macOS / Container Security - Senior Security Research Engineer

Elastic · United States
full-time senior Posted 23 hours ago
Apply Now Stand out: build a proof-of-work pitch →

Free GitHub-based preview. Direct apply stays one click away.

Get weekly job alerts like this →

Hiring for this role?

AI Market Demand Pack · $29 one-time

Compare this role's skills with the full AI hiring market. Get ranked demand, salary bands, leading companies, public source URLs, and a decision brief.

See the live sample →

About this role

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI. What is The Role In this role, you'll work with the Threat Research and Detection Engineering (TRaDE) team, which plays a key part in shaping the detection capabilities within Elastic Security. We're seeking a Senior Security Research Engineer who has a solid background in macOS and Kubernetes / container security, useful experience in detection engineering, and a genuine interest in enhancing defensive measures.   What You Will Be Doing Develop tailored detection analytics for endpoint macOS and Kubernetes / container environments. Validate rule functionality and minimize false positives through thorough reviews. Analyze multi-source telemetry to uncover detection opportunities and enhance clarity. Collaborate with peers to implement innovative detection methodologies and engage in community knowledge sharing. Emulate various threat scenarios to thoroughly assess detection capabilities. Develop and refine detection rules based on the outcomes of these simulations. Evaluate existing protection mechanisms against simulated attacks and document your findings while recommending improvements for threat detection. Collaborate with the engineering team to identify telemetry gaps in existing security measures. Design and implement enhancements that improve detection accuracy. Assess current telemetry data's gaps in identifying emerging threats and integrate advanced analytics to strengthen detection capabilities. Provide technical guidance on best practices for utilizing telemetry in security measures. Write and publish insightful blogs that focus on detection strategies and methodologies. Contribute to open-source intelligence (OSINT) research, sharing valuable findings with the community. Develop and maintain a repository of security rules and detection content. Engage with the cybersecurity community to promote knowledge sharing and best practices, and collaborate with external partners to enhance resources and tools for threat detection. What You Bring Experience with detection rule development for macOS / Kubernetes / container environments Proficiency in using Elastic Security features and tools Created detection rules that reduced false positives. These rules also improved incident response performance and improved detection coverage Published contributions to community detection content or security research Innovated and shared novel approaches for telemetry analysis within security research communities Achieved recognition or accolades for contributions to detection engineering or threat research initiatives You possess the ability to comfortably rotate across projects, collaborate across functions and teams, and seamlessly adapt to evolving team structures Proven ability to seamlessly transition between different projects, codebases, or scrum teams based on dynamic business priorities You work autonomously and can drive decisions and results in a distributed team by leveraging asynchronous, direct, and transparent communication Additional Information - We Take Care of Our People As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do. We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do. Competitive pay based on the work you do here and not your previous salary Health coverage for you and your family in many locations Ability to craft your calendar with flexible locations and schedules for many roles Generous number of vacation days each year Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service Up to 40 hours each year to use toward volunteer projects you love Embracing parenthood with minimum of 16 weeks of parental leave Different people approach problems differently. We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qu

Similar Jobs

Related searches:

On-site Jobs Senior Jobs On-site Senior Jobs Senior AI ResearchSenior AI Safety & SecuritySenior Data Engineering searchsecurityresearch

Get jobs like this delivered weekly

Free AI jobs newsletter. No spam.