Lead Detection Developer, Cloud

Bengaluru, India

Arctic Wolf

Arctic Wolf delivers dynamic, 24x7 AI-driven cybersecurity protection tailored to the needs of your organization. Ready to boost your cyber resilience?

View all jobs at Arctic Wolf

Apply now Apply later

Lead Detection Developer, Cloud

A Detection Developer has a clear history of successful contribution to professional detection development projects. They are driven,

curious, and results oriented. They are able to manage competing priorities as they relate to improving existing our existing codebase of

detections and constantly challenge the status quo. With additional experience and exposure to advanced detection development patterns

and projects, they are capable of becoming a Principal within 2 years.



Basic Qualifications

  • 7 or more years of professional experience as a Detection Developer

  • Experience consists of projects contributing in either Python or YAML

  • SaaS, IaaS, and Identity Specific Telemetry (AWS Cloudtrail, Azure Activity Logs, IDP’s, API Activity Logs, Mail)

  • Cloud and Identity Forensic Investigation Experience

  • SIEM Detections

  • CDR detections/signatures

  • Sigma Rules

  • Development of anomaly and behavioral based detections

  • Tuning and optimization of detections for all the above

  • Professional certifications in Security and/or Cloud are required (i.e. CISSP, CCSP, GIAC Cloud Threat Detection (GCTD), GIAC Public

  • Cloud Security (GPCS), GIAC Cloud Forensics Responder (GCFR), AWS Security Specialty, Microsoft Azure Security Certifciations.

  • Experience consists of leading a team of 3 or more Detection Developers while contributing code independently

  • Experience leading Agile development teams, preferably with formal Agile training

  • Preferably located in Canada or the U.S.

  • Nice to have: A clear history of technical influence (public conference talks, papers, etc)

  • Nice to have: A clear history of learning and skills development. Regularly helps detection developers develop their skills in a variety of

  • ways.

  • Nice to have: B.Sc. in Computer Science

  • Nice to have: Located in the Eastern Time Zone


About the role

You’ll be working as a detection developer on our Cloud Detection Team, responsible for ensuring quality and scale of our detection base

and presenting actionable detections to our Security Services teams and customers.
 

Some of your day-to-day responsibilities will be:

  • Providing mentorship and technical leadership to the team.

  • Developing and maintaining Python and YAML-based detections, software, and systems.

  • Research and develop expertise in the various threat surfaces and telemetry available for them

  • Propose coverage and efficacy improvements to the detection surface

  • Work with team members to develop novel detections and continuously tune existing ones

  • Build runbooks, reports and supporting material for detection surfaces

  • Collaborating with cross-functional teams to gather requirements and implement detections.

  • Writing clean, efficient, and reusable code in Python.

  • Conducting code reviews and providing constructive feedback to ensure code quality and maintainability.

  • Debugging and fixing issues in existing Python codebases.

  • Optimizing application performance and ensuring scalability.

  • Participate in the full software development life cycle, building well-designed, testable, efficient, secure code.Understand the product and how Security Services delivers the service.

  • Develop professional expertise, apply company policies and procedures to resolve a variety of issues. Determine a course of action

  • based on guidelines, and modify processes and methods as required.

  • Continuously learning and adopting best practices for code quality, software development methodologies, and programming principles

  • to enhance coding skills and stay updated with industry advancements.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  1  0

Tags: Agile APIs AWS Azure CCSP CISSP Cloud Computer Science Forensics GIAC IaaS Python SaaS SDLC SIEM Threat detection

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.