ExtraHop is hiring a
Sr. Security Engineer in Worldwide

Logo of ExtraHop
Sr. Security Engineer
🏢 ExtraHop
💵 $136k-$180k
📍Worldwide
📅 Posted on Jun 24, 2024

Summary

ExtraHop is seeking a Senior Security Engineer with experience in threat detection and networking to join their Threat Research team. The role involves investigating cyber attacks, communicating research findings, mentoring less experienced security engineers, and improving analysis and detector development processes. Required skills include a Bachelor's degree or equivalent experience, experience in penetration testing, red teaming, or capture the flag competitions, strong understanding of network security and networking basics, good communication skills, strong working experience with Python or equivalent scripting languages, and familiarity with Wireshark, TShark or other network analysis tools. Desired skills include 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher, familiarity with MITRE’s ATT&CK Framework, and knowledge of various signature frameworks.

Requirements

  • Bachelor’s degree or equivalent experience in cyber security, computer science, engineering, or network forensics
  • Experience in penetration testing, red teaming, or capture the flag competitions that include hands-on execution of attacks and vulnerability exploitation
  • Experience in writing or working with signatures (Suricata or Snort) or machine learning intended to detect network-based cyber attacks
  • Strong understanding of network security and networking basics, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7, including IP, TCP, UDP, and HTTP
  • Good communication skills with the ability to clearly communicate in writing technical details about attacks
  • Strong working experience in using Wireshark, TShark or other network analysis tools
  • Strong working experience with Python or equivalent scripting languages

Responsibilities

  • Reproduce and analyze network-based cyber attacks, including vulnerability exploitation and lateral movement
  • Communicate in writing research findings to detection engineering and collaborate in writing detectors to detect cyber attacks
  • Mentor and teach less experienced security engineers about cyber attacks, malware analysis, vulnerabilities research, or other areas of expertise
  • Work with management and other team members to improve analysis and detector development processes

Preferred Qualifications

  • 3 years of professional experience as a Threat Researcher, Penetration Tester, or Vulnerability Researcher
  • Familiarity with MITRE’s ATT&CK Framework
  • Familiarity with VM and container technologies for setting up ephemeral environments for research
  • Familiarity with Windows protocols and reconnaissance and lateral movement techniques in Windows environments
  • Knowledge of various signature frameworks, including YARA, ClamAV, JA3, and JARM

Benefits

  • Health, dental, and vision benefits
  • Honor System PTO and 9 Holidays (US only) + 3 Days of Paid Volunteer Time
  • Non-Commissioned positions are eligible to participate in annual discretionary bonus plan
  • FSA and Dependent Care Accounts + EAP where applicable
  • Educational Reimbursement
  • 401k with employer match or Pension where applicable
  • Pet Insurance (US only)
  • Parental Leave (US Only)
  • Hybrid and Remote Work Model
Help us out by mentioning to ExtraHop that you discovered this job opportunity on JobsCollider. Your support is greatly appreciated. Thank you 🙏
Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Jobs