Senior Security Researcher NDRIPSIDS

Not Interested
Bookmark
Report This Job

profile Job Location:

Bengaluru - India

profile Monthly Salary: Not Disclosed
Posted on: 3 days ago
Vacancies: 1 Vacancy

Job Summary

Job Description

At Arctic Wolf were redefining the cybersecurity landscape. With our employee Pack members spread out globally committed to setting new industry standards. Our accomplishments speak for themselves from our recognition in the Forbes Cloud 100 CNBC Disruptor 50 Fortune Future 50 and Fortune Cyber 60 to winning the 2024 CRN Products of the Year award. Were proud to be named a Leader in the IDC MarketScape for Worldwide Managed Detection and Response Services and earning a Customers Choice distinction from Gartner Peer Insights. Our Aurora Platform also received CRNs Products of the Year award in the inaugural Security Operations Platform category. Join a company thats not only leading but also shaping the future of security operations.

Our mission is simple: End Cyber Risk.

Were looking for a Detection Developer for IDR team to be part of making this happen.

A Security Developer has a clear history of successful contribution to professional detection development projects. They are driven curious and results oriented. They are able to manage competing priorities as they relate to improving our existing codebase of detections and constantly challenge the status quo.

About the role
Youll be working as a Senior Security Developer on our Integration Detection and
Response Team responsible for ensuring quality and scale of our detection base
and presenting actionable detections to our Security Services teams and customers.

Some of your day-to-day responsibilities will be:

  • Developing and maintaining high quality custom detection rules
  • (Suricata/Snort/IDS/IPS).
  • Research and develop expertise for various threat surfaces and telemetry
  • available for them
  • Conducting code reviews and providing constructive feedback to ensure code
  • quality and maintainability.
  • Debugging and fixing issues in existing detection/signature codebases.
  • Participate in the full software development life cycle building well-
  • designed testable efficient secure code.
  • Work with team members to develop novel detections and continuously tune
  • existing ones
  • Understand the product and how Security Services delivers the service.
  • Propose coverage and efficacy improvements to the detection surface
  • Build well-designed testable efficient durable detections
  • Build runbooks reports and supporting material for detection surface
  • Document research findings and knowledge share with team and other
  • departments
  • Troubleshoot educate and share information with non-technical people
  • Continuously learning and adopting best practices for code quality software development methodologies and programming principles to enhance coding skills and stay updated with industry advancements.
  • We value a culture of sharing so every team has the opportunity to share their work with the entire department during our monthly R&D Demos. Once a year we hold a department-wide Hackathon teaming up across all R&D teams over four days to collaborate and build cool ideas outside the normal project scope.
  • While innovation is the focus some of these ideas do make it into our products.

About You

6 or more years of detection authoring experience with a focus on the following key
areas:

  • NDR/IPS/IDS detections/signatures

  • Development of anomaly and behavioural based detections

  • Tuning and optimization of detections

  • Expertise on the inner workings of networking protocols(TCP/IP DNS

  • HTTP) protocol analysers Suricata/snort rules and other network-related

  • threat management domain topics e.g. LDAP NTLM etc

  • Proven ability and experience to research and develop security detections

  • related to network threat vectors

  • Experience using MITRE ATT&CK PCAP analysis and threat intelligence

  • feeds.

  • Experience with 3rd-party firewalls IDS/IPS and network edge devices theircapabilities and configuration is a bonus but minimally understanding their use and vulnerabilities.

  • We use and train a variety of technologies in MDR.

  • You should have astrong understanding of networking protocols and cybersecurity.

  • As a detection developer you bring a strong knowledge base that you use to help the team solve complex technical and security problems.

Helpful to have experience in the following areas:

  • SIEM detections

  • EDR detections/signatures

  • Sigma and Yara rules

  • Cloud security detections

  • Experience in at least two of the following Development Languages & Methodologies:

  • Python Go Java or C/C

  • Test Driven Development

  • Full understanding and use of DevOps methods/tooling

  • Full understanding/application of secure development practices

  • Cloud Development: AWS Azure and GCP using Kubernetes/Containers

  • IaaS and key PaaS services

  • Agile (SCRUM/Kanban)

  • Experience in following security tooling is a plus:

  • NGFW (PAN CISCO Fortinet etc.)

  • Open Source IPS/IDS/NSM (e.g. Bro/Zeek/Suricata)

Why Arctic Wolf

At Arctic Wolf we foster a collaborative and inclusive work environment that thrives on diversity of thought background and culture. This is reflected in our multiple awards including Top Workplace USA (2021-2024) Best Places to Work USA (2021-2024) Great Place to Work Canada (2021-2024) Great Place to Work UK (2024) and Kununu Top Company Germany (2024). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction with over 7000 customers worldwide and more than 2000 channel partners globally. As we continue to expand globally and enhance our technology Arctic Wolf remains the most trusted name in the industry.

Our Values

Arctic Wolf recognizes that success comes from delighting our customers so we work together to ensure that happens every day. We believe in diversity and inclusion and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate thatby protecting peoples and organizations sensitive data and seeking to end cyber risk we get to work in an industry that is fundamental to the greater celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity also believe and practice corporate responsibility and have recently joined the Pledge 1% Movement ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.

All wolves receive compelling compensation and benefits packages including:

Equity for all employees

Flexible annual leave paid holidays and volunteer days

Training and career development programs

Comprehensive private benefits plan including medical insurance for you and your family life insurance (3x compensation) and personal accident insurance.

Fertility support and paid parental leave

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race colour religion sex orientation national origin age disability genetics or any other basis forbidden under federal provincial or local law. Arctic Wolf is committed to fostering a welcoming accessible respectful and inclusive environment ensuring equal access and participation for people with disabilities. As such we strive to make our entireemployeeexperience as accessible as possible and provideaccommodationsas required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing

On-Camera Policy
To support a fair transparent and engaging interview experience candidates interviewing remotely are expected to be on camera during all video interviews.
Being on camera fosters authentic connection improves communication and allows for full engagement from both candidates and interviewers.
We understand that technical bandwidth or location-related challenges may occasionally prevent video use. If this applies candidates are required to notify us in advance so we can explore appropriate accommodations.


Security Requirements

Conducts duties and responsibilities in accordance with AWNs Information Security policies standards processes and controls to protect the confidentiality integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
Background checks are required for this position.
This position may require access to information protected under U.S. export control laws and regulations including the Export Administration Regulations (EAR). Please note that if applicable an offer for employment will be conditioned on authorization to receive software or technology controlled under these laws and regulations


Required Experience:

Senior IC

Job DescriptionAt Arctic Wolf were redefining the cybersecurity landscape. With our employee Pack members spread out globally committed to setting new industry standards. Our accomplishments speak for themselves from our recognition in the Forbes Cloud 100 CNBC Disruptor 50 Fortune Future 50 and For...
View more view more

Key Skills

  • Arm
  • Machine Learning
  • AI
  • C/C++
  • R
  • Clinical Trials
  • Experience Administering Injections
  • Research Experience
  • Research & Development
  • Assembly
  • Semantic Web
  • Vulnerability Research

About Company

Company Logo

Arctic Wolf delivers dynamic, 24x7 AI-driven cybersecurity protection tailored to the needs of your organization. Ready to boost your cyber resilience?

View Profile View Profile