Infrastructure Engineer/SRE
Do you want to help make the world safe from cyber attack?
At Corelight, we believe that the best approach to cybersecurity risk starts with the network. Attackers can evade endpoint detection, firewalls and many other technologies - but they can’t avoid leaving digital footprints on the networks they traverse. Built on open-source innovations from Zeek, Suricata and YARA and refined through years of real-world use, Corelight transforms network footprints from physical, virtual and cloud networks into actionable insights. Our customers use these insights to speed incident response and proactively hunt for threats.
- We are building a distributed research platform for the Corelight Labs team to test detections and ML.
- We call that platform Polaris.
- Its made of up of real metal and a bit of cloud too (AWS, Azure).
- Polaris is monitored with Zeek, Prometheus, Alertmanager and can be visualized with Grafana.
- We run long-lived services on Kubernetes in EKS.
- We write our tools and automation in Go, Python, Typescript, Bash and loads of Git.
- We use GitOps to coordinate our automation and construct self-service tooling.
- We work closely with our SaaS, Security, Success and Engineering teams.
- We're small and try to support a greater team of ~35.
The Good
- We work with and support an amazing team of very smart, capable and genuinely fantastic people.
- Corelight is based in the Bay Area, but we're remote. Our team spans the globe.
- We usually get together in person once a year in person.
- We're growing our deployments. We’re planning on doubling our PoPs by 2025.
The Bad
- Standing up new PoPs can be slow. Lots of Layer 8 (TM)
The Ugly
- Managing distributed systems is tough. Sometimes administration is a pain.
Some of our upcoming projects:
- Collect system logs (eg: fluentd), consolidate to humio
- Loads of GItOps opportunities to automate work on the Platform
- Replace Duo MFA with YubiKey
- Scale our Wireguard hub deployment horizontally
- More resilient spokes in WG hub-and-spoke topology
Fueled by investments from top-tier venture capital organizations such as Crowdstrike, Accel and Insight, Corelight is the fastest growing network detection and response platform in the industry. Our customers trust us to protect mission-critical assets in leading enterprises, government, and research institutions worldwide. We are leading the way with AI-assisted workflows, machine learning models, cloud security and SaaS-based solutions to arm defenders with the tools and knowledge they need to disrupt cyber attacks. Our team of passionate innovators are dedicated to solving some of the toughest challenges in cybersecurity, while fostering a collaborative, inclusive, and growth-oriented culture.
Corelight is committed to a geographically distributed yet connected employee base with employees working from home and office locations around the world. At Corelight, we take pride in the diversity of our backgrounds and perspectives, and we are committed to fostering an inclusive environment that strengthens our company.
We are looking forward to meeting you. Check us out at www.corelight.com
Notice of Pay Transparency:
The compensation for this position may vary depending on factors such as your location, skills and experience. Depending on the nature and seniority of the role, a percentage of compensation may come in the form of a commission-based or discretionary bonus. Equity and additional benefits will also be awarded.
Compensation Range
$184,000 - $229,000 USD
Apply for this job
*
indicates a required field