Corelight · 1 month ago
Security Test Automation Engineer
Corelight is a distributed first cybersecurity startup in the network detection and response market, focused on enhancing the security of mission-critical organizations. As a Security Test Automation Engineer, you will design and develop test frameworks and tools to ensure the quality and functional correctness of Corelight's security products, collaborating closely with detection engineering and development teams.
AnalyticsCyber SecurityNetwork SecuritySecuritySoftware
Responsibilities
Be the testing expert, focusing on data quality and functional correctness, within a detection engineering research team
Design and implement system testing suites for the output of network security products
Responsible for the full testing lifecycle, including defining test plans and cases that specifically verify event data (logs, metadata) quality, fidelity, and adherence to schema
Develop tooling to ingest, simulate, and analyze high-volume network traffic data to replicate real-world scenarios and reproduce defects in sensor output
Analyze detection engine output for false positives, false negatives, and performance impact, working closely with detection engineers, and developers to refine detection logic
Qualification
Required
6+ years professional coding experience in Python or Go, with an emphasis on designing and implementing data-driven test automation frameworks and tooling for validating data streams
Proficiency with logging, metric, and data analysis solutions (e.g., Prometheus, Elastic Stack, Splunk) to query and validate sensor output
Proficiency with virtual or cloud providers for setting up controlled network environments for sensor testing
Professional coding experience in Python/Go for test automation and building tooling for validating data streams and detection correctness
Experience with Kubernetes, Docker, or Container ecosystems, including networking concepts relevant to containerized sensor deployment
Expertise in Linux usage for setup/configuration, operation, and monitoring system and network traffic behavior and performance
Preferred
2+ years professional experience with network intrusion detection systems (NIDS) like Zeek or Suricata, particularly in analyzing their output/logs
Experience creating, collecting, and manipulating packet capture (PCAP) files for use in test scenarios, traffic simulation, and defect reproduction
Benefits
Equity
Additional benefits
Company
Corelight
Corelight is a cybersecurity company specializing in network traffic analysis (NTA) solutions.
H1B Sponsorship
Corelight has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (13)
2024 (9)
2023 (1)
2022 (10)
2021 (6)
2020 (5)
Funding
Current Stage
Late StageTotal Funding
$309.2MKey Investors
AccelEnergy Impact PartnersGeneral Catalyst
2024-04-30Series E· $150M
2021-09-02Series D· $75M
2019-10-17Series C· $50M
Recent News
2025-12-09
2025-11-05
Help Net Security
2025-11-01
Company data provided by crunchbase