Principal Detection Developer

Arctic Wolf

Arctic Wolf

Software Engineering
Multiple locations
Posted on Friday, December 8, 2023

Ready to further your career in the fast-paced, exciting world of cyber security?

Arctic Wolf, with its unicorn valuation, is the leader in security operations in an exciting and fast-growing industry—cybersecurity. We have won countless awards for our excellence in security operations and remain dedicated to providing an industry-leading customer and employee experience.

Our mission is simple: End Cyber Risk. We’re looking for a Principal Detection Developer to be part of making this happen.

About the Role:
You’ll be working as a principal detection developer on our Integration, Detection and Response Team (IDR) reporting directly to the Senior Director of IDR. This individual will be responsible for providing multiple teams with technical direction to deliver high value, performant solutions. They will provide technical guidance and direction to multiple teams of developers through the design, implementation, and automated/integration testing of our software. This individual will have a clear history of successful contribution to professional detection development projects; they are driven, curious, and results oriented; they can manage competing priorities as they relate to improving existing our existing codebase of detections and constantly challenge the status quo.

Some of your day-to-day responsibilities will be:

  • Act as a mentor to R&D technical leaders.

  • Apply broad expertise and knowledge in highly specialized fields or several related disciplines.

  • Lead and contribute to the development of company objectives and principles to achieve goals in creative and effective ways. Produce specifications and determine operational feasibility.

  • Work on significant and unique issues where analysis of situations or data requires an evaluation of intangibles.

  • Apply conceptual thinking to understand advanced issues and implications.

  • Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results.

  • Accountable for results, which may impact the entire function.

  • Create formal networks involving coordination among groups.

  • Focus on providing thought leadership and work on broader organizational projects which require understanding of wider business, by conveying advanced information and persuading several diverse stakeholders/audiences.

  • Recognized internally as a subject matter expert.

  • May direct the work of others.

About You
You are a highly advanced developer who makes important product decisions regarding direction and scope. You make informed decisions about which team members should work on which areas of a project and provide technical and professional leadership for the developers as well as work closely with surface domain directors regarding strategic planning. You identify and collaborate with multiple teams or organizations and have a deep understanding of system internals, networking, and technical trends. In addition, you are comfortable presenting to the executive team.

Basic Qualifications

  • 10 or more years of professional experience as a detection developer, reverse engineer, security researcher or CNO developer

  • Experience with Python or Go

  • OS Specific Telemetry (Windows Security/Sysmon logs, Linux, MacOS)

  • Windows PowerShell Monitoring

  • SIEM Detections

  • EDR detections/signatures

  • Sigma and Yara Rules

  • Development of anomaly and behavioral based detections

  • Tuning and optimization of detections for all the above

  • Experience with leading and mentoring groups of developers while contributing code independently.

  • Experience leading Agile development teams, preferably with formal Agile training

  • Preferably located in Canada or the U.S.

  • Nice to have: Demonstrated history of technical influence (public conference talks, papers, etc)

  • Nice to have: Commitment to continuous learning and skills development.

  • Nice to have: B.Sc. in a technical field (CS, CE, EE, Math, Physics, etc with M.Sc./PhD preferred)

In addition, you have proven leadership experience from previous projects, regardless of title held. You have the ability to perform programming tasks and large engineering projects with independence and expertise. You will be responsible for guiding and mentoring other staff members and will regularly lead technical projects. You have a high level of mastery over software development best practices, security research and building reusable software based on that research. You have a history of delivering successful projects, as well as some lessons learned from failures.

Security Requirements

  • Conducts duties and responsibilities in accordance with AW’s Information Security policies, standards, processes, and controls to protect the confidentiality, integrity, and availability of AW business information assets.

  • Must pass a criminal background check and an employment verification as a condition of employment.

About Arctic Wolf

At Arctic Wolf we’re cultivating a collaborative and productive work environment that welcomes a diversity of backgrounds, cultures, and ideas to make our teams even stronger as we grow globally. We’ve been named one of the 50 Most Innovative Companies in the world for 2022 (Fast Company)—and the 2nd Most Innovative Security Company. This is in addition to consecutive awards from Top Workplace USA (2021, 2022), Best Places to Work - USA (2021, 2022) and Great Place to Work - Canada (2021, 2022).

Our Values

Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good.

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.

All wolves receive compelling compensation and benefits packages, including:

  • Equity for all employees

  • Bonus or commission pay based on role

  • Flexible time off, paid volunteer days and paid parental leave

  • 401k/RRSP match

  • Medical, Dental, and Vision insurance

  • Health Savings and Flexible Spending Agreement

  • Voluntary Legal Insurance

  • Training and career development programs

Come join the Pack during this exciting time of rapid growth where every employee makes a difference and their contributions are recognized and rewarded.