Security Engineer, Threat Research

ExtraHop · USA

Company

ExtraHop

Location

USA

Type

Full Time

Job Description

We are ExtraHop . We’re on a mission to provide security teams with the intelligence they need to confront and stop advanced threats like supply chain attacks zero day exploits and ransomware attacks. Attackers still have the advantage. We’re taking it back with creativity intellectual curiosity and a sense of humor. Are you ready to help us reclaim the upper hand?

Do you like securing complex networks? Want to be a part of a collaborative team that builds solutions that protect some of the biggest networks in the world? ExtraHop is seeking a Senior Security Engineer experienced with threat detection and networking to grow our world-class Threat Research team.

We are looking for a self-starter that enjoys investigating cyber attacks and how adversaries are traversing the network for lateral movement. You must have a strong understanding of the attack lifecycle and a deep desire to stop attackers before they can do damage.

Duties & Responsibilities

  • Support Threat Research and Detection Engineering teams by providing tools and automation to accelerate Research & Development.

  • Develop and maintain a scalable research lab using modern Infrastructure-as-Code and Cloud-based technologies

  • Develop and maintain internal systems including but not limited to:

    • Software deployment pipelines supporting continuous software delivery

    • Pipelines for ingestion of new network identifiers to enable fingerprinting of device software and cloud services

    • Central detection engineering metadata repository

    • Continuous Testing and Validation pipelines

  • Work with a collaborative dedicated and seasoned team of engineers

Required Skills & Experience

  • Bachelor’s degree or equivalent experience in computer science engineering or information technology

  • Solid understanding of the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7 including ARP IP TCP UDP and HTTP

  • Solid knowledge of Git Python Terraform Ansible and the use of scripting in support of CI/CD pipelines.

  • Ability to work in a shared code repository while maintaining existing coding standards

  • Experience deploying and maintaining systems using modern Orchestration and Infrastructure-as-Code technologies

  • Experience working with container-based environments (Docker LXC etc)

  • Experience using and managing virtual infrastructure for VMware Hyper-V Xen and/or KVM.

  • Experience with Azure and AWS cloud platforms

  • Experience building scalable performant and cost-effective cloud-based systems

Desired Skills & Experience

  • Knowledge of Threat Research and/or Detection Engineering disciplines for example:

    • Experience using tools such as wireshark tcpdump tcpreplay

    • Experience simulating malicious threats in an isolated environment and documenting outcomes

    • Experience developing network-based detections based on indicators of compromise

  • Experience working in an agile or Scaled-agile environment

All R&D Employees will be required to attend 2 mandatory in-person events every year of approx. 4 days duration.

$125130 - $163982 + bonus + benefits

Applicants must be authorized to work for ANY employer in the U.S.  We are unable to sponsor or assume sponsorship of an employment Visa at this time.

#LI-CS1

#remote

Apply Now

Date Posted

05/14/2024

Views

21

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

© 2026 Job Transparency. All rights reserved.