Principal Security Researcher, SIEM

Huntress Logo

Huntress

๐Ÿ’ต $180k-$200k
๐Ÿ“Remote - United States

Summary

Join Huntress, a fully remote, global cybersecurity company, as a Security Product Researcher. You will lead the development and implementation of security capabilities, focusing on SIEM technology and log analysis to detect and prevent intrusions. This role requires expertise in various OS and cloud vendor log types, SOC investigations, and incident response. You will collaborate with product, engineering, and security teams to build and prioritize a unified technical vision. Huntress offers a competitive salary, comprehensive benefits, and a 100% remote work environment.

Requirements

  • Expert in various multi-OS & multi-cloud vendor log types + how they can be used to surface attacker tradecraft
  • Proven track record building, deploying, and maturing SIEM technology (vendor agnostic, preferred)
  • Expert knowledge of SOC investigations, incident response and how to build security product requirements to combat threats
  • Expert in detection coverage gap analysis with a focus on MITRE ATT&CK
  • Expert at translating current trends in cyber security for both technical and non-technical audiences
  • Expert at translating MITRE TTPs to Customer value propositions
  • Expert at researching emerging tradecraft

Responsibilities

  • Lead the security Capabilities we bring to market, owning the layered defense strategy gained by combining multiple log sources
  • Define the value of a log. Not all log sources have equal security value, and not all logs from a single source hold the same value
  • Lead the processing strategy for our SIEM product to extract maximum security value from the narrowest set of logs that distinguish between suspicious and malicious events to reach the highest accuracy true positive rate
  • Simulate attacks from SOC incidents, collecting, synthesizing, & combining relevant logs to generate custom detection logic, log aggregation, & security technologies that detect intrusions or misconfigurations derived from log analysis
  • Operationalize SIEM by translating security research from incident investigations and attack path testing into product outcomes
  • Perform independent research on attacks and convert findings into engineering requirements for new security capabilities
  • Innovate new detection correlation opportunities
  • Build capability & feature use cases that integrate needs from SOC analysts and Incident Response
  • Architect log source aggregation to ensure SIEM alerts are highly accurate. We strive for 99% accuracy for critical alerts
  • Partner with engineering to integrate disparate log sources into unified data schema
  • Own & nurture the cross-department relationships critical to successful product delivery & launch
  • Document research findings through technical write-ups, advisories, internal reports, blogs, CFPs & presentations
  • Proven organizational and program management skills, with a keen attention to detail and a sense of urgency to deliver an exceptional product under tight deadline pressures
  • Eagerness to engage, report, and be accountable to executive stakeholders
  • Passion to translate your expertise in nontechnical ways to deliver impactful security outcomes that protect the 99%
  • Promote Huntressโ€™ reputation through media interaction, public speaking, and blogs
  • Educate the public on how to be security savvy in novel and fun ways

Benefits

  • 100% remote work environment - since our founding in 2015
  • Generous paid time off policy, including vacation, sick time, and paid holidays
  • 12 weeks of paid parental leave
  • Highly competitive and comprehensive medical, dental, and vision benefits plans
  • 401(k) with a 5% contribution regardless of employee contribution
  • Life and Disability insurance plans
  • Stock options for all full-time employees
  • One-time $500 reimbursement for building/upgrading home office
  • Annual allowance for education and professional development assistance
  • $75 USD/month digital reimbursement
  • Access to the BetterUp platform for coaching, personal, and professional growth

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.