Full-Time

Sr. Detection Developer

Posted on 11/20/2024

Arctic Wolf

Arctic Wolf

1,001-5,000 employees

Provides tailored 24x7 cybersecurity protection

Cybersecurity

Senior

Remote in USA + 1 more

More locations: Remote in Canada

Preference for candidates located in Canada or the U.S.

Category
Cybersecurity
IT & Security
Required Skills
Agile
Python
Requirements
  • 4 or more years of professional experience as a Detection Developer
  • Experience consists of projects contributing in either Python or YAML
  • SaaS, IaaS, and Identity Specific Telemetry (AWS Cloudtrail, Azure Activity Logs, IDP’s, API Activity Logs, Mail)
  • Cloud and Identity Forensic Investigation Experience
  • SIEM Detections
  • CDR detections/signatures
  • Sigma Rules
  • Development of anomaly and behavioral based detections
  • Tuning and optimization of detections for all the above
  • Professional certifications in Security and/or Cloud are required (i.e. CISSP, CCSP, GIAC Cloud Threat Detection (GCTD), GIAC Public Cloud Security (GPCS), GIAC Cloud Forensics Responder (GCFR), AWS Security Specialty, Microsoft Azure Security Certifications.
  • Experience consists of leading a team of 3 or more Detection Developers while contributing code independently
  • Experience leading Agile development teams, preferably with formal Agile training
  • Preferably located in Canada or the U.S.
Responsibilities
  • Providing mentorship and technical leadership to the team.
  • Developing and maintaining Python and YAML-based detections, software, and systems.
  • Research and develop expertise in the various threat surfaces and telemetry available for them
  • Propose coverage and efficacy improvements to the detection surface
  • Work with team members to develop novel detections and continuously tune existing ones
  • Build runbooks, reports and supporting material for detection surfaces
  • Collaborating with cross-functional teams to gather requirements and implement detections.
  • Writing clean, efficient, and reusable code in Python.
  • Conducting code reviews and providing constructive feedback to ensure code quality and maintainability.
  • Debugging and fixing issues in existing Python codebases.
  • Optimizing application performance and ensuring scalability.
  • Participate in the full software development life cycle, building well-designed, testable, efficient, secure code.
  • Understand the product and how Security Services delivers the service.
  • Develop professional expertise, apply company policies and procedures to resolve a variety of issues. Determine a course of action based on guidelines, and modify processes and methods as required.
  • Continuously learning and adopting best practices for code quality, software development methodologies, and programming principles to enhance coding skills and stay updated with industry advancements.

Arctic Wolf provides cybersecurity services that protect organizations from cyber threats around the clock. Their main offering is a cloud-native platform that works in conjunction with a dedicated team of experts, ensuring that each client's specific security needs are met. This unique concierge delivery model helps clients avoid the issues of overinvesting in multiple security tools and experiencing alert fatigue, where security teams are overwhelmed by too many alerts. Arctic Wolf operates on a subscription basis, providing continuous monitoring and support, which includes establishing or enhancing a Security Operations Center (SOC) with 24/7 coverage. The company aims to help clients save money and improve their security posture by offering tailored solutions that deliver a high return on investment.

Company Stage

N/A

Total Funding

$874.7M

Headquarters

Eden Prairie, Minnesota

Founded

2012

Growth & Insights
Headcount

6 month growth

6%

1 year growth

17%

2 year growth

23%
Simplify Jobs

Simplify's Take

What believers are saying

  • Winning the Best SME Security Solution at the 2024 SC Awards Europe highlights Arctic Wolf's industry recognition and credibility.
  • Strategic partnerships with companies like LBMC Technology Solutions and Verinext demonstrate Arctic Wolf's strong market presence and collaborative approach.
  • The launch of the Cyber Resilience Assessment tool showcases Arctic Wolf's commitment to innovation and helping clients improve their security posture and insurability.

What critics are saying

  • The cybersecurity market is highly competitive, with numerous players offering similar services, which could impact Arctic Wolf's market share.
  • Reliance on a subscription-based model means that customer retention is crucial; any lapse in service quality could lead to significant revenue loss.

What makes Arctic Wolf unique

  • Arctic Wolf's unique concierge delivery model offers personalized, 24x7 cybersecurity protection, setting it apart from competitors who rely solely on automated solutions.
  • The company's cloud-native platform ensures scalability and flexibility, which is crucial for adapting to evolving cyber threats.
  • Arctic Wolf's integration with industry-leading tools like iManage and ESET enhances its comprehensive security offerings, providing clients with a more robust defense system.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Equity For All Employees

Diverse, equitable, & inclusive workplace

Remote Work Opportunities

Paid Parental Leave

Flexible Paid Time Off For All Employees

Professional Development