Senior Security Research Engineer

SpyCloud
Summary
Join SpyCloud, a company dedicated to enhancing internet safety by disrupting cybercrime, and contribute to protecting billions of accounts globally. As a Security Research Engineer within SpyCloud Labs, you will design, implement, and maintain internal tooling for acquiring and processing underground data. This full-time remote role involves building cloud infrastructure using Infrastructure as Code, creating automated CI/CD pipelines, and collaborating with the research team. You will be the subject matter expert on data acquisition and identify automation opportunities. The position also includes mentoring junior researchers and engineers. This role is ideal for a highly skilled and self-directed cybersecurity engineer with extensive experience in software development and internal tooling.
Requirements
- 5+ years experience in a Senior role within cybersecurity engineering
- 6+ years of professional software development experience, preferably in the cybersecurity industry
- Highly skilled with Python. Golang proficiency a plus
- Experience building internal tooling and deploying using Infrastructure as Code technologies (we use Terraform and Ansible)
- Bachelor’s degree, or equivalent experience, in Math, Science, Engineering, or Business fields
- Self-directed with the ability to identify and deliver on tasks without needing direct supervision
- Critical thinker that is comfortable supporting collaborative problem solving in a team environment
- Excellent communication skills
- Highly self-motivated, empathetic, curious, and flexible
Responsibilities
- Design, implement, and maintain internal tooling for acquiring and parsing recaptured underground data
- Build and deploy cloud infrastructure using Infrastructure as Code technologies
- Build and deploy automated CI/CD pipelines to test and deploy tooling and infrastructure
- Collaborate directly with the research team to support the targeting and collection of new data sources
- Be the subject matter expert on Security Research Engineering and the data acquisition process
- Constantly and independently work to identify improvements and automation opportunities in the recaptured data workflow and ETL pipelines
- Participate in security research including investigation of threat actors, malware, and other critical research in support of SpyCloud’s priorities
- Mentor junior security researchers and engineers including providing code review and guidance on efficient code writing and professional development
Preferred Qualifications
- Experience working with large enterprises in delivery of security analytics products
- Experience in acquiring and processing malware-exfiltrated data
- Experience in using data science to analyze datasets for the purposes of detecting fraud or cyberthreats
- Experience with databases (relational or NoSQL) and designing efficient database architecture
Benefits
- 401(k) with Employer Contribution
- Health, Vision, and Dental Insurance Health Savings Account (HSA) available with Employer Contribution
- Employer Paid Life, Short-term, and Long-term Disability Insurance
- Generous PTO Plan and 16 paid holidays per year
- Retirement Savings Plan with Employer Contribution
- Employer Provided Private Health Insurance and Healthcare Cashplan
- Employer Paid Life Insurance and Income Replacement
- Generous Holiday Plan and 14 paid holidays per year