Senior NDR & Platform Observability Engineer

Hartford, CT, US • Posted 1 hour ago • Updated 1 hour ago
Contract Corp To Corp
Contract W2
Contract Independent
On-site
Fitment

Dice Job Match Score™

👤 Reviewing your profile...

Job Details

Skills

  • NDR

Summary

Senior NDR & Platform Observability Engineer

Location: Minneapolis, MN / Hartford, CT

Role Summary

We are hiring a Senior Engineer to own the health, monitoring, automation, and reliability of the enterprise Network Detection & Response (NDR) ecosystem, with strong focus on Corelight, Zeek pipelines, and observability platforms.

You will work closely with Security Operations, Incident Response, and Network Engineering teams to improve detection quality, reduce alert noise, and ensure continuous NDR coverage.

Key Responsibilities
  • Operate and maintain NDR sensors, Zeek pipelines, and telemetry ingestion
  • Monitor sensor uptime, packet throughput, ingest health, and drop rates
  • Triage NDR alerts and support SOC/IR investigations
  • Tune Zeek scripts, Suricata rules, Corelight detection packs
  • Troubleshoot SPAN/TAP feeds and packet broker visibility
  • Design and build enterprise observability stack
  • Develop Python-based metrics collectors & automation
  • Build dashboards & alerts using:
    • Grafana
    • Prometheus
    • InfluxDB
    • Telegraf
  • Define SLIs/SLOs for platform reliability & data freshness
  • Create runbooks, documentation, and operational reports
Required Skills & Technologies
  • 5+ years in NDR, Security Operations, Network Engineering, or Observability
  • Hands-on with Corelight, Zeek, Suricata, Endace, or cPacket
  • Strong Python scripting & REST API integrations
  • Experience with Grafana, Prometheus, InfluxDB, Telegraf
  • Solid knowledge of network traffic, packet capture, and troubleshooting
  • Experience building monitoring dashboards, alerts, and metrics pipelines
  • Experience supporting SOC / Incident Response teams
Preferred Skills
  • Custom Prometheus exporters (Python/Go)
  • Corelight APIs & Zeek customization
  • Docker / Kubernetes
  • SIEM integrations
  • Exposure to Kafka, Elasticsearch, Loki
  • Knowledge of MITRE ATT&CK
AI Tool Expectations
  • Regular use of GitHub Copilot, Microsoft 365 Copilot, and enterprise GenAI tools
  • Apply AI to improve coding, documentation, automation, and analytics workflows
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91091604
  • Position Id: 2026-3961
  • Posted 1 hour ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

East Hartford, Connecticut

4d ago

Easy Apply

Contract

55 - 60

Woonsocket, Rhode Island

Today

Easy Apply

Third Party, Contract

Depends on Experience

Stamford, Connecticut

Today

Easy Apply

Third Party

Remote

6d ago

Easy Apply

Contract

70 - 80

Search all similar jobs