Job Closed
This listing is no longer active.
ExtraHop was developed by Jesse Rothstein and Raja Mukerji in 2007 to “help IT Operations teams thrive despite exponential increases in IT complexity.” As c
Senior Software Engineer | Security
Location
United States
Posted
91 days ago
Salary
$150K - $180K / year
Seniority
Senior
Job Description
Senior Software Engineer | Security
ExtraHop Networks
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a highly skilled and motivated Senior Software Engineer | Security with a strong software and detection engineering background to join our Detection Engineering (DE) team and help expand ExtraHop’s industry leading detection coverage. An ideal candidate will have strong software engineering, networking, and cybersecurity fundamentals. This position works closely with security researchers and data scientists to develop cutting edge network threat detections that leverage rule-based network observations as well as ML-powered anomaly detections. As a Senior Software Engineer | Security, you will be working as part of a team dedicated to delivering industry leading detection capabilities. You will be expected to work with a high level of autonomy, to mentor other team members, and to demonstrate a high level of ownership of your areas of responsibility. ExtraHop offers an exciting, high-energy, and versatile environment in which people are encouraged and supported to collaborate on industry-leading technology and create a world-class engineering team while they develop and enrich their individual growth. ExtraHop R&D supports fully-flexible work options that include full-time onsite, hybrid, and fully remote working arrangements. Key Responsibilities - Develop network threat detectors by leveraging rule-based and ML-based detection strategies. - Reproduce attacks in a lab environment using live tools and recorded PCAP traffic, and perform threat hunts on aggregated log data, in order to identify malicious behaviors and develop techniques to detect them. - Collaborate with Threat Research and Data Science teams to gain insight on attacker techniques and take advantage of the latest machine learning models to detect attacker behavior. - Work with infrastructure teams to help develop and improve tools that Detection Engineering and Threat Research teams use in developing and testing detections. - Mentor and coach other Security Engineers regarding detector development and network threats. - Actively participate in code review to ensure quality and uplevel other engineers. Qualifications - 7+ years of experience in software engineering. - Solid knowledge of Javascript and Python. - In-depth knowledge of networking fundamentals, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7. - Experience developing solutions using cloud-native technologies. - Self-starter with a strong problem-solving track record and ability to grow and learn. - Excellent teammate and collaborator who can iterate on problems quickly. - Proficient at communication in both spoken and written forms, including documentation. Preferred Qualifications - Experience working with network packet-level data using tools like Wireshark, tshark, tcpdump, tcprewrite, and Scapy to directly interact with this data. - Knowledge of cloud and on-premise cybersecurity threat models - attacker behavior, tools, techniques, and practices. Ability to translate this knowledge into user-facing threat detections. Benefits - Health, Dental, and Vision Benefits. - Flexible PTO, Sick Time Prorated Based on Date of Hire, and All Federal Holidays (US Only) + 3 Days of Paid Volunteer Time. - Non-Commissioned Positions may be eligible to participate in the Annual Discretionary Bonus Plan. - FSA and Dependent Care Accounts + EAP, where applicable. - Educational Reimbursement. - 401k with Employer Match or Pension where applicable. - Pet Insurance (US Only). - Parental Leave (US Only). - Hybrid and Remote Work Model.
Job Requirements
- 7+ years of experience in software engineering.
- Solid knowledge of Javascript and Python.
- In-depth knowledge of networking fundamentals, including the OSI model and excellent working knowledge of the key protocols from Layer 2 through Layer 7.
- Experience developing solutions using cloud-native technologies.
- Self-starter with a strong problem-solving track record and ability to grow and learn.
- Excellent teammate and collaborator who can iterate on problems quickly.
- Proficient at communication in both spoken and written forms, including documentation.
- Preferred Qualifications
- Experience working with network packet-level data using tools like Wireshark, tshark, tcpdump, tcprewrite, and Scapy to directly interact with this data.
- Knowledge of cloud and on-premise cybersecurity threat models - attacker behavior, tools, techniques, and practices. Ability to translate this knowledge into user-facing threat detections.
Benefits
- Health, Dental, and Vision Benefits.
- Flexible PTO, Sick Time Prorated Based on Date of Hire, and All Federal Holidays (US Only) + 3 Days of Paid Volunteer Time.
- Non-Commissioned Positions may be eligible to participate in the Annual Discretionary Bonus Plan.
- FSA and Dependent Care Accounts + EAP, where applicable.
- Educational Reimbursement.
- 401k with Employer Match or Pension where applicable.
- Pet Insurance (US Only).
- Parental Leave (US Only).
- Hybrid and Remote Work Model.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Director, Application Security
Kaseya CareersKaseya is the leading provider of complete IT infrastructure and security management solutions for Managed Service Providers (MSPs) and internal IT organizations worldwide powered by AI. Founded in 2000, Kaseya currently serves customers in over 20 countries across a wide variety of industries and manages over 15 million endpoints worldwide.
Kaseya® is the leading provider of complete IT infrastructure and security management solutions for Managed Service Providers (MSPs) and internal IT organizations worldwide powered by AI. Kaseya’s best-in-breed technologies allow organizations to efficiently manage and secure IT to drive sustained business success. Kaseya has achieved sustained, strong double-digit growth over the past several years and is backed by Insight Venture Partners www.insightpartners.com), a leading global private equity firm investing in high-growth technology and software companies that drive transformative change in the industries they serve. Founded in 2000, Kaseya currently serves customers in over 20 countries across a wide variety of industries and manages over 15 million endpoints worldwide. To learn more about our company and our award-winning solutions, go to www.Kaseya.com and for more information on Kaseya’s culture. Kaseya is not your typical company. We are not afraid to tell you exactly who we are and our expectations. The thousands of people that succeed at Kaseya are prepared to go above and beyond for the betterment of our customers. We are seeking a proven Director of Application Security to build and lead our Application Security program across R&D. This role will partner directly with Product and Engineering leadership to embed security into our development lifecycle, strengthen our tooling and processes, and ensure our applications are secure at scale. The ideal candidate has experience standing up or maturing an application security function within a high-growth software organization. You are comfortable operating at both a strategic and hands-on level, and you know how to collaborate effectively with engineering teams to deliver results. What You’ll Do - Build and lead the Application Security function across R&D - Integrate security into CI/CD pipelines and day-to-day development workflows - Drive the implementation and optimization of AppSec tooling (including Snyk) - Develop and maintain security standards, policies, and frameworks - Lead threat modeling, risk assessments, and design reviews - Partner with Engineering leaders to drive secure coding practices - Build and report on measurable security KPIs - Clearly communicate how initiatives will be executed and implemented - Mentor and grow AppSec capability as the program scales What You Bring - 8+ years of experience in Application Security or Security Engineering - Experience building or maturing an AppSec program - Strong understanding of CI/CD and DevSecOps practices - Hands-on experience with modern application security tooling - Proven ability to influence and partner with R&D leaders - Strong communication skills with the ability to simplify complex topics - Leadership or team-building experience preferred Bonus Points - SaaS or cybersecurity industry experience - Relevant certifications (CISSP, CSSLP, etc.) - Experience in high-growth or global environments Base Salary Range: $190,000 – $226,000 (plus bonus and benefits) Join the Kaseya growth rocket ship and see how we are #ChangingLives ! Additional information Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are a passionate team of highly trained, proactive, ethical hackers. We provide expert-level penetration testing services that are thorough and tailored to help foster a safe digital space where everyone has the right to privacy and security. Packetlabs consultants find weaknesses others overlook and continuously learn new ways to evade controls. We hold ourselves to a very high standard. Who we are looking for Core values: - You have a customer-first mentality. - Great communicator with clients, project managers, and teammates. - Rapid responses and on time. - You deliver work that you take pride in; your work is an autograph of your excellence. - You dig deeper into every finding; you don't stop until impact is proven. - You are comfortable being uncomfortable; you go towards obstacles, not away from them. - You are always learning; cybersecurity is changing every day. - Be deeply aware of your skillset and be willing to improve. - You are self-motivated and dependable. - You are humble; egos don't have a place at Packetlabs. Education and experience: - Solid working knowledge of programming languages, including C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks like AngularJS. - Familiarity with web services and data exchange formats such as XML, JSON, SOAP, REST, and AJAX. - Understanding of AI/LLM weaknesses and flaws in applications. - Extensive experience/expertise in using an attack proxy (e.g. Burp Suite). - Preferred if you have 3 - 5 years of experience working in penetration testing and consulting. - A graduate of a post-secondary college or university degree program. - At least two years of experience dealing with information security-related tasks. - Professional qualifications (one or more): OSCP, OSWE, BSCP. - OSCP or Burp is mandatory for our organization. What you’ll be doing - Your primary role is to perform penetration testing of web applications, mobile applications, thick clients, and APIs. - Source code review and whitebox penetration testing to prove the impact of application flaws. - Reverse engineering of mobile and thick client applications. - You sometimes chain application flaws to other areas, such as cloud and on-prem AD infrastructure. - Develop detailed reports on findings and remediations for impactful findings. - Perform SAST and DAST on enterprise, SaaS, and custom in-house applications. - Experience in using scanners and knowledge of validation and elimination of false positives. - A strong understanding of OWASP in Web, API, Mobile, and AI/LLM is necessary. Benefits - Amazing team and working environment. - Competitive compensation and pay for performance. - Employee growth and development. - Fully remote (in Texas). At-Will Employment This position is at-will, and this job posting does not constitute an employment contract or guarantee of continued employment. How to Apply If this sounds like you, apply today. We’re looking for someone who wants to build a career in cybersecurity and is ready to make an impact.
Staff Security Engineer L6
JobgetherWe use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role is a senior technical leadership position focused on advancing enterprise security operations across cloud, SaaS, and on-premises environments. You will design, implement, and optimize automated detection and response workflows, strengthen threat monitoring, and improve incident response capabilities. Working closely with SOC analysts, engineering, IT, and cloud teams, you will proactively reduce risk and enhance security visibility. The position requires deep expertise in SIEM, SOAR, security automation, and cloud security practices. You will mentor team members, lead process improvements, and ensure compliance with security frameworks and regulations. Your contributions will have a direct impact on the organization’s ability to detect and respond to evolving threats efficiently and at scale. - Lead the implementation of enterprise security standards aligned with policies and frameworks. - Provide technical guidance for selecting and deploying security controls across endpoints, networks, identity, and cloud environments. - Develop, maintain, and optimize SOAR playbooks and automated response workflows to improve detection, triage, and threat containment. - Integrate SIEM, EDR, vulnerability management, identity, and ticketing platforms to enable end-to-end incident response. - Engineer and tune detections, enrichment pipelines, and correlation logic to reduce false positives and improve response metrics. - Collaborate with SOC analysts, threat hunters, and engineering teams to convert manual processes into automated workflows. - Document security findings, present recommendations to stakeholders, and advise on risk mitigation and compliance measures. - Drive continuous improvement of SOC metrics, tools, and operational processes. Qualifications - Bachelor’s degree in engineering, technical discipline, or cybersecurity (Master’s or cybersecurity-focused degree preferred). - 5+ years in software and security engineering with experience in programming languages such as Python, JavaScript, Golang, or PowerShell. - 5+ years building security automation utilities and secure cloud-native environments (Azure, AWS, GCP). - 3+ years in security system administration, application security architecture, and risk assessment. - Strong knowledge of OWASP Top 10, NIST CSF, MITRE ATT&CK frameworks, and DevSecOps practices. - Certifications such as CISSP, CEH, OSCP; AWS cloud certifications are a plus. - Hands-on experience with SOAR/SIEM integration, incident response automation, and security monitoring tools. - Excellent problem-solving, analytical, and mentoring skills; ability to work autonomously and collaboratively. Benefits - Competitive base salary of $151,800 – $185,000 USD with potential performance-based incentives. - Comprehensive health, life, and disability insurance options. - 401(k) retirement plan with company contributions. - Generous paid time off (18+ days) and flexible work arrangements. - Professional development opportunities and technical mentorship programs. - Inclusive, mission-driven culture focused on security, innovation, and continuous improvement.
Senior Security Engineer & Identity Engineer
JobgetherWe use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role is a high-impact opportunity for a security expert who combines engineering depth with a strategic security mindset. You will play a key role in strengthening the security foundations of a modern technology platform, with a particular focus on identity, authentication, and access management. Working closely with engineering, infrastructure, and product teams, you will embed security best practices into development workflows and CI/CD pipelines. The position requires both hands-on technical execution and the ability to influence teams to adopt secure-by-design practices. You will help design scalable identity systems, improve security automation, and proactively mitigate risks. This role offers the chance to shape security architecture while enabling fast, secure product development in a collaborative environment. - Assess and continuously enhance the organization’s security posture across applications, infrastructure, and development workflows. - Own and evolve identity and access management systems, including authentication, authorization frameworks, and secure machine-to-machine processes. - Design, implement, and maintain secure authentication systems for both internal tools and customer-facing services. - Harden login systems, standardize authentication patterns, and ensure secure integrations between platforms and tools. - Build and maintain internal security tooling that improves visibility, automation, and compliance support. - Integrate security controls into CI/CD pipelines, including SAST, DAST, SCA, container scanning, and secret management. - Collaborate with engineering teams to identify vulnerabilities, clearly communicate risks, and guide remediation strategies. - Provide practical security guidance during architecture and system design reviews. - Apply industry security frameworks and best practices to strengthen production environments and ensure scalable security operations. Qualifications - 5–7+ years of experience as a Security Engineer or Software Engineer with a strong focus on security engineering. - Proven experience building or operating production-grade software systems, internal security tooling, or security infrastructure. - Strong background in application security, infrastructure security, and secure CI/CD practices. - Hands-on expertise in identity and access management, authentication systems, authorization frameworks, and machine-to-machine security patterns. - Experience applying security frameworks such as OWASP, NIST, or CIS Controls in real-world production environments. - Familiarity with cloud security tooling and platforms such as AWS, Azure, or GCP security solutions. - Experience with SIEM/SOAR platforms and Infrastructure-as-Code security tools (e.g., Terraform or CloudFormation scanning). - Understanding of compliance standards such as SOC 2 or ISO 27001. - Strong collaboration and communication skills, with the ability to translate complex security concepts into practical guidance for engineering teams. - Experience working in cloud-native architectures and modern backend systems is highly valued. Benefits - Competitive salary range of $145,000 – $175,000 per year. - Comprehensive healthcare coverage including medical, dental, and vision plans. - Flexible remote work environment within the United States. - Professional development opportunities and support for continuous learning. - Access to various employee benefits programs as part of the overall compensation package. - Inclusive and collaborative work culture focused on innovation and growth. - Opportunities to work with cutting-edge technologies and high-impact security initiatives.

