דרושים » אבטחת מידע וסייבר » Senior Threat Intelligence Researcher (Cortex)

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
משרה זו סומנה ע"י המעסיק כלא אקטואלית יותר
מיקום המשרה: תל אביב יפו
סוג משרה: משרה מלאה
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
Data Scale: Experience with big data platforms (e.g., GCP), SQL, or related query languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux Security. You'll be a foundational member of a new and growing team dedicated to the blue ocean of detection, developing multiple new capabilities within the largest cybersecurity enterprise in the world.
This is a unique opportunity to apply your expertise and influence the future of threat prevention-helping us build cutting-edge security solutions from the ground up.
Key Responsibilitie
Play a pivotal role in shaping the future of our security solutions.
Enhance product effectiveness by designing advanced protection components and developing sophisticated detection rules.
Research Linux OS internals, virtualized environments, and malware behaviors to inform and strengthen our attack prevention mechanisms.
Apply advanced AI and big data approaches to investigate and analyze large-scale datasets across our client base.
Lead research on novel protection concepts and bring them to production-grade quality, serving as a subject matter expert.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems.
Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop mitigation strategies.
Collaborate closely with engineering, product management, and other research teams to translate research findings into production features.
Requirements:
5+ years of experience in cybersecurity research, with a proven track record of impactful projects.
Good knowledge of Linux OS internals, including both user and kernel space.
Solid knowledge of the cyber threat landscape, modern malware techniques, and APTs.
Hands-on experience in real-world threat hunting, incident response, or detection engineering.
Proficiency in programming languages such as Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
Excellent problem-solving skills and a passion for cybersecurity innovation.
Ability to work independently, take initiative, and collaborate effectively in a team environment.
Preferred Qualifications
Background in EDR/XDR products or security solution development.
Experience in reverse engineering, including familiarity with debugging and disassembly tools such as GDB, IDA Pro, or Ghidra.
Experience in advanced data analysis, statistics, or machine learning for security applications.
Experience with Linux kernel development or vulnerability research.
Familiarity with virtualization platforms (e.g., ESXi/vCenter).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770069
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
The team is responsible for developing and improving our Linux anti-malware prevention. This includes having top-notch knowledge about the latest malware families in the wild, Linux internals, different attack frameworks and hacktools. As part of this, the team analyzes customer data and issues to prevent malicious activities in our customer's environment, and help to improve the product.
Key Responsibilities
Research and analyze malware and keep up-to-date on the most recent tactics and techniques used in the wild
Create behavioral-based protection that enhances our product's coverage
Leverage Palo Alto Networks massive collection network to identify coverage gaps and emerging threats
Assist in the design, research, evaluation and implementation of new security technologies and features
Work in close coordination with other teams, including both development and other research teams, as well as support, sales and other cross-functional teams.
Requirements:
3+ years of experience in security research/analysis roles
Vast experience in Malware research - Advanced static and dynamic analysis tools
Experience in identifying, investigating, and responding to complex attacks
In-depth knowledge of inner Linux operating system Internals - processes & threads, User & Kernel space, eBPF, Cloud Native technologies, etc.
Experience in Python or other scripting languages
Understanding of the threat landscape in terms of the tools, tactics, and techniques of attacks
Excellent written and oral communication skills in English
Strong attention to detail
Ability to work independently in a dynamic, fast-moving, and demanding environment - this role might occasionally require working non-regular hours, including weekends and holidays - if needed
Preferred Qualifications
Experience in development of endpoint-based malware detection rules - big advantage.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8782314
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
09/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a threat Security Researcher to own the "right" side of the platform - from live cloud workloads and the eBPF telemetry they emit, through adversary behavior in containers and Kubernetes, into the AI systems and agents now embedded in production. You'll hunt down how novel attack techniques actually unfold at runtime - the credential theft, the lateral movement, the abuse of a model or an MCP tool - then turn that research into the detection logic that runs over our vast runtime telemetry and powers real-time threat protection. This role sits at the intersection of threat research, cloud, AI security, and detection engineering.
Conduct deep technical research into modern cloud environments and AI systems and discover novel attack techniques.
Lead product initiatives in the threats domain from inception to production. Collaborate closely with product, backend, and GTM, translating research into product capabilities.
Define and create complex detection logic over our vast telemetry, with a focus on coverage that scales across customer environments.
Identify gaps in detection coverage and evaluate detection quality. ensuring security logic is reliable and impactful.
Stay up to date with the evolving threat landscape (threat intelligence, campaigns) and incorporate into our product
Contribute to PR presence - technical research content, talks, open-source tooling.
Requirements:
5+ years of experience in threat research, including threat hunting, incident response or detection engineering
Military background experience, university degree, or Ex-CNAPP
Curious, detail-oriented mindset with proven ability to self-learn complex topics and new mechanisms.
Hands-on skills with scripting languages (e.g., Python) as well as query languages (e.g., KQL
Ability to work independently and also across teams, in a dynamic, fast-moving, demanding environment
Strong written and verbal communication skills in English, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
Advantages :
Experience in AI Security Research
An AI-native mindset, you've built or applied AI-powered tooling in a security context
Experience conducting data-driven research and working with large-scale telemetry.
Experience in public-facing work, such as presenting at recognized industry conferences or authoring technical blog posts.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8773788
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux Security. You'll be a foundational member of a new and growing team dedicated to the blue ocean of detection, developing multiple new capabilities within the largest cybersecurity enterprise in the world.
This is a unique opportunity to apply your expertise and influence the future of threat prevention-helping us build cutting-edge security solutions from the ground up.
Key Responsibilitie
Play a pivotal role in shaping the future of our security solutions.
Enhance product effectiveness by designing advanced protection components and developing sophisticated detection rules.
Research Linux OS internals, virtualized environments, and malware behaviors to inform and strengthen our attack prevention mechanisms.
Apply advanced AI and big data approaches to investigate and analyze large-scale datasets across our client base.
Lead research on novel protection concepts and bring them to production-grade quality, serving as a subject matter expert.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems.
Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop mitigation strategies.
Collaborate closely with engineering, product management, and other research teams to translate research findings into production features.
Requirements:
5+ years of experience in cybersecurity research, with a proven track record of impactful projects.
Good knowledge of Linux OS internals, including both user and kernel space.
Solid knowledge of the cyber threat landscape, modern malware techniques, and APTs.
Hands-on experience in real-world threat hunting, incident response, or detection engineering.
Proficiency in programming languages such as Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
Excellent problem-solving skills and a passion for cybersecurity innovation.
Ability to work independently, take initiative, and collaborate effectively in a team environment.
Preferred Qualifications
Background in EDR/XDR products or security solution development.
Experience in reverse engineering, including familiarity with debugging and disassembly tools such as GDB, IDA Pro, or Ghidra.
Experience in advanced data analysis, statistics, or machine learning for security applications.
Experience with Linux kernel development or vulnerability research.
Familiarity with virtualization platforms (e.g., ESXi/vCenter).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781072
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
Data Scale: Experience with big data platforms (e.g., GCP), SQL, or related query languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8781082
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
05/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Windows Malware Security Researcher for our Tel Aviv R&D center. You will be part of a team that is responsible for researching the most recent and advanced cybersecurity threats, as well as designing, developing, and improving Anti-Malware capabilities to protect against them. The position includes researching OS internals, picking apart malware samples, delving into the internals of Windows kernel and user-mode code, and finding ways to mitigate new attack vectors.
The proposed role will be part of the research team of the Cortex XDR endpoint protection solution.
We are seeking a highly skilled and experienced Windows Malware Security Researcher to join our growing Windows malware research team of the Cortex XDR agent group. In this role, you will play a key part in enhancing our Endpoint Detection and Response (EDR) agent by prototyping new protection components and techniques and developing advanced malware prevention strategies. You will work on identifying, analyzing, and mitigating sophisticated threats, working closely with various teams to drive innovation. A deep understanding of the Windows operating system is essential.
Key Responsibilities
Playing a pivotal role in shaping the future of our security solutions.
Enhance the effectiveness of our EDR product by designing cutting-edge protection components and developing sophisticated prevention rules.
Researching OS internals and how Windows works under the hood - leveraging this knowledge to develop and improve our anti-malware mechanisms and capabilities.
Research and lead novel protection ideas to production-grade level, serving as the feature subject matter expert.
Research new malware and APT mitigation techniques and develop corresponding capabilities (POC level), or improve existing mitigation capabilities.
Respond to malware-based security events at clients' networks.
Stay up to date with current malware and APT techniques.
Provide feedback to the product management team on new feature requests and product enhancements from our customer base.
Find new malware techniques and APT attacks, including analysis of caught-in-the-wild malware.
Operate independently end-to-end - from initial threat idea, through research and POC, to handing off a production-ready design to core agent engineering with clear specs, test cases, and edge-case analysis.
Be a team player who lifts others up - happy to jump in when a teammate is stuck on a tricky Windows internals or RE question, share what you've figured out, and generally make the people around you better.
Requirements:
At least 5 years of experience in the cyber security research domain.
In-depth knowledge of Windows operating system internals (both user-mode and kernel-mode) - at least 3 years of hands-on research experience.
In-depth knowledge of C/C++, with hands-on development experience using C/C++ (Win32 API) in a Windows environment.
Experience with anti-RE techniques such as anti-debug, anti-VM, unpacking, etc.
Strong knowledge of the cyber threat landscape, including APTs (Advanced Persistent Threats) and modern malware techniques.
Strong dynamic analysis skills with hands-on experience using debuggers such as WinDbg, x64dbg, OllyDbg, or similar.
Strong static analysis skills with hands-on experience using disassemblers such as IDA Pro and Ghidra.
Proficiency in Python.
Knowledge of networking and internet protocols.
A major advantage to candidates with at least 2 years of experience in at least one of the following: EDR/XDR products, Windows kernel development, low-level security solution development, Windows exploitation, or vulnerability research.
Ability to work fully independently - own a research track from scoping to POC handoff with minimal supervision - while also collaborating effectively as part of a team.
Strong problem-solving skills with a passion for innovation, sharp attention to detail, and a bias for taking initiative on hard problems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769873
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
16/08/2026
Location: Tel Aviv-Yafo and Herzliya
Job Type: Full Time
We are currently hiring for multiple Security Research positions across our Microsoft Defender Research teams in Israel. By applying to this unified pipeline, you will be considered for a high-impact role (at either the Security Researcher II or Senior Security Researcher role) within one of our specialized groups, including Autonomous Attack Disruption, Cloud Workload Protection, Identity Research, Posture Research, or Security for AI.

We are looking for passionate, highly skilled security researchers who thrive on the challenge of breaking complex attacker kill-chains. Leveraging Microsofts dominant market position and the worlds most massive telemetry set, you will have a direct, tangible impact on the security of the global economy. We are looking for researchers who want to see their findings transformed into production-ready protection, where the ultimate goal is not just to detect threats, but to prevent and stop them in near real-time.

Responsibilities

Investigate real world advanced attacker TTPs to develop high-fidelity protection signals, and robust logic across complex kill-chains.

Design and implement innovative capabilities that autonomously prevent, detect and disrupt sophisticated threats in near real-time.

Infuse deep security expertise into the analysis of massive telemetry sets using big-data query languages, reasoning over data to identify novel malicious patterns, and drive evidence-based research decisions.

Partner with engineering and product teams to share research insights, validate protection concepts, and push ideas forward into production-ready protection at a global scale.

Contribute expert insights to a strategic feedback loop by analyzing real-world attack data and telemetry to refine protection coverage and accuracy.
Requirements:
Qualifications
4+ years of hands-on experience in security research or threat hunting, with a specialized focus on identity, cloud, or AI-based threat scenarios.
Deep understanding of the threat landscape, including modern attacker techniques and complex kill-chains, with a focus on platform internals across OS, Cloud Workloads and Identity platforms.
Experience hunting across diverse signal sources, effectively uncovering threats within on-premises, hybrid, and cloud environments.
Programming proficiency (e.g., Python, C#, or similar), with a proven ability to develop and ship production-ready protection logic. Demonstrated ability to work effectively in cross-functional teams, bridging the gap between deep research and scalable engineering.

Preferred Qualifications
B.Sc. or M.Sc. in Computer Science or Software Engineering OR/AND related field
Public track record of security research, such as technical blog posts, whitepapers, or presentations at major industry conferences.
Experience in offensive security or adversary simulation.
Deep understanding of AI-driven threats.
Proven ability to reason over large-scale datasets using big-data query languages, applying security expertise to identify novel patterns and make evidence-based decisions.
Familiarity with cloud environments (e.g., Azure, AWS) and the specific security challenges inherent to hybrid and multi-cloud infrastructures in large enterprise customers.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8782813
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher to join our research group as part of a growing team developing Autopilot, an innovative product for autonomous investigation and response.
As a core member of the team, you'll go beyond research: youll research, design, and develop investigation modules that allow Autopilot to autonomously detect, investigate, and respond to advanced threats at a massive scale.
Youll analyze everything from new malware behaviors to attacker techniques and process activity in enterprise-scale networks, using data collected from across millions of endpoints. Your work will span identifying attack patterns and uncovering statistical anomalies, as well as validating that the system responds effectively to real-world attacks and APT campaigns using production data.
Key Responsibilities
Research and implement new autonomous methods for investigating and responding to targeted attackers, using large-scale, diverse security datasets
Develop and design the graph-based algorithms that power autonomous investigation and decision-making capabilities
Design automated incident response by developing reusable logic that transforms raw security data and alerts into clear, actionable insights.
Leverage graph algorithms, AI techniques, and statistical methods to mimic and scale human security analyst workflows
Conduct deep, hands-on investigations into modern malware, APTs, and complex attack flows to inform detection and response logic
Stay up to date with attacker methodologies, tools, and techniques (TTPs), ensuring our product remains effective against evolving threats
Contribute to a collaborative, fast-paced research team, helping shape our research strategy, improve processes, and continuously enhance the product.
Requirements:
5+ years of experience in security or threat research, in which you conducted deep research with actionable insights and real-world impact.
Proven experience as part of an R&D/development team, along with strong proficiency in Python programming
Intimate knowledge and understanding of attack methods and techniques over endpoints and enterprise networks
Comfortable working with large-scale datasets to extract meaningful insights through advanced analysis
Strong sense of ownership and ability to independently drive projects from concept to execution
Critical thinker who thrives both independently and in collaborative team environments
Excellent verbal and written communication skills
A cybersecurity professional driven to solve the next generation of security challenges.
Preferred Qualifications
In-depth knowledge of the inner workings of operating systems (especially Windows)
Experience working with graph DB and algorithms
Experience in statistics, advanced data studies, or machine learning.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8779556
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
17/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Senior Threat Intelligence Researcher.
As a Senior Threat Intelligence Researcher, you will be responsible for tracking advanced adversaries and leveraging your deep technical expertise across attacker capabilities, infrastructure, and tactics. You will create and refine approaches to uncover and monitor active threat actors, as well as surface irregular and emerging behaviors in the broader threat landscape. The intelligence you generate will directly strengthen understanding of threat actors and will inform proactive hunting, detection engineering, and defensive decision-making.
The Responsibilities
Lead complex threat intelligence investigations through in-depth analysis of the global threat landscape, with a focus on advanced and state-linked actors.
Define and prioritize threat research focus areas (actors, campaigns, sectors, techniques) aligned with customers and product roadmap.
Deliver actionable cyber threat intelligence and design and execute hunting campaigns using analytics, automation, and advanced AI capabilities.
Curate and maintain structured knowledge on actors, campaigns, infrastructure, and TTPs in internal threat knowledge base.
Work closely with CyberAI researchers on the development of next-generation artificial cyber researchers and AI-driven analysis capabilities.
Requirements:
7+ years of experience in cyber security, with significant hands-on experience in threat intelligence research focused on APTs or state-linked actors.
Detailed understanding of existing APT groups historical activities, TTPs, motivations, and targeting patterns.
Strong investigative mindset, high level of intellectual curiosity, and comfort working with incomplete or ambiguous data.
Proficiency in infrastructure research, including WHOIS, passive DNS, SSL certificate analysis, BGP/ASN data, and platforms such as Censys and VirusTotal.
Strong written and verbal communication skills, with experience producing clear and concise threat intelligence reports or briefs.
Experience in software development and data analysis (e.g., Python, Jupyter, or similar) to support investigations and hypothesis testing.
Experience researching or defending government or critical infrastructure organizations- Advantage
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8785214
סגור
שירות זה פתוח ללקוחות VIP בלבד