venues.
The Regional Manager in Loss Control conducts surveys, communicates with underwriters, manages complex scheduling, and ensures compliance within the assigned territory. Responsibilities include writing reports, follow-up assessments, and staying current with regulations. Frequent travel is required, primarily within NYC and Brooklyn.
The AI Developer at Harvard Business Publishing will develop AI/ML infrastructure, support product teams, and drive innovation through AI applications.
Manager, Project Engineering overseeing Project Engineers and Modality Engineers at Fujifilm