Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
GreyNoise Intelligence

Detection Engineer

GreyNoise Intelligence

. Write and tune Intrusion Detection System rules grounded in observed network behavior.

Posted 4/21/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSeniorWebsite

Tech Stack

Tools & technologies
Switching

About the role

Key responsibilities & impact
  • Write and tune Intrusion Detection System rules grounded in observed network behavior.
  • Maintain and improve tag coverage and quality: adding new tags, fixing broken ones, and de-duplicating overlaps.
  • Maintain benign actor classifications and known-scanner lists so non-malicious traffic is accurately labeled.
  • Resolve accumulated detection issues that degrade data quality for users and customers.
  • Use internal CLI tooling to lint, test, and deploy detection rules and tags at scale.
  • Read and analyze packet captures (pcaps) and related network artifacts during routine validation and debugging.
  • Validate detections against real traffic and own the trade-offs between false positives and false negatives for individual rules.
  • Triage a steady stream of inbound detection requests, CVEs, and internal coverage questions. The team processes dozens of new items weekly.
  • Ensure detections are wired correctly end-to-end: from raw data through rule logic to tag output.
  • Flag edge cases, collisions, and unexpected behavior in tags or rules for deeper follow-up.
  • Work closely with researchers to keep them focused on longer-horizon projects.
  • Communicate clearly about what you are working on, blockers, and trade-offs when priorities shift.
  • Help sales, support, and customer success get faster, clearer answers on detection coverage questions.

Requirements

What you’ll need
  • Demonstrated ability to read and analyze packet captures (pcaps).
  • Experience writing or maintaining Suricata rules or similar network detection signatures.
  • Comfortable with high context-switching: moving between tags, rules, pcaps, and internal requests throughout the day.
  • Strong attention to detail; small mistakes in tags or rules have outsized downstream effects.
  • Clear, concise written communication, especially when something is broken, ambiguous, or blocked.

Benefits

Comp & perks
  • 💵 Equity in a high-growth, Series-A startup
  • 👩‍⚕️ 100% covered health, dental, vision, and life plans for all employees
  • 6️⃣ Competitive 401k employer match of 6%, which is special for a startup. This will be 100% matched and vested from day 1
  • 🏖 Flexible paid time off. To encourage time off from work and ensure overall employee health and wellness, GreyNoise strongly recommends each employee to take at least 120 hours of PTO (3 weeks) annually, including at least five consecutive business days
  • 🌎 Remote-first culture. While we are headquartered in the Washington DC area, we have a distributed workforce -- with the majority of our team working remotely from across the country
  • 💻 Equipment budget. Every new employee gets an Apple Mac laptop and a $500 stipend for any equipment accessories.
  • 👼 Paid family leave for all employees. We offer 4 months of paid leave (birth or adoption), plus 2 months of optional unpaid leave, so new parents have time to adjust to the new life (and work) schedule
  • 📚 Learning & development budget. All employees receive an annual $1,500 towards professional development related to their job function. The stipend can be applied to tuition, books, conferences, and more
  • 🌴 Company offsites and monthly local hangouts to encourage team bonding

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
Intrusion Detection System rulesSuricata rulespacket capturesdetection validationtag managementnetwork behavior analysisdetection issue resolutionCLI toolingfalse positive managementCVE triage
Soft Skills
attention to detailclear communicationproblem-solvingcontext-switchingcollaborationprioritizationanalytical thinkingadaptabilityfocuscustomer support