Lead Detection Developer, Cloud
A Detection Developer has a clear history of successful contribution to professional detection development projects. They are driven,
curious, and results oriented. They are able to manage competing priorities as they relate to improving existing our existing codebase of
detections and constantly challenge the status quo. With additional experience and exposure to advanced detection development patterns
and projects, they are capable of becoming a Principal within 2 years.
Basic Qualifications
7 or more years of professional experience as a Detection Developer
Experience consists of projects contributing in either Python or YAML
SaaS, IaaS, and Identity Specific Telemetry (AWS Cloudtrail, Azure Activity Logs, IDP’s, API Activity Logs, Mail)
Cloud and Identity Forensic Investigation Experience
SIEM Detections
CDR detections/signatures
Sigma Rules
Development of anomaly and behavioral based detections
Tuning and optimization of detections for all the above
Professional certifications in Security and/or Cloud are required (i.e. CISSP, CCSP, GIAC Cloud Threat Detection (GCTD), GIAC Public
Cloud Security (GPCS), GIAC Cloud Forensics Responder (GCFR), AWS Security Specialty, Microsoft Azure Security Certifciations.
Experience consists of leading a team of 3 or more Detection Developers while contributing code independently
Experience leading Agile development teams, preferably with formal Agile training
Preferably located in Canada or the U.S.
Nice to have: A clear history of technical influence (public conference talks, papers, etc)
Nice to have: A clear history of learning and skills development. Regularly helps detection developers develop their skills in a variety of
ways.
Nice to have: B.Sc. in Computer Science
Nice to have: Located in the Eastern Time Zone
About the role
You’ll be working as a detection developer on our Cloud Detection Team, responsible for ensuring quality and scale of our detection base
and presenting actionable detections to our Security Services teams and customers.
Some of your day-to-day responsibilities will be:
Providing mentorship and technical leadership to the team.
Developing and maintaining Python and YAML-based detections, software, and systems.
Research and develop expertise in the various threat surfaces and telemetry available for them
Propose coverage and efficacy improvements to the detection surface
Work with team members to develop novel detections and continuously tune existing ones
Build runbooks, reports and supporting material for detection surfaces
Collaborating with cross-functional teams to gather requirements and implement detections.
Writing clean, efficient, and reusable code in Python.
Conducting code reviews and providing constructive feedback to ensure code quality and maintainability.
Debugging and fixing issues in existing Python codebases.
Optimizing application performance and ensuring scalability.
Participate in the full software development life cycle, building well-designed, testable, efficient, secure code.Understand the product and how Security Services delivers the service.
Develop professional expertise, apply company policies and procedures to resolve a variety of issues. Determine a course of action
based on guidelines, and modify processes and methods as required.
Continuously learning and adopting best practices for code quality, software development methodologies, and programming principles
to enhance coding skills and stay updated with industry advancements.
Other Jobs from Arctic Wolf
Senior Lead Technical Program Manager
Senior Developer
Senior Sales Engineer – Managed Service Provider (m/w/d),
Senior Developer – Network Appliance Platform
Senior Developer - Full stack
Similar Jobs
Lead QA Engineer
Senior Software Engineer
Senior Software Engineer
Senior Software Engineer
Technical Support Engineer - Developer Support
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say