Corelight Logo

Professional Services Engineer

💰 $124k-$160k

Job Description

Be part of the team that defends the networks the world depends on

Corelight defends the world’s most sensitive networks—from global commerce to national defense—quietly, relentlessly, and with resolve. As cyber threats grow faster and smarter, we serve as the trusted force behind network resilience, putting elite defense within reach.

By transforming digital footprints from physical, virtual, and cloud networks into actionable insights, we empower defenders to illuminate blind spots and stay ahead of an evolving threat landscape. Built on open-source innovations and fueled by industry leading agentic AI technology, Corelight helps teams to detect advanced threats and close cases with unprecedented clarity and precision.

We are currently seeking a Staff Resident PSE to join our Federal Professional Services team, reporting to the manager of Professional Services. In this role, the main focus is to prepare and validate equipment configurations for new installations, develop content for anomaly and hunt detections, assess the overall health of the Corelight infrastructure at the client’s location. You’re the ideal candidate if you are a strategic thinker with a strong networking and security background, work well independently, and are results-driven.

Key Responsibilities:

  • Help customers improve their cybersecurity posture, with a particular focus on process

optimization

  • Help investigate incidents
  • Educate on Zeek Log use, including as it relates to Corelight Suricata alerts
  • Design and implement technical solutions with ecosystem partners (packet brokers,

asset managers, SOAR systems, etc.)

  • Implement queries and dashboards in SIEMs - Splunk, Elastic, Humio, etc.
  • Influence customers and Corelight teams and be seen as a technical expert
  • Conduct network-related testing to ensure Corelight products operate correctly
  • Perform validation testing of Corelight products
  • Provide ongoing, informal, knowledge transfer
  • Collaborate with product management on product features/integrations
  • Work with back-end tools like Kafka and Logstash
  • Documenting the process for importing of data (MISP, Intel, etc)
  • Developing custom content for threat hunting use cases as defined by the customer
  • Developing playbooks for SOC/IR workflow automation based on Corelight data
  • Ad-hoc (as requested) written summary reports on equipment and security problems
  • Technical input to major service outage root cause analysis and corrective action reports
  • Leading project status meetings and wrap-up/post-mortem meetings
  • Some on-site work required

Minimum Qualifications:

  • US Citizen
  • 5+ years of experience in cybersecurity (Prior startup experience preferred)
  • Extensive experience with a SOC environment
  • Zeek/Corelight experience is a plus
  • Security and/or Networking related certification(s)
  • Demonstrated expertise in Windows/MacOS/Linux/Unix operating systems, IDS/IPS,
  • Network administration, firewall configuration, and strong knowledge of TCP/IP
  • SIEM experience (Splunk required, others a bonus)
  • Scripting in (some of) Zeek, Bash, Python, Perl, Powershell, etc.
  • Strong briefing skills; experience interacting with SES/general officer-level management

Notice of Pay Transparency:

The compensation for this position may vary depending on factors such as your location, skills and experience. Depending on the nature and seniority of the role, a percentage of compensation may come in the form of a commission-based or discretionary bonus. Equity and additional benefits will also be awarded.

Compensation Range

$124,000—$160,000 USD

Why Join Us?

Fueled by investments from top-tier venture capital organizations such as Crowdstrike, Accel and Insight, Corelight is one of the fastest growing network detection and response platforms in the industry.  Our passionate team thrives in a collaborative, inclusive, and geographically distributed culture. We embrace diverse perspectives, neurodiversity, curiosity and low ego results - fostering an environment where every innovator can solve the toughest challenges in cybersecurity and contribute their best work.

We are looking forward to meeting you. Check us out at www.corelight.com

Share this job:
Please let Corelight know you found this job on Remote First Jobs 🙏

8187 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Corelight

Find your next opportunity with companies that specialize in Bro, Intrusion Detection, Cybersecurity, and Zeek. Explore remote-first companies like Corelight that prioritize flexible work and home-office freedom.

ExtraHop Logo

ExtraHop

Provides network detection and response solutions to reveal cyber risk and build business resilience.

View company profile →
Graylog, Inc. Logo

Graylog, Inc.

Centralized log management, SIEM, and API security solutions for threat detection and incident response.

View company profile →
Pondurance Logo

Pondurance

Managed Detection and Response (MDR) cybersecurity services powered by human intelligence.

View company profile →
phia, LLC Logo

phia, LLC

Cybersecurity, intelligence, and technology support for Federal government and commercial clients.

View company profile →
Check Point Software Logo

Check Point Software

Provides AI-powered cybersecurity solutions for organizations and governments globally.

View company profile →
Ripjar Logo

Ripjar

Transforms complex data into risk management solutions for financial crime, AML, and cybersecurity.

View company profile →

Project: Career Search

Rev. 2026.6

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply