דרושים » אבטחת מידע וסייבר » Malware Research Manager - Rapid Response (Cortex)

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
22/06/2026
משרה זו סומנה ע"י המעסיק כלא אקטואלית יותר
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Windows Malware Security Researcher for our Tel Aviv R&D center. You will be part of a team that is responsible for researching the most recent and advanced cybersecurity threats, as well as designing, developing, and improving Anti-Malware capabilities to protect against them. The position includes researching OS internals, picking apart malware samples, delving into the internals of Windows kernel and user-mode code, and finding ways to mitigate new attack vectors.
The proposed role will be part of the research team of the Cortex XDR endpoint protection solution.
We are seeking a highly skilled and experienced Windows Malware Security Researcher to join our growing Windows malware research team of the Cortex XDR agent group. In this role, you will play a key part in enhancing our Endpoint Detection and Response (EDR) agent by prototyping new protection components and techniques and developing advanced malware prevention strategies. You will work on identifying, analyzing, and mitigating sophisticated threats, working closely with various teams to drive innovation. A deep understanding of the Windows operating system is essential.
Key Responsibilities
Playing a pivotal role in shaping the future of our security solutions.
Enhance the effectiveness of our EDR product by designing cutting-edge protection components and developing sophisticated prevention rules.
Researching OS internals and how Windows works under the hood - leveraging this knowledge to develop and improve our anti-malware mechanisms and capabilities.
Research and lead novel protection ideas to production-grade level, serving as the feature subject matter expert.
Research new malware and APT mitigation techniques and develop corresponding capabilities (POC level), or improve existing mitigation capabilities.
Respond to malware-based security events at clients' networks.
Stay up to date with current malware and APT techniques.
Provide feedback to the product management team on new feature requests and product enhancements from our customer base.
Find new malware techniques and APT attacks, including analysis of caught-in-the-wild malware.
Operate independently end-to-end - from initial threat idea, through research and POC, to handing off a production-ready design to core agent engineering with clear specs, test cases, and edge-case analysis.
Be a team player who lifts others up - happy to jump in when a teammate is stuck on a tricky Windows internals or RE question, share what you've figured out, and generally make the people around you better.
Requirements:
At least 5 years of experience in the cyber security research domain.
In-depth knowledge of Windows operating system internals (both user-mode and kernel-mode) - at least 3 years of hands-on research experience.
In-depth knowledge of C/C++, with hands-on development experience using C/C++ (Win32 API) in a Windows environment.
Experience with anti-RE techniques such as anti-debug, anti-VM, unpacking, etc.
Strong knowledge of the cyber threat landscape, including APTs (Advanced Persistent Threats) and modern malware techniques.
Strong dynamic analysis skills with hands-on experience using debuggers such as WinDbg, x64dbg, OllyDbg, or similar.
Strong static analysis skills with hands-on experience using disassemblers such as IDA Pro and Ghidra.
Proficiency in Python.
Knowledge of networking and internet protocols.
A major advantage to candidates with at least 2 years of experience in at least one of the following: EDR/XDR products, Windows kernel development, low-level security solution development, Windows exploitation, or vulnerability research.
Ability to work fully independently - own a research track from scoping to POC handoff with minimal supervision - while also collaborating effectively as part of a team.
Strong problem-solving skills with a passion for innovation, sharp attention to detail, and a bias for taking initiative on hard problems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8779546
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Linux Low Level Security Research team manager for our Tel Aviv R&D center. You will manage and lead a team that is responsible for researching the most recent Malwares, Kernel mitigations, EBPF, and advanced cybersecurity threats, as well as designing, developing and improving our Linux Agent ability to protect against different threats. The position includes researching Linux internals, Reverse engineering, malwares analysis, diving into internals of the Linux kernel and user-mode code, java, javascript and more.
Key Responsibilities
Leading the existing employees as well as hire future employees to join your team.
Be a thought leader around anti-malware detection and protection; designing, planning, and improving our anti-malware detection and prevention capabilities.
Lead the rapid response and find ways to prevent new critical vulnerabilities.
Respond to malware-based security events from customers.
Stay up to date with current malware and new attackers techniques.
Requirements:
At least one year of management experience.
At least 5 years of security research experience.
At least 3 years of Linux security research experience.
At least 3 years of experience in Linux internals (both user and kernel) and research.
At least 3 years of experience with reverse engineering (both static and dynamic) as well as assembly.
At least 2 years of programming experience in C/C++/Rust.
Experience with leading projects, working with other teams, and meeting high-quality standards and deadlines.
High research and coding standards and ability to think ahead of possible pitfalls and issues.
Hands-on approach
Passion for working with people: recruiting, leading, mentoring, and helping them grow.
Excellent communication skills with the ability to present research results, processes, and ideas clearly and concisely.
The ability to work under pressure with strict deadlines and to prioritize projects.
Ability to take initiative and work under pressure.
Strong attention to detail.
A 'play-to-win' attitude.
Preferred Qualifications
Experience with writing eBPF applications.
Experience finding your own vulnerabilities and figuring out how to exploit them.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8780972
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
The team is responsible for developing and improving our Linux anti-malware prevention. This includes having top-notch knowledge about the latest malware families in the wild, Linux internals, different attack frameworks and hacktools. As part of this, the team analyzes customer data and issues to prevent malicious activities in our customer's environment, and help to improve the product.
Key Responsibilities
Research and analyze malware and keep up-to-date on the most recent tactics and techniques used in the wild
Create behavioral-based protection that enhances our product's coverage
Leverage Palo Alto Networks massive collection network to identify coverage gaps and emerging threats
Assist in the design, research, evaluation and implementation of new security technologies and features
Work in close coordination with other teams, including both development and other research teams, as well as support, sales and other cross-functional teams.
Requirements:
3+ years of experience in security research/analysis roles
Vast experience in Malware research - Advanced static and dynamic analysis tools
Experience in identifying, investigating, and responding to complex attacks
In-depth knowledge of inner Linux operating system Internals - processes & threads, User & Kernel space, eBPF, Cloud Native technologies, etc.
Experience in Python or other scripting languages
Understanding of the threat landscape in terms of the tools, tactics, and techniques of attacks
Excellent written and oral communication skills in English
Strong attention to detail
Ability to work independently in a dynamic, fast-moving, and demanding environment - this role might occasionally require working non-regular hours, including weekends and holidays - if needed
Preferred Qualifications
Experience in development of endpoint-based malware detection rules - big advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8782314
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Windows Malware Security Researcher for our Tel Aviv R&D center. You will be part of a team that is responsible for researching the most recent and advanced cybersecurity threats, as well as designing, developing, and improving Anti-Malware capabilities to protect against them. The position includes researching OS internals, picking apart malware samples, delving into the internals of Windows kernel and user-mode code, and finding ways to mitigate new attack vectors.
The proposed role will be part of the research team of the Cortex XDR endpoint protection solution.
We are seeking a highly skilled and experienced Windows Malware Security Researcher to join our growing Windows malware research team of the Cortex XDR agent group. In this role, you will play a key part in enhancing our Endpoint Detection and Response (EDR) agent by prototyping new protection components and techniques and developing advanced malware prevention strategies. You will work on identifying, analyzing, and mitigating sophisticated threats, working closely with various teams to drive innovation. A deep understanding of the Windows operating system is essential.
Key Responsibilities
Playing a pivotal role in shaping the future of our security solutions.
Enhance the effectiveness of our EDR product by designing cutting-edge protection components and developing sophisticated prevention rules.
Researching OS internals and how Windows works under the hood - leveraging this knowledge to develop and improve our anti-malware mechanisms and capabilities.
Research and lead novel protection ideas to production-grade level, serving as the feature subject matter expert.
Research new malware and APT mitigation techniques and develop corresponding capabilities (POC level), or improve existing mitigation capabilities.
Respond to malware-based security events at clients' networks.
Stay up to date with current malware and APT techniques.
Provide feedback to the product management team on new feature requests and product enhancements from our customer base.
Find new malware techniques and APT attacks, including analysis of caught-in-the-wild malware.
Operate independently end-to-end - from initial threat idea, through research and POC, to handing off a production-ready design to core agent engineering with clear specs, test cases, and edge-case analysis.
Be a team player who lifts others up - happy to jump in when a teammate is stuck on a tricky Windows internals or RE question, share what you've figured out, and generally make the people around you better.
Requirements:
At least 5 years of experience in the cyber security research domain.
In-depth knowledge of Windows operating system internals (both user-mode and kernel-mode) - at least 3 years of hands-on research experience.
In-depth knowledge of C/C++, with hands-on development experience using C/C++ (Win32 API) in a Windows environment.
Experience with anti-RE techniques such as anti-debug, anti-VM, unpacking, etc.
Strong knowledge of the cyber threat landscape, including APTs (Advanced Persistent Threats) and modern malware techniques.
Strong dynamic analysis skills with hands-on experience using debuggers such as WinDbg, x64dbg, OllyDbg, or similar.
Strong static analysis skills with hands-on experience using disassemblers such as IDA Pro and Ghidra.
Proficiency in Python.
Knowledge of networking and internet protocols.
A major advantage to candidates with at least 2 years of experience in at least one of the following: EDR/XDR products, Windows kernel development, low-level security solution development, Windows exploitation, or vulnerability research.
Ability to work fully independently - own a research track from scoping to POC handoff with minimal supervision - while also collaborating effectively as part of a team.
Strong problem-solving skills with a passion for innovation, sharp attention to detail, and a bias for taking initiative on hard problems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769873
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Linux Low Level Security Research team manager for our Tel Aviv R&D center. You will manage and lead a team that is responsible for researching the most recent Malwares, Kernel mitigations, EBPF, and advanced cybersecurity threats, as well as designing, developing and improving our Linux Agent ability to protect against different threats. The position includes researching Linux internals, Reverse engineering, malwares analysis, diving into internals of the Linux kernel and user-mode code, java, javascript and more.
Key Responsibilities
Leading the existing employees as well as hire future employees to join your team.
Be a thought leader around anti-malware detection and protection; designing, planning, and improving our anti-malware detection and prevention capabilities.
Lead the rapid response and find ways to prevent new critical vulnerabilities.
Respond to malware-based security events from customers.
Stay up to date with current malware and new attackers techniques.
Requirements:
At least one year of management experience.
At least 5 years of security research experience.
At least 3 years of Linux security research experience.
At least 3 years of experience in Linux internals (both user and kernel) and research.
At least 3 years of experience with reverse engineering (both static and dynamic) as well as assembly.
At least 2 years of programming experience in C/C++/Rust.
Experience with leading projects, working with other teams, and meeting high-quality standards and deadlines.
High research and coding standards and ability to think ahead of possible pitfalls and issues.
Hands-on approach
Passion for working with people: recruiting, leading, mentoring, and helping them grow.
Excellent communication skills with the ability to present research results, processes, and ideas clearly and concisely.
The ability to work under pressure with strict deadlines and to prioritize projects.
Ability to take initiative and work under pressure.
Strong attention to detail.
A 'play-to-win' attitude.
Preferred Qualifications
Experience with writing eBPF applications.
Experience finding your own vulnerabilities and figuring out how to exploit them.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770042
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Linux Low Level Security Research group manager for our Tel Aviv R&D center. You will manage and lead a group that is responsible for researching the most recent Malwares, Kernel mitigations, EBPF, vulnerabilities, exploits and advanced cybersecurity threats, as well as designing, developing and improving our Linux Agent ability to protect against different threats. The position includes researching Linux internals, Reverse engineering, malware analysis, vulnerability analysis, diving into internals of the Linux kernel and user-mode code, java, javascript and more. The group consists of two Linux Low Level researcher teams.
Key Responsibilities
Leading the existing employees as well as hiring future employees to join your group.
Be a thought leader around Linux detection and protection; designing, planning, and improving our anti-exploit, as well as anti-malware detection and prevention capabilities.
Lead the rapid response and find ways to prevent new critical vulnerabilities and malware.
Figure out different ways to generally catch entire bug-classes or exploitation building blocks to prevent exploits.
Respond to different breach and security events arriving from customers.
Stay up to date with current vulnerabilities, exploitation techniques and malware.
Requirements:
At least 1+ years of experience as a Senior/Group Manager with a proven track record of leading managers.
At least 4 years of overall management experience.
At least 5 years of security research experience.
At least 3 years of Linux security research experience.
At least 3 years of experience in Linux internals (both user and kernel) and research.
At least 3 years of experience with reverse engineering (both static and dynamic) as well as assembly.
At least 2 years of programming experience in C/C++/Rust.
Experience with leading projects, working with other teams, and meeting high-quality standards and deadlines.
High research and coding standards and ability to think ahead of possible pitfalls and issues.
Hands-on approach
Passion for working with people: recruiting, leading, mentoring, and helping them grow.
Excellent communication skills with the ability to present research results, processes, and ideas clearly and concisely.
The ability to work under pressure with strict deadlines and to prioritize projects.
Ability to take initiative and work under pressure.
Strong attention to detail.
A 'play-to-win' attitude.
Preferred Qualifications
Experience with writing eBPF applications.
Experience finding your own vulnerabilities and figuring out how to exploit them.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8779589
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a SecOps Lead , you will own the core of the security operations function: detection, response, automation, and the processes that connect them. You will guide incident response from first alert through post-mortem, keeping efforts structured and stakeholders informed along the way. You will shape how the team detects, triages, and resolves, and communicate that work clearly to leadership, engineering, and customers.

This is a hands-on role with broad ownership. You should be comfortable writing a detection rule, coordinating a live incident, and walking stakeholders through a post-incident review.

Key Responsibilities

Lead Incident Response: Own the end-to-end incident response lifecycle across infrastructure and enterprise browser platform, driving investigations, coordinating responders, and ensuring timely resolution and post-incident improvements.
Own the IR Framework: Build, maintain, and continuously improve incident response processes, including runbooks, severity definitions, escalation paths, on-call procedures, and communication standards.
Drive Detection Engineering: Design, implement, and continuously improve high-fidelity detections across SIEM, EDR, cloud, and endpoint security platforms, closing visibility gaps and strengthening detection coverage.
Automate Security Operations: Build automation and AI-driven workflows that streamline triage, investigation, enrichment, and response, reducing manual effort and improving operational efficiency.
Threat Hunting & Research: Proactively hunt for threats, leverage threat intelligence, and identify emerging attack techniques relevant to modern enterprise environments.
Own Security Operations: Serve as the technical owner for Security Operations within Product Security, driving strategy, setting best practices, and continuously improving detection and response capabilities.
Partner Across Engineering: Collaborate closely with Engineering, IT, Infrastructure, and Compliance teams to embed security into new services, infrastructure changes, FedRAMP initiatives, and customer-facing security requirements.
Communicate During Incidents: Provide clear, timely communication throughout incident response, keeping technical teams, leadership, and stakeholders aligned on impact, progress, risks, and next steps.
Requirements:
5+ years of hands-on experience in Security Operations, Incident Response, or Detection Engineering.
Proven experience leading end-to-end incident response for high-severity security incidents in cloud or enterprise environments.
Strong understanding of detection engineering, threat hunting, and modern security operations, with hands-on experience using SIEM, EDR, and cloud security platforms.
Experience building and improving incident response processes, including runbooks, severity frameworks, escalation paths, and post-incident reviews.
Hands-on experience automating security operations using SOAR platforms and AI-powered workflows (Torq, Tines, or similar).
Solid understanding of AWS security fundamentals, including IAM, CloudTrail, and containerized environments (EKS is an advantage).
Strong knowledge of modern attack techniques, threat intelligence, detection methodologies, and investigation best practices.
Excellent written and verbal communication skills, with the ability to communicate effectively during incidents and present findings to both technical and non-technical stakeholders.
Experience collaborating across Engineering, Infrastructure, IT, and Compliance teams to improve security posture.
Experience mentoring engineers or leading cross-functional security initiatives is an advantage.
Familiarity with SOC2, FedRAMP, or other regulated compliance frameworks is a plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769437
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
Data Scale: Experience with big data platforms (e.g., GCP), SQL, or related query languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781082
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
Data Scale: Experience with big data platforms (e.g., GCP), SQL, or related query languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Linux Low Level Security Research group manager for our Tel Aviv R&D center. You will manage and lead a group that is responsible for researching the most recent Malwares, Kernel mitigations, EBPF, vulnerabilities, exploits and advanced cybersecurity threats, as well as designing, developing and improving our Linux Agent ability to protect against different threats. The position includes researching Linux internals, Reverse engineering, malware analysis, vulnerability analysis, diving into internals of the Linux kernel and user-mode code, java, javascript and more. The group consists of two Linux Low Level researcher teams.
Key Responsibilities
Leading the existing employees as well as hiring future employees to join your group.
Be a thought leader around Linux detection and protection; designing, planning, and improving our anti-exploit, as well as anti-malware detection and prevention capabilities.
Lead the rapid response and find ways to prevent new critical vulnerabilities and malware.
Figure out different ways to generally catch entire bug-classes or exploitation building blocks to prevent exploits.
Respond to different breach and security events arriving from customers.
Stay up to date with current vulnerabilities, exploitation techniques and malware.
Requirements:
At least 1+ years of experience as a Senior/Group Manager with a proven track record of leading managers.
At least 4 years of overall management experience.
At least 5 years of security research experience.
At least 3 years of Linux security research experience.
At least 3 years of experience in Linux internals (both user and kernel) and research.
At least 3 years of experience with reverse engineering (both static and dynamic) as well as assembly.
At least 2 years of programming experience in C/C++/Rust.
Experience with leading projects, working with other teams, and meeting high-quality standards and deadlines.
High research and coding standards and ability to think ahead of possible pitfalls and issues.
Hands-on approach
Passion for working with people: recruiting, leading, mentoring, and helping them grow.
Excellent communication skills with the ability to present research results, processes, and ideas clearly and concisely.
The ability to work under pressure with strict deadlines and to prioritize projects.
Ability to take initiative and work under pressure.
Strong attention to detail.
A 'play-to-win' attitude.
Preferred Qualifications
Experience with writing eBPF applications.
Experience finding your own vulnerabilities and figuring out how to exploit them.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769947
סגור
שירות זה פתוח ללקוחות VIP בלבד