Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a ...
Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a ...
As a Lead Software Engineer at Corelight, you will be at the forefront of engineering excellence, bridging the gap between innovative open-source foundations and enterprise-grade performance. You ...
As a Lead Software Engineer at Corelight, you will be at the forefront of engineering excellence, bridging the gap between innovative open-source foundations and enterprise-grade performance. You ...
Sr Software Development Engineer in Test (SDET) - Network Security (Apps)
North, SC · On-site
$102K - $133K/yr
As a Senior SDET at Corelight, you will be the architect of the trust we build with our customers. In this role, you aren't just "checking code"-you are building the sophisticated automation and ...
Sr Software Development Engineer in Test (SDET) - Network Security (Apps)
North, SC · On-site
$102K - $133K/yr
As a Senior SDET at Corelight, you will be the architect of the trust we build with our customers. In this role, you aren't just "checking code"-you are building the sophisticated automation and ...
Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a ...
Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a ...
Cloud Specialist
Manhattan, NY · On-site
Corelight, Suricata, Firewalls, DDoS monitoring and Email Security: Proofpoint Education:Employment Type: CONTRACTOR
Cloud Specialist
Manhattan, NY · On-site
Corelight, Suricata, Firewalls, DDoS monitoring and Email Security: Proofpoint Education:Employment Type: CONTRACTOR
Cloud Specialist
Manhattan, NY · On-site
Corelight, Suricata, Firewalls, DDoS monitoring and Email Security: Proofpoint Education:Employment Type: CONTRACTOR
Cloud Specialist
Manhattan, NY · On-site
Corelight, Suricata, Firewalls, DDoS monitoring and Email Security: Proofpoint Education:Employment Type: CONTRACTOR
Proven expertise with log management and telemetry tools such as Cribl, Elastic, and Corelight. * Experience onboarding, maintaining, and troubleshooting log sources and telemetry pipelines to ensure ...
Proven expertise with log management and telemetry tools such as Cribl, Elastic, and Corelight. * Experience onboarding, maintaining, and troubleshooting log sources and telemetry pipelines to ensure ...
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
Corelight is looking for a part-time Social Media Contractor to support day-to-day social execution across corporate and employee advocacy channels. This role will focus on content publishing ...
Corelight is looking for a part-time Social Media Contractor to support day-to-day social execution across corporate and employee advocacy channels. This role will focus on content publishing ...
SIEM Platform Engineer
Mclean, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
SIEM Platform Engineer
Mclean, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
SIEM Platform Engineer
Alexandria, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
SIEM Platform Engineer
Alexandria, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
... Corelight, or Trellix • Knowledge of deploying platforms across cloud, on-premises, and disconnected environments using Kubernetes or OpenShift • Knowledge of working in classified or ...
... Corelight, or Trellix • Knowledge of deploying platforms across cloud, on-premises, and disconnected environments using Kubernetes or OpenShift • Knowledge of working in classified or ...
SIEM Platform Engineer
Reston, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
SIEM Platform Engineer
Reston, VA · On-site
... Corelight or Trellix • Experience deploying platforms across cloud, on-premises and disconnected environments using Kubernetes or OpenShift • Experience working in classified or compartmented ...
... Corelight, or Trellix and deploying across cloud, on-prem, and disconnected environments such as Kubernetes and OpenShift • Knowledge of Zero Trust DoD IC frameworks and federal compliance • TS ...
... Corelight, or Trellix and deploying across cloud, on-prem, and disconnected environments such as Kubernetes and OpenShift • Knowledge of Zero Trust DoD IC frameworks and federal compliance • TS ...
Network Engineer III
Camp Springs, MD · On-site
... Corelight NDR, IDS/IPS, firewalls, and network security tools. • Experience with Cisco Prime, SolarWinds Orion, or comparable configuration management tools. • Experience with Zero Trust Network ...
Network Engineer III
Camp Springs, MD · On-site
... Corelight NDR, IDS/IPS, firewalls, and network security tools. • Experience with Cisco Prime, SolarWinds Orion, or comparable configuration management tools. • Experience with Zero Trust Network ...
Systems Engineer - Network Security - San Diego
San Diego, CA · On-site
$54.24 - $78.66/hr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Systems Engineer - Network Security - San Diego
San Diego, CA · On-site
$54.24 - $78.66/hr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Systems Engineer - Network Security - San Diego
San Diego, CA · Remote
$110K - $151K/yr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Systems Engineer - Network Security - San Diego
San Diego, CA · Remote
$110K - $151K/yr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Cybersecurity Analyst
Woburn, MA · On-site
$104K - $120K/yr
Experience with Corelight Investigator is highly preferred * Technical background with a variety of information security systems and tools including firewalls, intrusion detection systems, intrusion ...
Cybersecurity Analyst
Woburn, MA · On-site
$104K - $120K/yr
Experience with Corelight Investigator is highly preferred * Technical background with a variety of information security systems and tools including firewalls, intrusion detection systems, intrusion ...
Experience with intrusion detection and prevention systems (IDS/IPS) such as tools such as CoreLight. * Experience with application programming interface (API) development and scanning tools such as ...
Experience with intrusion detection and prevention systems (IDS/IPS) such as tools such as CoreLight. * Experience with application programming interface (API) development and scanning tools such as ...
Systems Engineer - Network Security - San Diego
San Diego, CA · Remote
$110K - $151K/yr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Systems Engineer - Network Security - San Diego
San Diego, CA · Remote
$110K - $151K/yr
Manage Corelight NDR infrastructure. * Oversee Network and Firewall visibility products, specifically FireMon and NetBrain. * Evaluate and drive the infrastructure lifecycle for all the technologies ...
Corelight information
See salary details
$8.89 - $13.70
16% of jobs
$15.17 is the 25th percentile. Wages below this are outliers.
$13.70 - $18.51
29% of jobs
The median wage is $19.71 / hr.
$18.51 - $23.32
19% of jobs
$27.58 is the 75th percentile. Wages above this are outliers.
$23.32 - $28.13
12% of jobs
$28.13 - $32.93
8% of jobs
$32.93 - $37.74
5% of jobs
$37.74 - $42.55
4% of jobs
$42.55 - $47.36
2% of jobs
$47.36 - $52.16
2% of jobs
$52.16 - $56.97
1% of jobs
$56.97 - $61.78
1% of jobs
$8
$26
$61
How much do corelight jobs pay per hour?
What jobs make $10,000 a month without a degree?
What does the company Corelight do?
What is a Corelight Engineer?
What are some typical challenges faced by security professionals working at Corelight, and how can these be managed effectively?
What are the key skills and qualifications needed to thrive as a Corelight Security Engineer, and why are they important?
Is Corelight a good company to work for?
What jobs pay 2000 a day?
What is the difference between Corelight vs Network Security Analyst?
| Aspect | Corelight | Network Security Analyst |
|---|---|---|
| Required Credentials | Network certifications (e.g., CompTIA Network+, CISSP), knowledge of network protocols | Security certifications (e.g., CISSP, CEH), network knowledge |
| Work Environment | Security operations centers, network monitoring environments | Corporate IT departments, security teams, consulting firms |
| Employer & Industry Usage | Cybersecurity firms, large enterprises, government agencies | Organizations with IT security needs across industries |
| Comparison Intent | Understanding technical roles in network security | Evaluating security roles and responsibilities |
Corelight specialists focus on deploying and managing network detection tools, analyzing network traffic, and enhancing security infrastructure. Network Security Analysts perform broader security monitoring, incident response, and vulnerability assessments. While both roles require network security knowledge and certifications, Corelight roles are more technical and tool-specific, whereas Network Security Analysts have a wider scope in security operations.

Job description
REQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITE
Job Description:
We are seeking an experienced Network Intrusion Detection Engineer to join our cybersecurity team. The ideal candidate must possess strong Linux engineering expertise with experience managing YAML configuration files, and how these configurations integrate and influence the Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS). Highly qualified candidates will have hands-on engineering and O&M experience with Suricata and/or other network-based IDS capabilities such as Snort, VectraAI, Corelight, etc. You will play a critical role in deploying, tuning, and maintaining the IDS within a complex enterprise IT environment, primarily running on Red Hat Enterprise Linux.
What You'll Work On:
Designing, deploying, and maintaining IDS/IPS systems across a large enterprise with multiple networks.
Developing, reviewing, and optimizing YAML configuration files to ensure optimal detection capabilities and minimal false positives.
Understanding and managing the interaction between YAML configuration and its runtime engine, including rule loading, protocol decoding, and logging.
Tuning IDS/IPS for optimal performance with NICs, including configuring Direct Memory Access (DMA), RSS queues, interrupt coalescing, and leveraging any NIC-specific acceleration features.
Collaborating with security teams to integrate IDS/IPS with SIEM and other security monitoring platforms.
Troubleshooting installation and operational issues specific to IDS/IPS on Red Hat Enterprise Linux, addressing compatibility, kernel module requirements, SE-Linux policies, and performance tuning.
Identifying and mitigating common pitfalls encountered when deploying IDS/IPS in large-scale enterprise environments, including package dependencies, system resource constraints, and NIC driver/configuration issues.
Provide detailed documentation and runbooks for Suricata configuration, tuning NICs, and deployment processes.
Staying current with Platform IDS/IPS Software releases, NIC driver updates, and community best practices for network interface tuning and IDS/IPS performance enhancement.
Basic Qualifications:
Proven experience working with Snort, Suricata, Corelight or other network IDS/IPS systems, including hands-on management of its YAML configuration files.
Strong knowledge of configuration structure, syntax, and how it controls detection rules, logging, and output modules.
Extensive experience administering Red Hat Enterprise Linux (RHEL) systems, including package management (yum/dnf), kernel module management, SE-Linux configuration, and system optimization via Unix CLI and other remote shell access vectors (puTTY, SSH, etc.)
Hands-on experience tuning Suricata for high-performance packet capture with Napatech NICs or similar advanced network interface cards.
Familiarity with NIC-specific features such as DMA, Receive Side Scaling (RSS), interrupt moderation, and offload capabilities, and how to configure them for Suricata.
Experience troubleshooting Suricata's interaction with NIC drivers and kernel modules in an enterprise environment.
TS/SCI clearance with the ability to obtain a counter-intelligence polygraph.
Associate's degree and 5+ years of experience supporting IT projects and activities or Bachelor's degree and 3+ years of experience supporting IT projects and activities or Master's degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree.
DoD 8570 IAT Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification.
Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date.
Additional Qualifications:
Experience with scripting languages (Bash, Python, YAML/Ansible, etc.) to automate Suricata configuration and deployment tasks.
Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation.
Experience integrating Suricata with Splunk, or other SIEM solutions.
Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments.
Detection and Response (NDR) solutions, including Trellix/FireEye, Corelight, Endace, Vectra AI, Dark Trace, Cisco Security Network Analytics, Open XDR, Fortinet FortiNDR, Trend Vision, etc.
Ability to be a self-starter, work without considerable direction, and work with a team.
Possession of excellent verbal and written communication skills, including client briefings and coordinating efforts