Elastic2 дня назад
macOS / Container Security - Senior Security Research Engineer
Зарплата не указана
United States
Навыки
macOS securityKubernetes securityContainer securityDetection engineeringElastic SecurityTelemetry analysisThreat researchOSINT research
Обязанности
- 01Develop tailored detection analytics for endpoint macOS and Kubernetes / container environments
- 02Validate rule functionality and minimize false positives through thorough reviews
- 03Analyze multi-source telemetry to uncover detection opportunities and enhance clarity
- 04Collaborate with peers to implement innovative detection methodologies and engage in community knowledge sharing
- 05Emulate various threat scenarios to thoroughly assess detection capabilities
- 06Develop and refine detection rules based on the outcomes of these simulations
- 07Evaluate existing protection mechanisms against simulated attacks and document your findings while recommending improvements for threat detection
- 08Collaborate with the engineering team to identify telemetry gaps in existing security measures
- 09Design and implement enhancements that improve detection accuracy
- 10Assess current telemetry data's gaps in identifying emerging threats and integrate advanced analytics to strengthen detection capabilities
- 11Provide technical guidance on best practices for utilizing telemetry in security measures
- 12Write and publish insightful blogs that focus on detection strategies and methodologies
- 13Contribute to open-source intelligence (OSINT) research, sharing valuable findings with the community
- 14Develop and maintain a repository of security rules and detection content
- 15Engage with the cybersecurity community to promote knowledge sharing and best practices
- 16Collaborate with external partners to enhance resources and tools for threat detection
Требования
- 01Experience with detection rule development for macOS / Kubernetes / container environments
- 02Proficiency in using Elastic Security features and tools
- 03Created detection rules that reduced false positives
- 04Published contributions to community detection content or security research
- 05Innovated and shared novel approaches for telemetry analysis within security research communities
- 06Achieved recognition or accolades for contributions to detection engineering or threat research initiatives
- 07Ability to comfortably rotate across projects, collaborate across functions and teams, and seamlessly adapt to evolving team structures
- 08Proven ability to seamlessly transition between different projects, codebases, or scrum teams based on dynamic business priorities
- 09Work autonomously and can drive decisions and results in a distributed team by leveraging asynchronous, direct, and transparent communication
Условия
- 01Competitive pay based on the work you do here and not your previous salary
- 02Health coverage for you and your family in many locations
- 03Ability to craft your calendar with flexible locations and schedules for many roles
- 04Generous number of vacation days each year
- 05We match up to $2000 (or local currency equivalent) for financial donations and service
- 06Up to 40 hours each year to use toward volunteer projects you love
- 07Embracing parenthood with minimum of 16 weeks of parental leave
- 08Distributed company with flexible work arrangements