Software Engineer III - Security
ExtraHop is on a mission to protect and propagate trust by revealing the cybertruth: the truth about the attackers already inside an organization’s network, the truth about what they’re doing, and how to stop them at top speed. We partner with every customer, every day, to reveal it. Are you ready to join us?
Who are we?
We are ExtraHop. We’re on a mission to provide security teams with the intelligence they need to confront and stop advanced threats like supply chain attacks, zero day exploits, and ransomware attacks. Attackers still have the advantage. We’re taking it back with creativity, intellectual curiosity, and a sense of humor. Are you ready to help us reclaim the upper hand?
Who are you?
Do you like securing complex networks? Want to be a part of a collaborative team that builds solutions that protect some of the biggest networks in the world? ExtraHop is seeking a Software Engineer 3 | Security experienced with modern software development and infrastructure-as-code practices to build and operate the tools, pipelines, and lab infrastructure that allow us to keep pace with a rapidly changing landscape and deliver actionable insights to our customers at lightning speed.
We're looking for candidates with a mix of software development and DevOps experience, who enjoy working in a collaborative environment and building tools to help developers and threat researchers work faster, smarter, and more efficiently.
You must have experience developing software tools in a collaborative setting, deploying to cloud environments, and developing IaC blueprints for modular, reusable environments using Infrastructure-as-Code, distributed source control, virtualization and container technologies.
Duties & Responsibilities
Support Threat Research and Detection Engineering teams by providing tools and automation to accelerate Research & Development.
Develop and maintain a scalable research lab using modern Infrastructure-as-Code and Cloud-based technologies
Develop and maintain internal systems, including but not limited to:
Software deployment pipelines supporting continuous software delivery
Pipelines for ingestion of new network identifiers to enable fingerprinting of device, software, and cloud services
Central detection engineering metadata repository
Continuous Testing and Validation pipelines
Work with a collaborative, dedicated and seasoned team of engineers
Required Skills & Experience
Bachelor’s degree or equivalent experience in computer science, engineering, or information technology
Solid understanding of the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7 including ARP, IP, TCP, UDP, and HTTP
Solid knowledge of Git, Python, Terraform, Ansible, and the use of scripting in support of CI/CD pipelines.
Ability to work in a shared code repository while maintaining existing coding standards
Experience deploying and maintaining systems using modern Orchestration and Infrastructure-as-Code technologies
Experience working with container-based environments (Docker, LXC, etc)
Experience using and managing virtual infrastructure for VMware, Hyper-V, Xen, and/or KVM.
Experience with Azure and AWS cloud platforms
Experience building scalable, performant, and cost-effective cloud-based systems
Desired Skills & Experience
Knowledge of Threat Research and/or Detection Engineering disciplines, for example:
Experience using tools such as wireshark, tcpdump, tcpreplay
Experience simulating malicious threats in an isolated environment and documenting outcomes
Experience developing network-based detections based on indicators of compromise
Experience working in an agile or Scaled-agile environment
All R&D Employees will be required to attend 2 mandatory in-person events every year of approx. 4 days duration.
$125,130 - $163,982 + bonus + benefits
#LI-CS1
#remote