About The Position

In this role, you'll work with the Threat Research and Detection Engineering (TRaDE) team, which plays a key part in shaping the detection capabilities within Elastic Security. We're seeking a Senior Security Research Engineer who has a solid background in macOS and Kubernetes / container security, useful experience in detection engineering, and a genuine interest in enhancing defensive measures.

Requirements

  • Experience with detection rule development for macOS / Kubernetes / container environments
  • Proficiency in using Elastic Security features and tools
  • Created detection rules that reduced false positives. These rules also improved incident response performance and improved detection coverage
  • Published contributions to community detection content or security research
  • Innovated and shared novel approaches for telemetry analysis within security research communities
  • Achieved recognition or accolades for contributions to detection engineering or threat research initiatives
  • You possess the ability to comfortably rotate across projects, collaborate across functions and teams, and seamlessly adapt to evolving team structures
  • Proven ability to seamlessly transition between different projects, codebases, or scrum teams based on dynamic business priorities
  • You work autonomously and can drive decisions and results in a distributed team by leveraging asynchronous, direct, and transparent communication

Responsibilities

  • Develop tailored detection analytics for endpoint macOS and Kubernetes / container environments.
  • Validate rule functionality and minimize false positives through thorough reviews.
  • Analyze multi-source telemetry to uncover detection opportunities and enhance clarity.
  • Collaborate with peers to implement innovative detection methodologies and engage in community knowledge sharing.
  • Emulate various threat scenarios to thoroughly assess detection capabilities.
  • Develop and refine detection rules based on the outcomes of these simulations.
  • Evaluate existing protection mechanisms against simulated attacks and document your findings while recommending improvements for threat detection.
  • Collaborate with the engineering team to identify telemetry gaps in existing security measures.
  • Design and implement enhancements that improve detection accuracy.
  • Assess current telemetry data's gaps in identifying emerging threats and integrate advanced analytics to strengthen detection capabilities.
  • Provide technical guidance on best practices for utilizing telemetry in security measures.
  • Write and publish insightful blogs that focus on detection strategies and methodologies.
  • Contribute to open-source intelligence (OSINT) research, sharing valuable findings with the community.
  • Develop and maintain a repository of security rules and detection content.
  • Engage with the cybersecurity community to promote knowledge sharing and best practices, and collaborate with external partners to enhance resources and tools for threat detection.

Benefits

  • Competitive pay based on the work you do here and not your previous salary
  • Health coverage for you and your family in many locations
  • Ability to craft your calendar with flexible locations and schedules for many roles
  • Generous number of vacation days each year
  • Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
  • Up to 40 hours each year to use toward volunteer projects you love
  • Embracing parenthood with minimum of 16 weeks of parental leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service