North AmericaFull TimeEngineering
Remotely
Listed on 2 job boards, which is a stronger signal than one board alone.
pythonawstypescriptsigmamitre att&ckyarastixtaxii
Also available on
Job Description
📋 Description
- Own the path from research output to production-ready artifact: a detector, feed, scoring input, or
- Collaborate with adjacent teams to define handoff contracts and downstream consumption.
- Ship platform components across services and runtimes: distribution servers, sandbox, ingestion
- Turn research into shipped detection content: YARA, Sigma, STIX patterns and distribution pipelines.
- Define and govern schemas and distribution standards for downstream use.
- Automate research workflows to move from analysis to production safely.
🎯 Requirements
- Education: Bachelor's or Master’s in CS, Cybersecurity, or related field.
- Experience: 5-8 years in hands-on engineering with threat intel or detection engineering.
- Technical Skills: Python, TypeScript/Node, STIX/TAXII, YARA, Sigma, MITRE ATT&CK, AWS, CI/CD.
- Tooling: YARA, Sigma, STIX Patterning; capable of parsing malware or adversary data.
- Applied Language Models: experienced with real-world models, retrieval, schema validation, and eval
- Bridge Mindset: shipping-focused, translating researchers to product.
🎁 Benefits
- Competitive salary and stock options.
- Health benefits and unlimited PTO.
- Parental leave and tuition reimbursement.
- Country-specific benefits and programs.
Back to all jobs