ExtraHop is hiring a
Sr. Security Engineer in Worldwide
![Logo of ExtraHop](https://cdn.jobscollider.com/logo/extrahop-07f1.webp)
Summary
ExtraHop is seeking a Senior Security Engineer with experience in threat detection and networking to join their Threat Research team. The role involves investigating cyber attacks, communicating research findings, mentoring less experienced security engineers, and improving analysis and detector development processes. Required skills include a Bachelor's degree or equivalent experience, experience in penetration testing, red teaming, or capture the flag competitions, strong understanding of network security and networking basics, good communication skills, strong working experience with Python or equivalent scripting languages, and familiarity with Wireshark, TShark or other network analysis tools. Desired skills include 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher, familiarity with MITRE’s ATT&CK Framework, and knowledge of various signature frameworks.
Requirements
- Bachelor’s degree or equivalent experience in cyber security, computer science, engineering, or network forensics
- Experience in penetration testing, red teaming, or capture the flag competitions that include hands-on execution of attacks and vulnerability exploitation
- Experience in writing or working with signatures (Suricata or Snort) or machine learning intended to detect network-based cyber attacks
- Strong understanding of network security and networking basics, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7, including IP, TCP, UDP, and HTTP
- Good communication skills with the ability to clearly communicate in writing technical details about attacks
- Strong working experience in using Wireshark, TShark or other network analysis tools
- Strong working experience with Python or equivalent scripting languages
Responsibilities
- Reproduce and analyze network-based cyber attacks, including vulnerability exploitation and lateral movement
- Communicate in writing research findings to detection engineering and collaborate in writing detectors to detect cyber attacks
- Mentor and teach less experienced security engineers about cyber attacks, malware analysis, vulnerabilities research, or other areas of expertise
- Work with management and other team members to improve analysis and detector development processes
Preferred Qualifications
- 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher
- Familiarity with MITRE’s ATT&CK Framework
- Familiarity with VM and container technologies for setting up ephemeral environments for research
- Familiarity with Windows protocols and reconnaissance and lateral movement techniques in Windows environments
- Knowledge of various signature frameworks, including YARA, ClamAV, JA3, and JARM
Benefits
- Health, dental, and vision benefits
- Honor System PTO and 9 Holidays (US only) + 3 Days of Paid Volunteer Time
- Non-Commissioned positions are eligible to participate in annual discretionary bonus plan
- FSA and Dependent Care Accounts + EAP where applicable
- Educational Reimbursement
- 401k with employer match or Pension where applicable
- Pet Insurance (US only)
- Parental Leave (US Only)
- Hybrid and Remote Work Model
Similar Jobs
- yesterday💰~$146k-$217k📍Japan
- 1 months ago💰~$150k-$180k📍United States
- 1 months ago💰~$146k-$258k📍Israel
- 1 months ago💰~$146k-$258k📍Europe
- 2 weeks ago💰~$150k-$180k📍Taiwan
- 2 days ago💰$176k-$281k📍United States
- 2 days ago💰$113k-$169k📍Canada
- 3 days ago💰~$59k-$97k📍Worldwide
- 3 days ago💰~$56k-$84k📍India