Synced from Workday · Jul 7

Network Security Researcher

Security EngineerMid
Apply with one profileSave & get alerts

Mirrored from Carnegie Mellon University - Software Engineering Institute's own Workday careers system · refreshed hourly

52
Other open Carnegie Mellon University - Software Engineering Institute roles
Jul 7
Posted
Workday
Applicant system
Job description

What We Do:

Our team, within the Cyber Risk and Resilience Directorate researches, designs, and develops software tools for the collection, storage, and analysis of network data to provide security insights. We provide both the core network tools to facilitate this capability, and prototypes of new methods to present the data most effectively. We work with data at a scale generally not experienced by most organizations, handling record counts in the tens of billions per day.

Developing security insights at this scale requires creativity, efficiency, and contemporary knowledge of modern computing platforms. In some cases, the computing has outpaced the methods, and it is incumbent upon us to generate novel views of both the entire data collection, and of focused datasets tailored to specific analyst needs.

Our network situational awareness security tools are published here: https://tools.netsa.cert.org/

Position Summary:

As a network security researcher on the Network Situational Awareness team, you will research network threats to develop methods of detection and tailor these for partner environments. Transition of this research will take the form of developing detection capabilities, providing new requirements and feature requests for our NetSA Security tool suite, writing publications, and providing customer-specific training. The primary network data source for the team is netflow combined with application layer metadata, with an expanding focus on host-based (e.g., EDR) and cloud telemetry.

You will be responsible for gaining insights from data to facilitate detections, working with partners to help them to better understand their data and researching new data sources to expand the expertise of the team.

Requirements:  (education/travel/background ONLY)

  • Bachelor's Degree in Computer Science or a relevant technical discipline with three (3) years of relevant work experience; or a MS in Computer Science or a relevant technical discipline with one (1) year of relevant work experience; or a PhD in Computer Science or other relevant technical discipline.
  • Movement between buildings within the SEI and CMU community required.
  • Willingness to travel to various locations to support the SEI’s overall mission. This may include national travel to sponsor sites, conferences, and offsite meetings on occasion.
  • You will be subject to a background check and will need to obtain and maintain a Department of War security clearance.

Knowledge, Skills and Abilities: 

Exposure to translating threat intelligence to avenues for research, prototyping, and curation of detection capabilities.

Solid knowledge of network fundamentals, common application layer protocols, and network-based telemetry.

Proficiency in at least one scripting or programming language such as Python, Go, Ruby, C, Java, or Scala.

Solid problem-solving and analytical skills, detailed research, and ability to document and communicate ideas and findings to diverse audience.

Desired Experience:

Hands-on experience in a security research, threat hunting, detection engineering, or SOC Analyst role.

Some experience analyzing network telemetry such as netflow, application metadata, or PCAP from network sensors such as YAF, Zeek, Suricata, etc;

Exposure to cybersecurity data science methods and practices

Awareness of open-source and / or commercial Internet intelligence telemetry and datasets

Awareness of the threat landscape and experience researching and investigating threats

Experience presenting technical topics

Location

Arlington, VA, Pittsburgh, PA

Job Function

Software/Applications Development/Engineering

Position Type

Staff – Regular

Full time/Part time

Full time

Pay Basis

Salary

More Information: 

  • Please visit Why Carnegie Mellonto learn more about becoming part of an institution inspiring innovations that change the world. 

  • Click here to view a listing of employee benefits

  • Carnegie Mellon University is an Equal Opportunity Employer/Disability/Veteran

  • Statement of Assurance

View original posting on Workday

What applying to Carnegie Mellon University - Software Engineering Institute usually looks like

Based on publicly available information, candidates applying through Workday can generally expect an online application requiring a profile, resume upload, and possibly screening questions related to security clearance eligibility or citizenship status, which is common for research-oriented institutions like Carnegie Mellon University - Software Engineering Institute. After submission, applicants may receive automated confirmation emails, and response times vary depending on the specific role and hiring team. The process may include multiple stages such as recruiter phone screens, technical or panel interviews, and possibly assessments relevant to engineering or research positions. Given the technical nature of many open roles, candidates should typically be prepared to discuss relevant technical experience, past projects, and domain expertise. Communication throughout the process is generally handled via the Workday portal or email, and candidates are encouraged to monitor both regularly for updates.

Based on publicly available information. LandEarly does not verify interview process details.

Land this one early - before the req fills.

LandEarly tailors your resume and screening answers to each posting, submits within minutes of a role going live, and tracks every application in one place.

Free to start · No credit card · Cancel anytime

Keep exploring

What this role pays, where else it is open, and how to write the application.

Network Security Researcher
Carnegie Mellon University - Software Engineering Institute · 2 Locations
Apply