Simplify Logo

Full-Time

Network Cybersecurity Engineer

TS/SCI Eligible and TS/SCI

Posted on 6/28/2024

Corelight

Corelight

201-500 employees

Provides network detection and response technology

Data & Analytics
Hardware
Cybersecurity

Compensation Overview

$149k - $166kAnnually

+ Commission + Bonus + Equity

Senior, Expert

Washington, DC, USA + 2 more

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
PowerShell
Bash
Python
Communications
Perl
Splunk
Linux/Unix
Requirements
  • 5+ years experience in a security professional services role
  • Bachelor’s degree in a technical field (or equivalent experience)
  • Strong background in cybersecurity
  • Solid verbal and written communication skills
  • Enjoy designing novel solutions
  • Understand how to scope and describe a services engagement
  • Robust problem-solving skills
  • Zeek log experience and log analysis skills are required
  • Network administration, firewall configuration, and strong knowledge of TCP/IP
  • Windows/MacOS/Linux/Unix administration experience
  • Scripting in (some of) Zeek, Bash, Python, Perl, Powershell, etc.
  • SIEM experience (Splunk required, others a bonus)
  • Travel up to 50% post-COVID; some travel now, depending on customer comfort levels
  • Prior startup experience preferred
  • TS/SCI Eligible and TS/SCI
Responsibilities
  • Help customers improve their cybersecurity posture, with a particular focus on process optimization
  • Help investigate incidents
  • Educate on Zeek Log use, including as it relates to Corelight Suricata alerts
  • Design and implement technical solutions with ecosystem partners (packet brokers, asset managers, SOAR systems, etc.)
  • Implement queries and dashboards in SIEMs - Splunk, Elastic, Humio, etc.
  • Influence customers and Corelight teams and be seen as a technical expert
  • Collaborate with product management on product features/integrations
  • Work with back-end tools like Kafka and Logstash

Corelight provides network detection and response (NDR) technology aimed at improving cybersecurity for businesses. Their products enhance network visibility, speed up investigations, and bolster defenses against cyber threats. Corelight's Open NDR technology is utilized by cybersecurity firms like Mandiant and CrowdStrike, allowing these companies to offer services such as incident response and network security monitoring. Corelight's offerings include the Open NDR Platform and the Cloud Sensor for AWS, which help organizations detect threats more effectively and respond to them in real-time. Unlike many competitors, Corelight focuses on providing tools that integrate seamlessly with existing cybersecurity solutions, making it easier for firms to enhance their services. The goal of Corelight is to empower businesses and cybersecurity firms with advanced tools that improve their ability to detect and respond to cyber threats, ultimately strengthening their overall security posture.

Company Stage

Series E

Total Funding

$310.4M

Headquarters

San Francisco, California

Founded

2013

Growth & Insights
Headcount

6 month growth

8%

1 year growth

-6%

2 year growth

17%
Simplify Jobs

Simplify's Take

What believers are saying

  • Corelight's recent $150M Series E funding round positions the company for significant growth and innovation.
  • The company's continuous product enhancements, such as the launch of VPN protocol analyzers and enhanced IDS rules management, demonstrate a commitment to staying ahead of cyber threats.
  • Partnerships with industry leaders like CrowdStrike and Microsoft Defender for IoT expand Corelight's market presence and technological capabilities.

What critics are saying

  • The highly competitive cybersecurity market requires Corelight to continuously innovate to maintain its edge.
  • Dependence on partnerships with other cybersecurity firms could pose risks if these relationships weaken or dissolve.

What makes Corelight unique

  • Corelight's Open NDR technology, leveraging open-source tools like Zeek and Suricata, provides unparalleled network visibility and threat detection capabilities.
  • Their strategic partnerships with leading cybersecurity firms like CrowdStrike and Mandiant enhance their market credibility and extend their technological reach.
  • Corelight's focus on real-time data enrichment and integration with next-gen SIEM platforms like CrowdStrike Falcon sets them apart from traditional NDR solutions.
INACTIVE