hero



Principal Developer - Observation Reduction

Arctic Wolf

Arctic Wolf

Software Engineering
Bengaluru, Karnataka, India
Posted on Nov 20, 2024

Arctic Wolf, with its unicorn valuation, is the leader in security operations in an exciting and fast-growing industry—cybersecurity. We have won countless awards for our excellence in security operations and remain dedicated to providing an industry-leading customer and employee experience.

Our mission is simple: End Cyber Risk. We’re looking for a Principal Detection Developer to be part of making this happen.

About the Role:
You’ll be working as a principal developer within Integrations, Detection, & Response reporting directly to the Senior Manager of Integrations, Detections, & Response. This individual will be responsible for providing multiple teams with technical direction to deliver high value, performant solutions. They will provide technical guidance and direction to multiple teams of developers through the design, implementation, and automated/integration testing of our software. This individual will have a clear history of successful contribution to professional detection development projects; they are driven, curious, and results oriented; they can manage competing priorities as they relate to improving existing our existing codebase of detections and constantly challenge the status quo.

Some of your day-to-day responsibilities will be:

Act as a mentor to R&D technical leaders.

Apply broad expertise and knowledge in highly specialized fields or several related disciplines.

Lead and contribute to the development of company objectives and principles to achieve goals in creative and effective ways. Produce specifications and determine operational feasibility.

Work on significant and unique issues where analysis of situations or data requires an evaluation of intangibles.

Apply conceptual thinking to understand advanced issues and implications.

Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results.

Accountable for results, which may impact the entire function.

Create formal networks involving coordination among groups.

Focus on providing thought leadership and work on broader organizational projects which require understanding of wider business, by conveying advanced information and persuading several diverse stakeholders/audiences.

Recognized internally as a subject matter expert.

May direct the work of others.

About You
You are a highly advanced developer who makes important product decisions regarding direction and scope. You make informed decisions about which team members should work on which areas of a project and provide technical and professional leadership for the developers as well as work closely with surface domain directors regarding strategic planning. You identify and collaborate with multiple teams or organizations and have a deep understanding of system internals, networking, and technical trends. In addition, you are comfortable presenting to the executive team.

Basic Qualifications

  • 10 or more years of professional experience as a detection developer, reverse engineer, security researcher or CNO developer
  • Experience with:
  • Python
  • OS Specific Telemetry (Windows Security/Sysmon logs, Linux, MacOS)
  • Windows PowerShell Monitoring
  • SIEM Detections
  • EDR detections/signatures
  • Suricata, Sigma and Yara Rules
  • Development of anomaly and behavioral based detections
  • Tuning and optimization of detections for all the above
  • Experience with leading and mentoring groups of developers while contributing code independently.
  • Experience designing and building detection frameworks and processes
  • Experience managing and measuring security efficacy of detections
  • Experience managing and measuring cost efficiency of detection frameworks
  • Deep understanding of networking security principles and flows
  • Experience leading Agile development teams, preferably with formal Agile training
  • Nice to have: Understanding of the Arctic Wolf service delivery model
  • Nice to have: Experience with the Arctic Wolf detection framework and infrastructure
  • Nice to have: Commitment to continuous learning and skills development.
  • Nice to have: B.Sc. in a technical field (CS, CE, EE, Math, Physics, etc with M.Sc./PhD preferred)

In addition, you have proven leadership experience from previous projects, regardless of title held. You have the ability to perform programming tasks and large engineering projects with independence and expertise. You will be responsible for guiding and mentoring other staff members and will regularly lead technical projects. You have a high level of mastery over software development best practices, security research and building reusable software based on that research. You have a history of delivering successful projects, as well as some lessons learned from failures.

About Arctic Wolf

At Arctic Wolf we’re cultivating a collaborative and productive work environment that welcomes a diversity of backgrounds, cultures, and ideas to make our teams even stronger as we grow globally. We’ve been named one of the 50 Most Innovative Companies in the world for 2022 (Fast Company)—and the 2nd Most Innovative Security Company. This is in addition to consecutive awards from Top Workplace USA (2021, 2022), Best Places to Work - USA (2021, 2022) and Great Place to Work - Canada (2021, 2022).

Our Values

Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good.

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.


Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing recruiting@arcticwolf.com.