Security Software Engineer
Core
Building and maintaining scalable infrastructure, tooling, and analysis environments for the Threat Research team to investigate advanced malware and intrusion techniques.
Role type
Security Software Engineer (Threat Research Infrastructure)
Builds
Internal tools, network traffic inspection systems, and analysis environments for threat researchers
Domain
Cybersecurity / Threat Intelligence / Network Security
Deliverable
production ML models | product features | infrastructure
Required skills
Network traffic inspection (Wireshark, tcpdump, Moloch), Virtualization (VMware, VirtualBox, KVM), Scripting (Lua, Python), Regular expressions/PCRE, Web application development (React), RESTful API design, Database management (PostgreSQL, Elasticsearch, MongoDB), Data pipeline/ETL, Containerization (Docker, Kubernetes)
Preferred skills
React, Python, Lua
Technologies
Wireshark, tcpdump, Moloch, VMware, VirtualBox, KVM, Lua, Python, PostgreSQL, Elasticsearch, MongoDB, Docker, Kubernetes, React
Responsibilities
Evaluate and support changes to the Threat Analysis environment, Analyze needs and create internal tools, Support the team researching new and past threats including malware and exploit kits
Seniority
Mid-level to Senior, hands-on IC