דרושים » אבטחת מידע וסייבר » Senior Security Researcher

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher who thrives on both sides of the fence. You will develop offensive tradecraft-discovering new attack vectors and writing exploits-then use that perspective to engineer robust, product-level mitigations. If youre energized by finding a novel browser attack on Monday and shipping the defense for it by Friday, this role is for you.

Key Responsibilities

Offensive Research: Discover new attack vectors, abuse patterns, and security gaps in browsers, web applications, OS internals, and enterprise workflows.
Defensive Engineering: Design and implement detections, mitigations, and security policies informed by your offensive findings; close the loop from attack to protection.
Vulnerability & Malware Analysis: Perform reverse engineering on malware, exploits, and obfuscated code across Windows, macOS, and browser environments.
Web & Browser Security: Research techniques ranging from classic vulnerabilities (XSS, SSRF) to browser-specific primitives (extension abuse, DOM manipulation, same-origin bypasses).
Supply-Chain Security: Investigate threats in software supply chains, including browser extension marketplaces and package registries.
Threat Intelligence: Correlate signals across multiple sources to identify malicious infrastructure and adversary TTPs.
Public Impact: Write technical blog posts, publish research, and represent at major security conferences (Black Hat, DEF CON, etc.).
Requirements:
5+ years of experience in at least one of the following: security research, vulnerability research, malware analysis, threat intelligence, or detection engineering
Offensive security mindset with the ability to flip to the defensive side - finding attacks and building mitigations
Strong analytical skills - comfortable digging into unfamiliar code, protocols, or systems and figuring out how they break
Familiarity with operating system internals (Windows and/or macOS)
Hands-on experience with reverse engineering or dynamic/static analysis tools
Ability to write code for automation, tooling, and proof-of-concepts
Strong written and verbal communication - ability to write compelling research and present at conferences
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769401
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Security Researcher to join our core R&D team and help build the next generation of cloud runtime protection.
In this role, you'll research vulnerabilities, attack techniques, and emerging threats, turning your findings into real product capabilities through clean, efficient code. You'll work on low-level systems, offensive security research, and help develop the technologies that protect enterprise cloud environments.
If you're passionate about building security products that make a real impact, we'd love to hear from you!

Responsibilities
Research emerging attack techniques, vulnerabilities, and adversary behaviors.
Design and develop new security capabilities to identify sophisticated threats.
Perform reverse engineering and in-depth analysis of malware, exploits, and attack techniques.
Collaborate closely with Product and Engineering teams to translate research into product capabilities.
Build research tools, prototypes, and automation to support security investigations.
Research emerging threats and translate relevant findings into new product capabilities.
Improve detection quality by analyzing false positives, false negatives, and attacker behavior.
Contribute to technical discussions, knowledge sharing, and security best practices across the company.
Requirements:
5+ years of experience in security research, reverse engineering, or vulnerability analysis.
Proficiency in writing secure, efficient code in Python, C/C++, Go, or Rust.
Strong understanding of operating system internals (Linux, Windows) and low-level programming.
Experience analyzing attack techniques.
Experience developing detection logic or other security capabilities is an advantage.
Experience with cloud environments, containers, or Kubernetes is an advantage.
Familiarity with behavioral analytics, anomaly detection, or signature-based detection techniques is an advantage.
Strong analytical and problem-solving skills.
Excellent communication skills and the ability to explain complex technical concepts.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768212
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Principal/Senior Security Researcher to lead proactive research into emerging abuse patterns across agentic and modern endpoint environments. This includes browser extensions, SaaS- and web-delivered code, autonomous agents, MCPs and related tooling, and other forms of non-binary software that do not fit neatly into a traditional malware-focused model.
In this role, you will define and drive independent research initiatives rather than simply respond to predefined queues. You will conduct deep technical investigations, including reverse engineering, telemetry analysis, controlled experimentation, and data-driven validation, and translate your findings into actionable outcomes for the product. These may include detection concepts with clear success criteria, recommendations for new telemetry or platform behavior, and concise technical narratives for engineering, product, executive, or customer-facing audiences.
You will act as a senior research partner to engineering and product leadership, helping shape priorities around what to instrument, what to build, what to retire, and how to reason about ambiguous signals in production environments. The role requires strong technical judgment, strategic thinking, and the ability to turn complex research into evidence-backed product impact.
Key Responsibilities
Define and execute proactive research programs: novel attack surfaces (e.g., browser extensions, SaaS-delivered code, autonomous agents, MCP/tooling ecosystems), long-horizon threats, and systemic gaps in visibility or detection.
Perform deep technical analysis beyond routine triage: reverse engineering, behavioral modeling, data-driven hypothesis testing, and rigorous validation of findings at scale.
Set direction for how research translates into product and detection: prioritization frameworks, threat models, evaluation criteria, and standards of evidence for shipping high-impact changes.
Partner with senior engineering and product stakeholders to shape roadmap, telemetry, and architecture informed by research; influence design tradeoffs before issues appear in the field.
Lead complex, ambiguous investigations end-to-end and synthesize conclusions for executive and customer-facing audiences when stakes are high.
Represent the team through high-quality technical artifacts (e.g., in-depth publications, conference-quality work, or equivalent internal briefings) that establish external and internal credibility.
Requirements:
At least 4-5 years in cybersecurity with a track record of principal-level ownership in security research, threat research, threat intelligence, detection engineering, incident response, or a closely related discipline: self-directed programs, technical leadership on hard problems, and sustained impact on product or operations.
Demonstrated depth in offensive tradecraft and how it manifests in modern endpoint, SaaS/browser, or adjacent telemetry, not limited to commodity malware workflows.
Strong hands-on technical skills: scripting for analysis (e.g., Python), SQL, investigative query languages analysis, and low-level inspection of behaviors and artifacts appropriate to principal-level research.
Proven ability to initiate research from weak signals or open questions, not only execute on predefined queues; comfort operating with incomplete data and tightening rigor over time.
Excellent written and verbal communication; ability to persuade cross-functional partners and explain strategic tradeoffs among threat coverage and detection quality, false positives, analyst and engineering workload, and system performance at scale.
Experience collaborating with senior engineering and product leaders to land complex changes; judgment on when to ship, when to instrument further, and when to stop a line of inquiry.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8718624
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/06/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Principal Cloud Security Researcher to serve as a senior technical leader within our Research team. This is a high-impact individual contributor role -- you won't manage people, but you'll shape the direction of our entire research function, mentor researchers, and act as a force multiplier across the organization.
You'll be the person who takes a vague threat signal and turns it into a detection strategy, a published finding, or a product capability. You'll operate as a trusted deputy to the research team lead, owning the most complex and ambiguous research challenges while raising the technical bar for the team.
What You'll Do
Drive Groundbreaking Research
Own and drive our most critical research initiatives end-to-end - from initial threat hypothesis through detection logic, product integration, and external publication.
Set the technical direction for cloud threat research across AWS, Azure, and GCP, identifying emerging attack surfaces and novel techniques before they become mainstream threats.
Investigate real-world cloud and SaaS security incidents, dissecting attacker tradecraft and extracting insights that evolve our detection capabilities.
Pioneer new forensic investigation techniques and detection methodologies for cloud-native and SaaS environments - pushing the state of the art, not just following it.
Be a Voice in the Community

Represent our company as a thought leader through high-quality research publications, conference presentations (BlackHat, DEF CON, RSA, fwd:cloudsec, and similar venues), and open-source contributions.
Build and maintain our reputation as a research-driven company that advances the field - not just a vendor with a blog.
Engage with the broader security research community, fostering relationships and collaborative knowledge-sharing.
Shape the Product

Bridge research and product - translate threat findings into actionable product requirements, working closely with engineering and product teams to ensure our CDR platform stays ahead of evolving threats.
Design and develop advanced detection algorithms that directly feed into our platform, closing the gap between research insight and customer protection.
Elevate the Team
Act as the team's go-to technical authority. When researchers hit a wall on complex cloud attack chains, IAM edge cases, or detection gaps - you're who they turn to.
Mentor and grow other researchers through research reviews, pair investigations, code reviews, and by setting quality standards and methodology best practices.
Influence technical decisions org-wide - contributing to architecture, tooling, and strategic research priorities.
Step in as the research team lead's deputy when needed - driving prioritization, representing research cross-functionally, and ensuring continuity.
Requirements:
8+ years in security research, threat research, or closely related fields (offensive security, detection engineering, incident response, cloud security engineering). Fewer years are fine if your depth and track record are exceptional.
Deep multi-cloud expertise - strong hands-on experience across at least two of the major cloud providers (AWS, Azure, GCP), with working knowledge of the third. You understand the IAM models, logging pipelines, APIs, and attack surfaces that matter in each.
A track record of original research - you've published meaningful technical findings through blog posts, conference talks, open-source tools, or vulnerability discoveries that moved the needle. We want someone who doesn't just consume research - you produce it.
Strong adversarial mindset and critical thinking - you think like an attacker targeting cloud infrastructure, SaaS platforms, identity systems, and Kubernetes. You can model threat scenarios, map out attack paths, and poke holes in defenses.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8712545
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior / Principal Security Researcher to join our high-caliber Security ML Team. Our team solves complex security challenges using disruptive technologies, AI/ML algorithms, and massive datasets to design and develop groundbreaking security solutions that transition directly from research into production-grade protection.
In this role, you will serve as the core security domain expert within a multidisciplinary team, providing essential security-side expertise to assist in the development of ML models, deeplearning models, and Small Language Models (SLMs). By translating complex malware behaviors and static file attributes into actionable logic, your research will directly shape the algorithms that protect millions of endpoints worldwide. If you are looking to autonomously drive high-impact research initiatives from inception to production and use data-informed critical thinking to influence advanced security modeling, we want to hear from you.
Key Responsibilities
The Bridge to the AI Ecosystem: Serve as the core security domain expert within a multidisciplinary team, translating complex malware behaviors and static file attributes into actionable features, labels, or heuristics-fueling AI algorithms and automated, data-driven security logic.
Telemetry & Sensor Optimization:Analyze raw endpoint telemetry (such as memory buffers, hook outputs, and IPC artifacts) to evaluate algorithm effectiveness and work with AI researchers to tweak or implement new models..
Deconstruct File Behavior: Look past the "black box" of machine learning by digging into executable formats (PE, ELF, Mach-O) and scripts to identify malicious behavior(e.g., packing, anomalous imports, obfuscation).
Drive Intelligent Protections:Take a security hypothesis, validate it via data analysis, and build Python-based proof-of-concepts that scale into production-grade detections-spanning machine learning classifiers to AI-informed automated rule generation.
Shape the Pipeline: Influence data pipeline strategies and model design by ensuring our datasets and automated logic accurately capture the ground truth of modern threat landscapes.
Requirements:
OS Internals Generalist:At least 3 years of experience in endpoint security research or offensive/defensive OS internals, with a strong conceptual grasp of Windows, Linux, or macOS subsystems (deep understanding of at least one).
Malware Analysis & Reverse Engineering:Practical experience with both dynamic and static analysis of malware, utilizing core reverse engineering concepts to parse file structures, unpack binaries, or understand execution flow.
System Diagnostics & Tracing: Hands-on experience utilizing low-level monitoring and tracing tools to dissect active system behavior (e.g., Sysinternals suite, strace, ptrace, lsof, netstat, ).
Malware Execution Mechanics:Solid understanding of common malware methodologies (MITRE ATT&CK), process injection, API hooking, and evasion techniques at the operating system layer.
Data-Informed Critical Thinking:Strong investigative skills using analytics and data interpretation to separate true security signals from normal OS noise.
Proficient Python Coding:Strong, hands-on Python skills for data manipulation, file parsing, and rapid prototyping.
Collaborative Communication:Excellent communication skills with the ability to explain low-level technical research results clearly to non-security disciplines (Data Scientists, MLOps, Product Managers).
End-to-End Project Ownership:Proven ability to autonomously drive complex research initiatives from inception to production, balancing independent deep-dives with cross-functional teamwork.
Preferred Qualifications
Native Code Comprehension: Proficiency in C / C++ / Rust (specifically for reading/interpreting agent code, hook structures, and raw memory buffers).
Data Scale: Experience with big data platforms (e.g., GCP), SQL, or related query languages.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8770070
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Product Security Researcher , you will dive deep into the security landscape of modern browsers, operating systems, and enterprise applications to discover novel vulnerabilities, evaluate real-world threat scenarios, and help shape our security posture through innovation and hands-on research. You will be instrumental in driving advanced security initiatives that help maintain position at the cutting edge of secure enterprise computing.

Key Responsibilities:

Vulnerability Research: Identify and analyze vulnerabilities in browser components, system integrations, and third-party libraries relevant to the Enterprise Browser.
Security Testing & Tooling: Develop custom tooling and automation for security testing, fuzzing, and vulnerability detection tailored to our product stack.
Threat Modeling: Collaborate with developers, architects, and the Product Security Lead to assess threat scenarios and attack surfaces for new features and integrations.
Exploit Prototyping: Build proof-of-concepts to validate the impact and exploitability of discovered security issues.
Collaboration & Knowledge Sharing: Support development teams in secure coding practices, and contribute to internal knowledge bases and playbooks.
Security Research Enablement: Stay ahead of the curve by tracking current exploits, security trends, and techniques; attend or present at security conferences and engage with the broader security community.
Requirements:
Strong understanding of browser internals, OS security mechanisms, or application-layer security.
Proficiency in one or more programming/scripting languages (e.g., Python, JavaScript, C/C++, Go).
Experience in vulnerability research, bug hunting, reverse engineering, or exploit development.
Familiarity with common vulnerability classes (e.g. RCE, memory corruption, sandbox escapes).
Curiosity-driven mindset with a passion for breaking things and understanding how they work.
Experience with fuzzing tools, debuggers, or reverse engineering frameworks is a strong plus.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769468
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
This is a rare opportunity to work at the intersection of offensive security and AI - and to have your expertise shape a platform used at enterprise scale. As an Security Researcher, you will push the boundaries of what autonomous agents can achieve.

Your goal is to conduct cutting-edge research into novel attack vectors and vulnerabilities, using those insights to both sharpen our AI and lead the industry conversation on AI-driven security. Youll work alongside a tight-knit team building excellent software in the security space.

Responsibilites
Original Research: Develop new attack strategies and offensive testing techniques for web, network and AI targets, and translate real-world knowledge into improvements for the AI agent
Thought Leadership: Produce high-quality technical content, including research papers, stage demonstrations, or technical blog posts that showcase unique capabilities and security philosophy.
Public Advocacy: Represent research at major security conferences and industry events.
AI Enhancement: Part of the team improving the AI hacker to make it more dangerous and creative.
Collaboration: Work closely with AI and engineering teams to continuously improve agent capabilities and ensure research findings are integrated into the product.
Requirements:
Technical Expertise: Deep expertise in Web and API security, including authentication, business logic, and injection flaws.
Publication Record: Proven experience publishing technical security research (e.g., personal or company blogs, whitepapers) or presenting at recognized security conferences (e.g., Black Hat, DEF CON, OWASP).
Coding Proficiency: Experience in writing code to develop tooling for penetration tests and security research.
Startup Mindset: Comfortable working in a fast-paced environment with a high degree of ownership and curiosity.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768224
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
2 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Product Security Low-Level Researcher , you will focus on deep technical research across operating systems, kernels, drivers, and low-level system components that underpin modern enterprise computing. You will investigate complex attack surfaces, uncover subtle and high-impact vulnerabilities, and translate cutting-edge research into practical security improvements for platform. This role emphasizes deep systems knowledge, hands-on experimentation, and original research that pushes beyond application-layer security.



Key Responsibilities:

Low-Level Vulnerability Research: Research and discover vulnerabilities in operating system kernels, drivers, system services, virtualization layers, and low-level system components relevant to execution and trust boundaries.
Kernel & OS Internals Analysis: Analyze kernel subsystems (memory management, scheduling, IPC, filesystems, networking) and OS security primitives to identify design flaws, logic bugs, and exploitation opportunities.
Exploit Development & Validation: Develop proof-of-concept exploits for kernel- and driver-level issues to validate impact, assess exploitability, and inform mitigation strategies.
Security Testing & Tooling: Design and build custom tooling for kernel fuzzing, syscall/interface testing, driver analysis, and low-level instrumentation across supported platforms.
Cryptography & Trust Mechanisms: Assess the implementation and usage of cryptographic primitives, key management, secure boot, attestation, and hardware-backed security features, identifying weaknesses or misuse patterns.
Threat Modeling at the System Level: Collaborate with architects, platform engineers, and the Product Security Lead to model threats across privilege boundaries, boot chains, isolation mechanisms, and OS-level integrations.
Research Enablement & Knowledge Sharing: Track emerging exploitation techniques, kernel research, and advanced persistent threat tradecraft; contribute findings to internal playbooks, design guidance, and long-term security strategy.
Requirements:
Strong understanding of operating system internals, kernel architectures, or driver development (Linux, Windows, macOS, or mobile OSes).
Hands-on experience with low-level programming in C/C++, Rust, or assembly; scripting experience (e.g., Python) for tooling and automation.
Background in kernel vulnerability research, driver auditing, exploit development, or advanced reverse engineering.
Deep familiarity with low-level vulnerability classes (e.g., UAF, race conditions, logic bugs, privilege escalation, sandbox and isolation bypasses).
Experience with kernel debuggers, fuzzers, emulation, or virtualization-based analysis frameworks.
Strong curiosity and research mindset, with a passion for understanding systems at their lowest layers and breaking assumptions they rely on.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8769473
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
As a Security Researcher , you will play a key role in shaping the future of modern runtime and AI security. You will investigate how real-world attacks unfold across applications and cloud environments, and turn those insights into innovative, production-grade security capabilities.

This role is ideal for a deeply technical researcher who is driven to understand attacks at their core - not just identify surface-level indicators. You will research exploitation chains, runtime behavior, attacker techniques, and emerging AI attack patterns, then apply that knowledge to build protections that are precise, resilient, scalable, and grounded in how attacks actually work.

Specifically, you will:

Research real-world attack techniques targeting modern applications, cloud-native environments, and AI-driven systems.
Design, develop, validate, and deploy detection algorithms based on technical research, large-scale runtime telemetry, threat intelligence, and exploit PoCs.
Shape the strategy for detection data collection by defining the required telemetry, collection points, and data quality standards needed to support effective protection.
Drive research efforts end-to-end, from initial exploration and technical investigation to production-grade protection capabilities for active threats.
Work closely with engineering and product teams to turn research into practical security capabilities.
Requirements:
5+ years of experience in security research, vulnerability research, detection engineering, threat detection engineer, or a related technical security role.
Strong understanding of modern application attack techniques, including the ability to analyze vulnerabilities and exploitation flows.
Deep expertise in Linux internals.
High degree of ownership and ability to independently navigate ambiguous technical problem spaces and turn them into structured research plans and actionable outcomes.
Experience designing and conducting hands-on technical research, including investigations, experiments, and PoC development.
Strong programming skills for code analysis, research tooling, and building proof-of-concepts and vulnerable test applications.
Strong communication and teamwork skills, with a collaborative approach to problem-solving across teams.
Data analysis skills and hands-on experience working with databases.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8768186
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Windows Malware Security Researcher for our Tel Aviv R&D center. You will be part of a team that is responsible for researching the most recent and advanced cybersecurity threats, as well as designing, developing, and improving Anti-Malware capabilities to protect against them. The position includes researching OS internals, picking apart malware samples, delving into the internals of Windows kernel and user-mode code, and finding ways to mitigate new attack vectors.
The proposed role will be part of the research team of the Cortex XDR endpoint protection solution.
We are seeking a highly skilled and experienced Windows Malware Security Researcher to join our growing Windows malware research team of the Cortex XDR agent group. In this role, you will play a key part in enhancing our Endpoint Detection and Response (EDR) agent by prototyping new protection components and techniques and developing advanced malware prevention strategies. You will work on identifying, analyzing, and mitigating sophisticated threats, working closely with various teams to drive innovation. A deep understanding of the Windows operating system is essential.
Key Responsibilities
Playing a pivotal role in shaping the future of our security solutions.
Enhance the effectiveness of our EDR product by designing cutting-edge protection components and developing sophisticated prevention rules.
Researching OS internals and how Windows works under the hood - leveraging this knowledge to develop and improve our anti-malware mechanisms and capabilities.
Research and lead novel protection ideas to production-grade level, serving as the feature subject matter expert.
Research new malware and APT mitigation techniques and develop corresponding capabilities (POC level), or improve existing mitigation capabilities.
Respond to malware-based security events at clients' networks.
Stay up to date with current malware and APT techniques.
Provide feedback to the product management team on new feature requests and product enhancements from our customer base.
Find new malware techniques and APT attacks, including analysis of caught-in-the-wild malware.
Operate independently end-to-end - from initial threat idea, through research and POC, to handing off a production-ready design to core agent engineering with clear specs, test cases, and edge-case analysis.
Be a team player who lifts others up - happy to jump in when a teammate is stuck on a tricky Windows internals or RE question, share what you've figured out, and generally make the people around you better.
Requirements:
At least 5 years of experience in the cyber security research domain.
In-depth knowledge of Windows operating system internals (both user-mode and kernel-mode) - at least 3 years of hands-on research experience.
In-depth knowledge of C/C++, with hands-on development experience using C/C++ (Win32 API) in a Windows environment.
Experience with anti-RE techniques such as anti-debug, anti-VM, unpacking, etc.
Strong knowledge of the cyber threat landscape, including APTs (Advanced Persistent Threats) and modern malware techniques.
Strong dynamic analysis skills with hands-on experience using debuggers such as WinDbg, x64dbg, OllyDbg, or similar.
Strong static analysis skills with hands-on experience using disassemblers such as IDA Pro and Ghidra.
Proficiency in Python.
Knowledge of networking and internet protocols.
A major advantage to candidates with at least 2 years of experience in at least one of the following: EDR/XDR products, Windows kernel development, low-level security solution development, Windows exploitation, or vulnerability research.
Ability to work fully independently - own a research track from scoping to POC handoff with minimal supervision - while also collaborating effectively as part of a team.
Strong problem-solving skills with a passion for innovation, sharp attention to detail, and a bias for taking initiative on hard problems.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8714873
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a Senior/Principal Linux Security Researcher for our Tel Aviv R&D center to advance our Cortex-XDR Agent for the Linux platform, which provides runtime protection to servers and cloud workloads. In this role, you will be a key member of a team responsible for researching, developing, and improving our Anti-Exploit and Anti-Malware capabilities. Your work will involve deep exploration of OS internals, exploits, malware, delving into cloud security, and finding ways to mitigate new attack vectors.
Key Responsibilities
Research, develop, and improve state-of-the-art endpoint security solutions focused on comprehensive prevention. This includes broad defense against attack classes like malware and exploits, spanning from low-level mitigations to application-level security
Research Linux OS internals, kernel, application codebases, vulnerabilities, malware and exploits
Respond to security events coming from customers, in the context of malware and exploitation prevention.
Requirements:
In-depth knowledge of some operating system internals is a must - Knowledge of Linux is an advantage
Development experience in C/C++/Rust is a must, 3 years at least
Experience in security research - 3 years at least
Experience in reverse engineering - both static and dynamic, is a must (x86/64 architectures), 3 years at least
Development knowledge in some scripting languages is a must - Experience with Python is an advantage
Ability to work independently and as a part of a team
Strong attention to detail
Ability to take initiative
Preferred Qualifications
Exploitation experience is an advantage (either application-level security or memory corruption)
Familiarity with Kubernetes, containers, and cloud workload security.
Experience leading endpoint security projects across organizational boundaries and teams
Academic experience
Published security research, conference presentations, or CVEs.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8713875
סגור
שירות זה פתוח ללקוחות VIP בלבד