דרושים » אבטחת מידע וסייבר » Staff Security Researcher- Detection AI Research

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.
As a Staff Security Researcher- Detection AI Research, you will be tasked with joining the Detection AI Research team, where security research meets machine learning. We use EDR telemetry from millions of endpoints to hunt for sophisticated, highly evasive attacks and to close the coverage gaps they expose, using ML models and LLM-based agents that we design, build, and run in production. As a Senior Security Researcher in our AI Detection research team, you will bring the attacker's-eye view: which techniques matter, how they look in endpoint data, and what separates a real intrusion from benign noise at scale. You will work alongside the data scientists who build our models, and your detections will reach real customers through Wayfinder analysts, threat hunters and detection engines.
Requirements:
Research attack techniques and TTPs and how they manifest in our EDR telemetry, and turn that research into detection hypotheses that hold across millions of endpoints.
Design, build, own, and maintain AI-powered detections end to end: turn a detection hypothesis into a production pipeline that analyzes fleet-wide EDR data, applies the team's ML models and LLMs to separate real intrusions from benign activity, and surfaces advanced attacks that analysts and threat hunters can triage and act on.
Drive the development of LLM-based agents that automate detection authoring: define what a correct, robust detection looks like, and expand our agent's detection coverage autonomously.
Analyze detection gaps and false positives together with MDR analysts, threat hunters and detection engineering teams, and feed the findings back into the detections.
Write high-quality production Python and own your code in production.
Stay current with APTs, attacker methodologies, and emerging TTPs.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835426
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for people who are relentlessly curious and committed to continuous learning. AI is reshaping every function across our business, and we enable every team member, regardless of role or level, to build fluency in AI tools and concepts. Those who thrive here actively seek out new solutions, experiment thoughtfully, and apply what they learn to drive better, faster, smarter outcomes.
Join the Detection AI Research team, where security research meets machine learning. We use EDR telemetry from millions of endpoints to hunt for sophisticated, highly evasive attacks and to close the coverage gaps they expose, using ML models and LLM-based agents that we design, build, and run in production. As a Senior Security Researcher in our AI Detection research team, you will bring the attacker's-eye view: which techniques matter, how they look in endpoint data, and what separates a real intrusion from benign noise at scale. You will work alongside the data scientists who build our models, and your detections will reach real customers through Wayfinder analysts, threat hunters and detection engines.
Requirements:
5+ years of experience in security research, threat hunting, or detection engineering, with a track record of detections deployed in production.
Deep understanding of the cybersecurity landscape, attack vectors, TTPs, and detection methods, especially on Windows.
In-depth knowledge of Windows internals and of how attacker behavior appears in EDR telemetry: process, file, registry, and network events.
Comfortable researching and hunting over very large telemetry datasets using SQL, KQL, Splunk, EDR query languages, or similar.
Python software development experience, including working with data and writing production-quality code.
Ability to drive and own research projects end to end; independent, critical thinker, team player.
Interest in applying machine learning and LLMs to detection, and fluency with modern AI tools in your daily work.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835476
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
5 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Principal / Sr. Principal Security Research - Advanced Cyber Research (Cortex)
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities:
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
Required Qualifications:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications:
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830285
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
24/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking an AI Security Researcher to join Dashs core research team. Youll investigate how AI agents - spanning coding agents, SaaS AI platforms, cloud, and endpoints - can be abused, and design detections that stop threats before they cause impact. Each platform is different, yet they share common risk patterns across prompts, tools, MCP servers, skills, hooks, identity, and data movement. Your mission is to master both: uncovering unique attack surfaces while building universal, session- and intent-aware defenses. This role combines deep platform research, responsible security testing, and close collaboration with engineering to translate findings into production runtime protection. You will help define the field of Agentic Security.
Responsibilities:
Research agentic threats: Prompt injection, tool/plugin/MCP abuse, skill and hook misuse, rogue autonomy, identity misuse, data leakage, adversarial AI, and protocol exploitation across coding agents and enterprise AI platforms.
Develop runtime detections: Design detections for multiple environments (coding agents, SaaS AI, cloud, endpoints), leveraging platform hooks, APIs, telemetry, and native guardrails where available.
Analyze platform complexities: Deep-dive into architectures, permissions, workflows, and agent capabilities (MCP servers, Skills, plugins, extensions) while extracting cross-platform risk patterns.
Build scalable detection logic: Prototype and refine heuristics, signatures, and intent-aware detectors that hold up at enterprise scale with low friction for builders.
Investigate monitoring and enforcement boundaries: Push what platforms allow for visibility and control - hooks, plugins, configuration surfaces, inventory signals, and policy enforcement points.
Prototype PoCs: Validate attack paths end to end, then turn findings into production-ready signatures, heuristics, detectors, and runtime policies.
Collaborate with engineering: Embed research into Dashs detection pipelines, session-aware runtime protection, and policy/governance modules.
Stay ahead of the field: Track adversarial AI and agent security research, continuously evolving Dashs detection and enforcement coverage.
Requirements:
BSc./MSc. in Computer Science, Security, or equivalent military/industry experence.
4+ years of security research (AppSec, malware, adversarial AI, or platform security). Experience with Agentic AI security research is an advantage.
Hands-on experience working with coding agents (e.g., Cursor, Claude Code) is a must, including practical use of agentic capabilities such as MCP servers, Skills, hooks, and similar agent tooling.
Experience with AI systems, agent frameworks, or protocol security (e.g., LangChain, MCP, A2A) is a strong plus.
Proficiency in Python for prototyping, research tooling, and detection logic; familiarity with TypeScript or Go is a plus for collaborating with engineering.
Strong grasp of cloud, SaaS, and endpoint security models, especially identity and data access.
Demonstrated ability to transform research into productized runtime detections.
Self-driven, curious, and eager to define the next frontier of enterprise security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8794796
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
10/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Lead Detection Engineer.This is an individual contributor role with full technical ownership. You'll set the direction for detection engineering: the standards, the tooling, the coverage strategy, and the automation that operationalizes it all. You'll work closely with SOC analysts and Platform Engineering to make detection a first-class engineering discipline.

Youre welcome to work in our offices in Tel Aviv, Israel

Your responsibilities will include:

Detection coverage strategy across endpoint, identity, cloud, and infrastructure - how it's measured, prioritized, and continuously improved.
Detection-as-Code pipeline: version control, testing, peer review, CI/CD, and deployment practices for all detection logic.
Architecture connecting detections to enrichment, triage, and automated response workflows.
Technical standards for how detections are designed, tested, documented, deployed, and retired.
Detection quality: fidelity metrics, false positive reduction, coverage measurement, and continuous validation loops.
Design and build high-fidelity behavioral detections across SIEM and EDR platforms.
Research emerging attacker techniques and translate threat intelligence into scalable, evasion-resistant detections.
Validate detections through threat simulations and continuous detection testing.
Partner with SOC analysts to close the feedback loop between detections and real investigations.
Define and track detection engineering metrics; communicate coverage posture and effectiveness to security leadership.
Make architectural decisions that scale as the team and organization grow.
Requirements:
Minimum 3 years in detection engineering, security operations, or a hybrid offensive/defensive role - with demonstrated depth, not just breadth.
Experience owning or leading detection engineering work as a senior technical contributor
Strong understanding of attacker tradecraft and adversary behavior.
Hands-on experience with at least one enterprise SIEM and EDR platform - Splunk, Microsoft Sentinel, CrowdStrike, or equivalent.
Cloud security depth across Azure, AWS, or GCP.
Strong query development skills in SPL, KQL, Sigma, or similar.
Strong scripting skills (python, powershell etc)
Solid engineering practices: Git, CI/CD, code review, Detection-as-Code workflows.
Experience using MITRE ATT&CK to design, validate, and measure detection coverage  
Ability to make and defend technical decisions and establish standards others adopt.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8818112
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher to join our research group as part of a growing team developing Autopilot, an innovative product for autonomous investigation and response.
As a core member of the team, you'll go beyond research: youll research, design, and develop investigation modules that allow Autopilot to autonomously detect, investigate, and respond to advanced threats at a massive scale.
Youll analyze everything from new malware behaviors to attacker techniques and process activity in enterprise-scale networks, using data collected from across millions of endpoints. Your work will span identifying attack patterns and uncovering statistical anomalies, as well as validating that the system responds effectively to real-world attacks and APT campaigns using production data.
Key Responsibilities
Research and implement new autonomous methods for investigating and responding to targeted attackers, using large-scale, diverse security datasets
Develop and design the graph-based algorithms that power autonomous investigation and decision-making capabilities
Design automated incident response by developing reusable logic that transforms raw security data and alerts into clear, actionable insights.
Leverage graph algorithms, AI techniques, and statistical methods to mimic and scale human security analyst workflows
Conduct deep, hands-on investigations into modern malware, APTs, and complex attack flows to inform detection and response logic
Stay up to date with attacker methodologies, tools, and techniques (TTPs), ensuring our product remains effective against evolving threats
Contribute to a collaborative, fast-paced research team, helping shape our research strategy, improve processes, and continuously enhance the product.
Requirements:
5+ years of experience in security or threat research, in which you conducted deep research with actionable insights and real-world impact.
Proven experience as part of an R&D/development team, along with strong proficiency in Python programming
Intimate knowledge and understanding of attack methods and techniques over endpoints and enterprise networks
Comfortable working with large-scale datasets to extract meaningful insights through advanced analysis
Strong sense of ownership and ability to independently drive projects from concept to execution
Critical thinker who thrives both independently and in collaborative team environments
Excellent verbal and written communication skills
A cybersecurity professional driven to solve the next generation of security challenges.
Preferred Qualifications
In-depth knowledge of the inner workings of operating systems (especially Windows)
Experience working with graph DB and algorithms
Experience in statistics, advanced data studies, or machine learning.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830016
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Enhance Palo Alto Networks Agentix:Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834333
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
30/08/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
we are looking for a Security Researcher.
As a Senior Security Researcher, you will bridge our core research initiatives at the intersection of proactive exposure management, agentic workflows, and scalable threat modeling. We are looking for an innovator who translates complex security data into product-driven features, taking full ownership from concept to production.
What You'll Do:
Drive Product-Led Research: Translate complex, real-world security challenges into actionable, product-driven research. Take full ownership of research projects end-to-end, from identifying the security gap to collaborating with engineering to ship platform features.
Drive Proactive Exposure Management: Leverage Automated Security Control Assessments (ASCA) alongside vulnerability evaluation and prioritization to holistically assess organizational risk. Deep dive into enterprise security tools (EDR, SIEM, Firewalls, IAM, etc.) to analyze configurations, map defensive capabilities, and continuously evaluate their effectiveness against real-world threats.
Build Security Tool Integrations: Drive the technical research and define the data models required to actually build deep, functional integrations into diverse security platforms, ensuring the accurate extraction of telemetry, policies, and configuration data.
Build AI & Agentic Workflows: Define, design, and implement the logic and knowledge base that feeds Nagomi's AI-powered agents, ensuring they deliver accurate, context-aware security guidance and automated risk assessments.
Map Attack Paths: Define realistic attack flows, identify toxic combinations of misconfigurations, and surface the security gaps that help customers prioritize the risks that actually matter.
Engage with Customers: Work directly with customers to help them understand their exposure, translate your research findings into meaningful posture improvements, and gather feedback to drive product innovation.
Cross-Functional Collaboration: Partner closely with product, engineering, and data teams to embed security insights into everything we build.
Requirements:
Experience: 5+ years of hands-on experience in cybersecurity research, exposure management, vulnerability analysis, or threat intelligence.
Product Mindset: Strong ability to tackle projects end-to-end, translating theoretical security research into tangible product features and automated detection logic.
Broad Security Knowledge: Deep understanding of enterprise security tools (EDR, NDR, SIEM, VM, etc.), network topology, and how security components interact to impact network posture.
AI/Agentic Expertise: Proven experience building or heavily shaping AI-powered systems and agentic workflows. You must be able to point to concrete examples where you have integrated LLMs or AI processes to solve complex technical problems.
Attacker's Perspective: Solid foundation in how adversaries think, move laterally, and exploit enterprise environments, paired with expertise in leading vulnerability prioritization standards (MITRE ATT&CK, CISA KEV, EPSS).
Communication: Strong communication skills with demonstrated experience working directly with customers, stakeholders, and cross-functional engineering teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8802063
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
1 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Security Researcher to join our Identity Threat Detection and Response team. In this role, you will research the evolving threat landscape and develop advanced detections to protect SAAS, Cloud, on-premises, and hybrid identities. You will focus on identifying and mitigating identity-related threats across networks, endpoints, and cloud environments, using statistical classification methods to build effective detection models and protecting customers at scale. Additionally, you will collaborate with cross-functional teams, validate detection concepts on real-world data, and continuously enhance detection capabilities to stay ahead of emerging threats.
Key Responsibilities:
Research innovative methods for detecting targeted attackers operating in endpoints, networks, cloud and SAAS environments.
Simulate real-world attacks in lab environments and conduct a deep analysis of the behavior.
Develop and refine statistics-based classification algorithms and techniques to create and improve detection models.
Research specific scenarios to enhance our model's capabilities.
Collaborate within a diverse research group, improving our research processes and leading us to be a better team creating a better product.
Stay informed on the latest APTs, attacker methodologies, and TTPs to ensure our models stay ahead of emerging threats.
Requirements:
Required Qualifications
At least 5 years experience with Active Directory security and identity related attacks.
In-depth knowledge of the inner-workings of operating systems.
In-depth Knowledge of network protocols, including but not limited to Kerberos, RPC, SMB, HTTP, SMTP, DNS, DHCP, etc.
In-depth knowledge of enterprise infrastructure, including Active Directory, FW, VPN, Security products, etc.
Ability to drive and own projects from start to finish.
Independent and a team player, a critical thinker.
Preferred Qualifications:
2+ years of experience with Entra ID (formerly Azure AD) or SAAS application.
At least 2 years of experience coding in Python.
Strong knowledge of SQL language.
Experience with red-teaming / pentesting of Entra ID.
Experience with machine learning, data analysis, cloud infrastructure, or security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8833983
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
26/08/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Threat Detection Researcher to join the Threat Research team and spread the power. In this role, you will further develop the Cloud-native Threat Detection domain.
Check out some of our recent research:
Detecting Malicious OAuth Applications
Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild
Discovers Cloud Email Abuse Campaign
Responsibilities
Drive the full lifecycle of security detections - from threat research and data analysis to building and shipping detection logic directly into production.
Design behavioral baselines for complex cloud environments using diverse signals, and develop high-fidelity detections based on those baselines.
Expand our detection engine with novel and high-impact telemetry sources, pushing the boundaries of what can be detected in modern cloud environments.
Conduct deep technical research into complex cloud services to uncover novel attack vectors.
Investigate real-world attacks across cloud environments, identity providers (IDPs), and infrastructure-as-a-service (IaaS) platforms.
Hunt and analyze emerging threats and active campaigns targeting the cloud ecosystem.
Requirements:
Minimum Qualifications
6+ years of hands-on experience in security or threat research, with a proven track record of driving investigations to actionable, real-world impact.
Experience conducting data-driven research and working with large-scale telemetry.
Proficiency in Python, Go, and query languages (e.g., KQL, SQL).
Strong self-motivation and ability to independently drive complex research projects from concept to delivery.
Preferred Qualifications
Familiarity with cloud infrastructure (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
Background in incident response, red teaming, or threat hunting.
Hands-on experience building and shipping security detections as part of a product.
Experience writing technical blogs, publishing security research, or speaking at industry conferences.
Leveraging AI/LLM-driven tools to enhance detection generation and telemetry analysis.
Clear and effective communicator with excellent collaboration skills, comfortable working across teams and disciplines.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8798641
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
4 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Security Researcher to join our research group as part of a growing team developing Autopilot, an innovative product for autonomous investigation and response.
As a core member of the team, you'll go beyond research: youll research, design, and develop investigation modules that allow Autopilot to autonomously detect, investigate, and respond to advanced threats at a massive scale.
Youll analyze everything from new malware behaviors to attacker techniques and process activity in enterprise-scale networks, using data collected from across millions of endpoints. Your work will span identifying attack patterns and uncovering statistical anomalies, as well as validating that the system responds effectively to real-world attacks and APT campaigns using production data.
Key Responsibilities:
Research and implement new autonomous methods for investigating and responding to targeted attackers, using large-scale, diverse security datasets
Develop and design the graph-based algorithms that power autonomous investigation and decision-making capabilities
Design automated incident response by developing reusable logic that transforms raw security data and alerts into clear, actionable insights.
Leverage graph algorithms, AI techniques, and statistical methods to mimic and scale human security analyst workflows
Conduct deep, hands-on investigations into modern malware, APTs, and complex attack flows to inform detection and response logic
Stay up to date with attacker methodologies, tools, and techniques (TTPs), ensuring our product remains effective against evolving threats
Contribute to a collaborative, fast-paced research team, helping shape our research strategy, improve processes, and continuously enhance the product
Requirements:
Required Qualifications:
5+ years of experience in security or threat research, in which you conducted deep research with actionable insights and real-world impact.
Proven experience as part of an R&D/development team, along with strong proficiency in Python programming
Intimate knowledge and understanding of attack methods and techniques over endpoints and enterprise networks
Comfortable working with large-scale datasets to extract meaningful insights through advanced analysis
Strong sense of ownership and ability to independently drive projects from concept to execution
Critical thinker who thrives both independently and in collaborative team environments
Excellent verbal and written communication skills
A cybersecurity professional driven to solve the next generation of security challenges.
Preferred Qualifications:
In-depth knowledge of the inner workings of operating systems (especially Windows)
Experience working with graph DB and algorithms
Experience in statistics, advanced data studies, or machine learning.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8831013
סגור
שירות זה פתוח ללקוחות VIP בלבד