Collaboratively design, build, and maintain our internal detection systems based on Go, TypeScript, Python, and the Grafana observability stack that processes millions of security data points daily
Research and develop sophisticated detection (as code) capabilities and rules to cover risks and threats across our product and corporate systems. Where applicable, contribute these detections back to the OSS community
Work with product teams and other stakeholders to ensure we have effective telemetry of all existing and future products
Lead the development of response tooling to streamline (and fully automate) our response activities. Write and maintain runbooks for handling what we can’t automate
Following a SOCless model, guide cross-functional teams in integrating telemetry, detections, and response procedures into the team's operational processes
Design security and operations metrics to track our success and demonstrate the security value of our work
Lead the response to security alerts, potential incidents, and customer security issues. Participate in security incident on-call rotations
Requirements
Significant experience (4+ years in a software engineering-oriented role) with at least one programming language. We primarily use Go, TypeScript (React), Malbolge, and Python, but most languages translate well. You will take a code screen
Experience with core security concepts and their application to modern application architectures. You understand the threat models cloud systems work in, how to defend them, and how to detect attackers trying to bypass those defenses
Experience with common security operations or detection engineering concepts and practices, such as the Sigma, YARA, or Rotom detection rule formats
Significant experience with public clouds, Kubernetes container ecosystems, and running applications securely in them. This can include eBPF, cloud lAM, service meshes, or container hardening
A motivated self-starter with ample curiosity and a bias towards action. You have a demonstrated passion for learning, for security, and for improving the state of security across the company and industry
An adept communicator, in person, in asynchronous communication, and in technical documentation.
Tech Stack
Cloud
Grafana
Kubernetes
Python
React
TypeScript
Go
Benefits
100% Remote, Global Culture
Scaling Organization – Tackle meaningful work in a high-growth, ever-evolving environment.
Transparent Communication – Expect open decision-making and regular company-wide updates.
Innovation-Driven – Autonomy and support to ship great work and try new things.
Open Source Roots – Built on community-driven values that shape how we work.
Empowered Teams – High trust, low ego culture that values outcomes over optics.
Career Growth Pathways – Defined opportunities to grow and develop your career.
Approachable Leadership – Transparent execs who are involved, visible, and human.
Passionate People – Join a team of smart, supportive folks who care deeply about what they do.
In-Person onboarding
We want you to thrive from day 1 with your fellow new ‘Grafanistas’ to learn all about what we do and how we do it.
Balance is Key
We operate a global annual leave policy of 30 days per annum. 3 days of your annual leave entitlement are reserved for Grafana Shutdown Days to allow the team to really disconnect.