macOS / Container Security - Senior Security Research Engineer
full-time
senior
Posted 23 hours ago
Apply Now
Stand out: build a proof-of-work pitch →
Free GitHub-based preview. Direct apply stays one click away.
Get weekly job alerts like this →Hiring for this role?
AI Market Demand Pack · $29 one-time
Compare this role's skills with the full AI hiring market. Get ranked demand, salary bands, leading companies, public source URLs, and a decision brief.
About this role
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.
What is The Role
In this role, you'll work with the Threat Research and Detection Engineering (TRaDE) team, which plays a key part in shaping the detection capabilities within Elastic Security. We're seeking a Senior Security Research Engineer who has a solid background in macOS and Kubernetes / container security, useful experience in detection engineering, and a genuine interest in enhancing defensive measures.
What You Will Be Doing
Develop tailored detection analytics for endpoint macOS and Kubernetes / container environments. Validate rule functionality and minimize false positives through thorough reviews. Analyze multi-source telemetry to uncover detection opportunities and enhance clarity. Collaborate with peers to implement innovative detection methodologies and engage in community knowledge sharing.
Emulate various threat scenarios to thoroughly assess detection capabilities. Develop and refine detection rules based on the outcomes of these simulations. Evaluate existing protection mechanisms against simulated attacks and document your findings while recommending improvements for threat detection.
Collaborate with the engineering team to identify telemetry gaps in existing security measures. Design and implement enhancements that improve detection accuracy. Assess current telemetry data's gaps in identifying emerging threats and integrate advanced analytics to strengthen detection capabilities. Provide technical guidance on best practices for utilizing telemetry in security measures.
Write and publish insightful blogs that focus on detection strategies and methodologies. Contribute to open-source intelligence (OSINT) research, sharing valuable findings with the community. Develop and maintain a repository of security rules and detection content. Engage with the cybersecurity community to promote knowledge sharing and best practices, and collaborate with external partners to enhance resources and tools for threat detection.
What You Bring
Experience with detection rule development for macOS / Kubernetes / container environments
Proficiency in using Elastic Security features and tools
Created detection rules that reduced false positives. These rules also improved incident response performance and improved detection coverage
Published contributions to community detection content or security research
Innovated and shared novel approaches for telemetry analysis within security research communities
Achieved recognition or accolades for contributions to detection engineering or threat research initiatives
You possess the ability to comfortably rotate across projects, collaborate across functions and teams, and seamlessly adapt to evolving team structures
Proven ability to seamlessly transition between different projects, codebases, or scrum teams based on dynamic business priorities
You work autonomously and can drive decisions and results in a distributed team by leveraging asynchronous, direct, and transparent communication
Additional Information - We Take Care of Our People
As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.
We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do.
Competitive pay based on the work you do here and not your previous salary
Health coverage for you and your family in many locations
Ability to craft your calendar with flexible locations and schedules for many roles
Generous number of vacation days each year
Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
Up to 40 hours each year to use toward volunteer projects you love
Embracing parenthood with minimum of 16 weeks of parental leave
Different people approach problems differently. We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qu
Similar Jobs
Related searches:
Get jobs like this delivered weekly
Free AI jobs newsletter. No spam.