×
Register Here to Apply for Jobs or Post Jobs. X

Security Test Automation Engineer

Job in San Francisco, San Francisco County, California, 94199, USA
Listing for: Corelight
Full Time position
Listed on 2026-01-20
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Data Engineer
Salary/Wage Range or Industry Benchmark: 153000 - 188000 USD Yearly USD 153000.00 188000.00 YEAR
Job Description & How to Apply Below
Security Test Automation Engineer

Corelight is a distributed cybersecurity startup building unique network detection and response (NDR) technology on open source Zeek. We help protect mission‑critical organizations by giving defenders a commanding view of their environment. Join us as a Security Test Automation Engineer to build advanced, data‑driven test automation frameworks and tools for our security products.

Responsibilities

• Be the testing expert focusing on data quality and functional correctness within a detection engineering research team.

• Design and implement system testing suites for the output of network security products.

• Define and execute full testing lifecycle: test plans and cases to verify event data (logs, metadata) quality, fidelity, and adherence to schema.

• Develop tooling to ingest, simulate, and analyze high‑volume network traffic data to replicate real‑world scenarios and reproduce defects in sensor output.

• Analyze detection engine output for false positives, false negatives, and performance impact, working closely with detection engineers and developers to refine detection logic.

Minimum Requirements

• 3+ years professional coding experience in Python or Go, designing and implementing data‑driven test automation frameworks and tooling for validating data streams.

• Proficiency with logging, metric, and data analysis solutions (e.g., Prometheus, Elastic Stack, Splunk) to query and validate sensor output.

• Proficiency with virtual or cloud providers for setting up controlled network environments for sensor testing.

• Experience with Kubernetes, Docker, or container ecosystems, including networking concepts relevant to containerized sensor deployment.

• Expertise in Linux for setup/configuration, operation, and monitoring system and network traffic behavior and performance.

Preferred Requirements

• 1+ years professional experience with network intrusion detection systems (NIDS) like Zeek or Suricata, particularly in analyzing their output/logs.

• Experience creating, collecting, and manipulating packet capture (PCAP) files for use in test scenarios, traffic simulation, and defect reproduction.

Compensation

Compensation range: $153,000—$188,000 USD, with potential commission-based or discretionary bonus and equity and additional benefits awarded.

Seniority level

Mid‑Senior level

Employment type

Full‑time

Job function

Quality Assurance

#JLjbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary