Staff Developer-Vulnerability Detection
Job Summary
At Arctic Wolf you wont just watch the cybersecurity industry evolve you will help lead the change. Our global Pack is made up of people who thrive on solving hard problems moving fast and building technology that protects organizations around the world. Were proud to be recognized by Forbes CNBC Fortune CRN Gartner Peer Insights and IDC MarketScape but what matters most is the work behind it: delivering real outcomes for customers through award winning innovation like our Aurora Platform.
If youre looking for meaningful work smart teammates and the chance to make a real impact in a high-growth company thats redefining security operations Arctic Wolf is the right place for you!
Our mission is simple: End Cyber Risk. Were looking for a Staff Security Content & Integrations Developer / Vulnerability Detection to be part of making this happen.
The Staff Security Content & Integrations Developer will contribute to our Aurora Exposure Management team by leading security research vulnerability detection development security content engineering and third-party integrations that continuously improve the coverage and effectiveness of Arctic Wolfs Exposure Management portfolio. This role combines cybersecurity research and software development with a strong focus on identifying vulnerabilities and misconfigurations developing detection content building integrations with external platforms and services and delivering scalable security capabilities for Arctic Wolf customers.
AS A STAFF SECURITY CONTENT & INTEGRATIONS DEVELOPER AT ARCTIC WOLF YOU WILL:
Apply a security research first mindset to identify vulnerabilities system misconfigurations and exposure risks and translate research into effective detection capabilities.
Lead and contribute to the development of security content that continuously improves vulnerability and exposure coverage detection efficiency and customer outcomes.
Research design develop test and maintain security detection programs for vulnerabilities and system misconfigurations across a broad range of asset types and technologies.
Design and develop plugins and integrations with public application programming interfaces from enterprise vendors to enable push and pull based data sharing and enhance security coverage.
Build well-designed testable efficient and secure vulnerability and misconfiguration detection code across multiple products and security technologies.
Develop host based vulnerability detection content using technologies such as Open Vulnerability Assessment Language definitions Network Assessment and Security Language scripts and Notus.
Develop network based vulnerability tests and create and publish attack path and exposure related queries using vulnerability intelligence and related security data.
Develop configuration benchmark automation including Center for Internet Security Benchmark related content and contribute to pipeline hardening checks and security policy development.
Develop automation and enrichment workflows using scripting languages such as Python and participate in incident management and on-call rotations to safeguard and monitor services.
Partner closely with Exposure Management Product Triage Security Services and other operational teams to operationalize intelligence into detection triage and response workflows.
Leverage artificial intelligence powered development tools including code assistants artificial intelligence augmented debugging and automated testing as part of the development workflow to accelerate delivery and improve code quality.
WERE LOOKING FOR SOMEONE WITH EXPERIENCE IN:
Security Research Engineering with a strong emphasis on vulnerability identification vulnerability detection misconfiguration detection and security content development.
Conducting security research and developing detection and identification capabilities using methodologies and frameworks such as the Open Worldwide Application Security Project Top 10 MITRE ATT&CK Framework and Center for Internet Security Benchmarks.
Designing writing testing and maintaining vulnerability detection content using technologies such as Network Assessment and Security Language Notus Open Vulnerability Assessment Language and Derived Exposures.
Strong programming experience in at least one backend or scripting language such as Python Go Rust or Bash.
Experience working with at least one relational or non-relational database such as PostgreSQL or MongoDB and understanding of data modeling and query development.
Experience with cloud environments such as Amazon Web Services container technologies such as Docker and Kubernetes and Infrastructure as Code.
Strong understanding and application of secure software development practices and Security Development Operations methods.
Deep operational knowledge of network infrastructure protocols such as HTTP SSH SMB SNMP and TLS/SSL as well as operating system internals including the Windows Registry and Linux file systems.
Strong ability to independently research complex security problems develop detection solutions and collaborate with cross-functional teams.
NICE TO HAVE:
Experience with third-party vulnerability management platforms such as Qualys Nessus Rapid7 or OpenVAS.
Experience with cloud based configuration and security posture management tools such as Azure Security Center AWS Security Hub Sonrai CloudSploit or Prisma Cloud.
Experience with open source vulnerability assessment and penetration testing platforms such as Nmap OpenVAS Burp Suite or Metasploit.
Experience with information technology deployment and configuration automation tools such as Salt or Ansible.
Experience developing security content for large scale security platforms or exposure management products.
Experience mentoring engineers or acting as a technical lead on security research and detection engineering initiatives.
Dont meet all the requirements Thats okay! We still want you to apply. We have many opportunities and we are always looking for top talent.
On-Camera Policy
To support a fair transparent and engaging interview experience candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection improves communication and allows for full engagement from both candidates and interviewers. We understand that technical bandwidth or location-related challenges may occasionally prevent video use. If this applies candidates are required to notify us in advance so we can explore appropriate accommodations.
ABOUT COMPANY & BENEFITS
At Arctic Wolf we foster a collaborative and inclusive work environment that thrives on diversity of thought background and culture. This is reflected in our multiple awards including Top Workplace USA (2021-2025) Best Places to Work USA (2021-2025) Great Place to Work Canada (2021-2024) Great Place to Work UK (2024-2026) and Kununu Top Company Germany (2024-2026). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction with over 10000 customers worldwide and more than 2000 channel partners globally. As we continue to expand globally and enhance our technology Arctic Wolf remains the most trusted name in the industry.
Our Values
Arctic Wolf recognizes that success comes from delighting our customers so we work together to ensure that happens every day. We believe in diversity and inclusion and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate thatby protecting peoples and organizations sensitive data and seeking to end cyber riskwe get to work in an industry that is fundamental to the greater good.
We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.
We also believe and practice corporate responsibility and have recently joined the Pledge 1% Movement ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.
All wolves receive compelling compensation and benefits packages including:
Equity for all employees
Flexible annual leave paid holidays and volunteer days
Training and career development programs
Comprehensive private benefits plan including medical insurance for you and your family life insurance (3x compensation) and personal accident insurance.
Fertility support and paid parental leave
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race color religion sex orientation national origin age disability genetics or any other basis forbidden under federal provincial or local law. Arctic Wolf is committed to fostering a welcoming accessible respectful and inclusive environment ensuring equal access and participation for people with disabilities. As such we strive to make our entire experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodation by emailing . View our Hiring Page to learn more about our application process.
Security Requirements
Conducts duties and responsibilities in accordance with AWNs Information Security policies standards processes and controls to protect the confidentiality integrity and availability of AWN business information in accordance with our employee handbook and corporate policies.
Background checks are required for this position.
This position may require access to information protected under U.S. export control laws and regulations including the Export Administration Regulations (EAR). Please note that if applicable an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations.
Required Experience:
Staff IC
About Company
Arctic Wolf delivers dynamic, 24x7 AI-driven cybersecurity protection tailored to the needs of your organization. Ready to boost your cyber resilience?