Sr. Security Engineer I Threat Research

ExtraHop
·
Posted: 
August 15, 2023
·
Remote
Job Commitment
Full-time
Job Commitment
Senior
Job Function
Dev & Engineering
Salary
N/A
Job Commitment
Full-time
Experience Level
Senior
Workplace Type
Remote
Job Function

This job is closed

We regret to inform you that the job you were interested in has now been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

About the position

ExtraHop is seeking a Senior Security Engineer experienced in threat detection and networking to join their world-class Threat Research team. The ideal candidate will have a strong understanding of the attack lifecycle and a desire to stop attackers before they can cause damage. Responsibilities include analyzing and reproducing network-based cyber attacks, communicating research findings, mentoring less experienced engineers, and improving analysis and detector development processes. Required skills include a degree or equivalent experience in cyber security or related fields, experience in penetration testing and vulnerability exploitation, knowledge of network security and protocols, and proficiency in tools like Wireshark and Python.

Responsibilities

  • Reproduce and analyze network-based cyber attacks, including vulnerability exploitation and lateral movement.
  • Communicate research findings in writing to detection engineering and collaborate in writing detectors to detect cyber attacks.
  • Mentor and teach less experienced security engineers about cyber attacks, malware analysis, vulnerabilities research, or other areas of expertise.
  • Work with management and other team members to improve analysis and detector development processes.
  • Have a strong understanding of the attack lifecycle and a deep desire to stop attackers before they can do damage.
  • Possess a Bachelor's degree or equivalent experience in cyber security, computer science, engineering, or network forensics.
  • Have experience in penetration testing, red teaming, or capture the flag competitions that include hands-on execution of attacks and vulnerability exploitation.
  • Be experienced in writing or working with signatures (Suricata or Snort) or machine learning intended to detect network-based cyber attacks.
  • Have a strong understanding of network security and networking basics, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7, including IP, TCP, UDP, and HTTP.
  • Possess good communication skills with the ability to clearly communicate in writing technical details about attacks.
  • Have strong working experience in using Wireshark, TShark, or other network analysis tools.
  • Have strong working experience with Python or equivalent scripting languages.
  • Have 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher (desired).
  • Be familiar with MITRE's ATT&CK Framework (desired).
  • Be familiar with VM and container technologies for setting up ephemeral environments for research (desired).
  • Be familiar with Windows protocols and reconnaissance and lateral movement techniques in Windows environments (desired).
  • Have knowledge of various signature frameworks, including YARA, ClamAV, JA3, and JARM (desired).

Requirements

  • Bachelor’s degree or equivalent experience in cyber security, computer science, engineering, or network forensics.
  • Experience in penetration testing, red teaming, or capture the flag competitions that include hands-on execution of attacks and vulnerability exploitation.
  • Experience in writing or working with signatures (Suricata or Snort) or machine learning intended to detect network-based cyber attacks.
  • Strong understanding of network security and networking basics, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7, including IP, TCP, UDP, and HTTP.
  • Good communication skills with the ability to clearly communicate in writing technical details about attacks.
  • Strong working experience in using Wireshark, TShark or other network analysis tools.
  • Strong working experience with Python or equivalent scripting languages.
  • 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher.
  • Familiarity with MITRE’s ATT&CK Framework.
  • Familiarity with VM and container technologies for setting up ephemeral environments for research.
  • Familiarity with Windows protocols and reconnaissance and lateral movement techniques in Windows environments.
  • Knowledge of various signature frameworks, including YARA, ClamAV, JA3, and JARM.
  • Benefits

    • Health, dental, and vision benefits
    • Honor System PTO and 9 Holidays (US only) + 3 Days of Paid Volunteer Time
    • Non-Commissioned positions are eligible to participate in annual discretionary bonus plan
    • FSA and Dependent Care Accounts + EAP where applicable
    • Educational Reimbursement
    • 401k with employer match or Pension where applicable
    • Pet Insurance (US only)
    • Parental Leave (US Only)
    • Hybrid and Remote Work Model

    Job Application Resources

    No items found.

    More Openings at ExtraHop

    ExtraHop
    Web Design
    Web Design
    Web Design
    Web Design
    Remote
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Senior
    ·
    101-250
    Employees
    This is some text inside of a div block.
    ExtraHop
    Web Design
    Web Design
    Web Design
    Web Design
    Remote
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Senior
    ·
    101-250
    Employees
    This is some text inside of a div block.
    ExtraHop
    Web Design
    Web Design
    Web Design
    Web Design
    Remote
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Senior
    ·
    101-250
    Employees
    This is some text inside of a div block.

    Similar Jobs

    Reltio
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Senior
    ·
    101-250
    Employees
    This is some text inside of a div block.
    Reddit
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Manager
    ·
    101-250
    Employees
    This is some text inside of a div block.
    Recorded Future
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Manager
    ·
    101-250
    Employees
    This is some text inside of a div block.
    Reddit
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Manager
    ·
    101-250
    Employees
    This is some text inside of a div block.
    Recursion
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Director
    ·
    101-250
    Employees
    This is some text inside of a div block.
    Pure Storage
    Web Design
    Web Design
    Web Design
    Web Design
    Onsite
    ·
    Full-time
    ·
    Dev & Engineering
    $
    320,000
    -
    $
    360,000
    /Year
    ·
    Mid Level
    ·
    101-250
    Employees
    This is some text inside of a div block.

    ExtraHop

    ExtraHop helps organizations to stop advanced threats with security that can’t be undermined, outsmarted, or compromised.
    Location
    Seattle, WA
    Company Size
    501-1,000
    Workplace Type
    Industries
    Cyber Security
    Enterprise Software
    Network Security
    Software
    Data and Analytics
    Information Technology
    Privacy and Security
    Open Roles
    3
    Less details
    Create a Tailored Resume for this Role in Minutes
    Start Building for Free

    ExtraHop

    ExtraHop helps organizations to stop advanced threats with security that can’t be undermined, outsmarted, or compromised.
    Company Overview

    ExtraHop helps organizations to stop advanced threats with security that can’t be undermined, outsmarted, or compromised.

    Benefits
    • Health, dental, and vision benefits
    • Honor System PTO and 9 Holidays (US only) + 3 Days of Paid Volunteer Time
    • Non-Commissioned positions are eligible to participate in annual discretionary bonus plan
    • FSA and Dependent Care Accounts + EAP where applicable
    • Educational Reimbursement
    • 401k with employer match or Pension where applicable
    • Pet Insurance (US only)
    • Parental Leave (US Only)
    • Hybrid and Remote Work Model
    Less details

    Want Jobs in Your Inbox?

    Sign up for the Teal newsletter and get career guidance and new jobs weekly!
    Thank you! Your submission has been received!
    Oops! Please provide a correct email address