Halcyon Logo

Halcyon

Security Alert System Developer

Job Posted 6 Days Ago Posted 6 Days Ago
Be an Early Applicant
Remote
Senior level
Remote
Senior level
Develop and maintain a security alert management system, focusing on API integrations and improving workflows for security analysts.
The summary above was generated by AI

What we do:
Halcyon is the industry’s first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware.

Who we are:
Halcyon was formed in 2021 by a team of cyber industry veterans after battling the scourge of ransomware (and advanced threats) for years at some of the largest global security vendors. Comprised of leaders from Cylance (now Blackberry), Accuvant (now Optiv), Fireye and ISS X-Force (now IBM), Halcyon is focused on building products and solutions for mid-market and enterprise customers.

As a remote-native, completely distributed global team, we recognize great talent can exist anywhere. We invite you to apply to a job you’re interested in and we'll work a plan to meet your needs.

About the Project

We're developing a sophisticated security alert management system for enterprise environments. The system integrates with the Halcyon security platform to process, analyze, and facilitate the triage of security alerts. Our solution helps security teams efficiently categorize threats, distinguish between true and false positives, and maintain appropriate response protocols.

Role Overview

We're seeking an experienced Python developer with a strong background in security operations to join our team. This role involves enhancing and maintaining a critical security alert processing and triage system that security analysts rely on daily to identify and respond to potential threats.

Key Responsibilities

  • Develop, maintain, and enhance Python-based security alert processing systems

  • Implement integrations with security APIs including VirusTotal and Halcyon's security platform

  • Design and improve user interfaces for security alert triage via Slack interfaces

  • Create and maintain secure database operations for alert storage and tracking

  • Implement automated threat classification and scoring mechanisms

  • Optimize alert processing workflows to reduce analyst fatigue and improve response times

  • Collaborate with security operations teams to ensure system effectiveness

Required Skills & Experience

  • 7+ years of Python development experience, particularly with API integrations

  • Experience with security platforms and security alert management

  • Familiarity with threat intelligence concepts and security operations workflows

  • Knowledge of database systems (particularly SQLite) and SQL query optimization

  • Understanding of RESTful API design and consumption

  • Experience with asynchronous programming and multi-threading in Python

  • Ability to work with JSON data structures and API responses

Preferred Qualifications

  • Experience with Slack API integrations and interactive message components

  • Knowledge of security tooling (VirusTotal, YARA rules, etc.)

  • Understanding of malware analysis and classifications

  • Familiarity with container technologies (Docker, Kubernetes)

  • Experience with cloud security concepts and platforms

  • Security certifications (CISSP, OSCP, Security+, etc.)

  • Experience with Flask or other lightweight web frameworks

Technical Environment

You'll be working with:

  • Python 3.x

  • SQLite for database operations

  • RESTful APIs (Halcyon, VirusTotal, etc.)

  • Slack API for interactive alerts

  • JSON data processing

  • GitHub for version control

  • YARA rules for threat detection

  • Flask for web service components

Project Specifics

This system handles the following key functions:

  • Processing incoming security alerts from various sources

  • Enriching alerts with threat intelligence data

  • Presenting critical alert information to security analysts

  • Facilitating informed decision-making on alert triage (true positive/false positive)

  • Maintaining records of alert dispositions and analyst notes

  • Automating routine alert handling based on established patterns

  • Generating reports on alert trends and analyst activities

Collaboration EnvironmentYou'll work closely with security operations teams to understand their workflows and challenges. The ideal candidate should have strong communication skills and the ability to translate security analyst needs into effective technical solutions.

 

In accordance with applicable state and federal laws, the range provided is Halcyon’s reasonable estimate of the base compensation for this role. The actual amount may differ based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. Base pay is one part of the total package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and equity in the Company.

We understand it takes a diverse team of highly intelligent, passionate, curious, and creative people to develop the exceptional product we are building. Our dynamic team has incredible perspectives to share, just as we know you do, and we take great pride in being an equal opportunity employer.

Top Skills

Flask
Git
JSON
Python 3.X
Restful Apis
Slack Api
Sqlite
Yara

Similar Jobs

An Hour Ago
Easy Apply
Remote
United States
Easy Apply
Senior level
Senior level
Marketing Tech • Mobile • Software
As a Senior Security Engineer, you'll protect company assets, implement security solutions, investigate threats, and mentor junior associates while ensuring compliance and system operability.
Top Skills: Cloud SecurityDlpEdrEmailIamJAMFMdmNetwork SecuritySIEMSso
4 Hours Ago
Remote
USA
110K-190K Annually
Senior level
110K-190K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Sr. Network Engineer will design, implement, and support enterprise networks while mentoring junior engineers and collaborating with stakeholders. Responsibilities include monitoring, optimizing, and documenting network architecture, providing tier-3 support, and managing complex network incidents.
Top Skills: AnsibleAruba ClearpassAWSCisco IseJIRAMS OfficeNetworkingPalo Alto NetworksPythonSplunkWireshark
Yesterday
Remote
Hybrid
USA
122K-151K Annually
Senior level
122K-151K Annually
Senior level
Cloud • Edtech • Information Technology • Software
The Security Author creates and educates through technical content, maintains industry knowledge, and collaborates with marketing, requiring expertise in security operations.
Top Skills: BloodhoundBurp SuiteCarbon BlackCobalt StrikeEdrElk StackGophishLinuxmacOSMetasploitMimikatzMitre Att&CkNessusNistNmapPenetration TestingRed TeamingSansSIEMSplunkSqlmapUnixWindows

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account