דרושים » אבטחת מידע וסייבר » Threat Detection Researcher (Windows/Linux/MacOS)

משרות על המפה
 
בדיקת קורות חיים
VIP
הפוך ללקוח VIP
רגע, משהו חסר!
נשאר לך להשלים רק עוד פרט אחד:
 
שירות זה פתוח ללקוחות VIP בלבד
AllJObs VIP
כל החברות >
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 4 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a top-notch Threat Detection Researcher to join our team and spread the power of our company. In this role, you will further develop the company Runtime Sensor as part of our threat research team.
Responsibilities
Develop detections and tools to protect customers from cloud threats.
Investigate attacks on cloud environments and malware targeting cloud and AI workloads.
Hunt and analyze real-world attacks and emerging cloud and AI threats.
Collaborate closely with the R&D team to transform research insights into product features.
Work with customers in response to requests related to suspicious activity or potential incidents.
Create best practices and security policies based on research findings.
Deliver external-facing content (blog posts and talks at security conferences) based on security insights and novel research.
Requirements:
6+ years of experience in security or threat research in which you conducted deep research with actionable conclusions and impacts.
Intimate knowledge of OS internals (Windows/Linux/MacOS) and networking.
Familiarity with cloud services, Kubernetes, cloud environment architecture, and the major cloud providers (AWS, GCP, Azure).
Proficiency in Python for tool development and automation.
Experience delivering security detections in customer-facing product(s).
The ability to learn independently, to be self-driven and goal-oriented.
Preferred Qualifications
Knowledge of Go, Rust, or C/C++.
Hands-on experience with malware analysis/reverse engineering/vulnerability research.
Familiarity with notable threat actors and threat intelligence analysis.
IR/red-team/threat-hunting experience.
Experience leveraging AI to supercharge research and detection workflows.
Deep knowledge of modern threat classes (Supply Chain, CI/CD, or threats targeting AI infrastructure and agentic frameworks).
Excellent communication and teamwork skills.
This position is open to all candidates.
 
Hide
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8847746
סגור
שירות זה פתוח ללקוחות VIP בלבד
משרות דומות שיכולות לעניין אותך
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 4 שעות
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Threat Detection Researcher to join the Threat Research team and spread the power of our company. In this role, you will further develop the Cloud-native Threat Detection domain.
Check out some of our recent research:
Detecting Malicious OAuth Applications
Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild
our company Discovers Cloud Email Abuse Campaign
Responsibilities
Drive the full lifecycle of security detections - from threat research and data analysis to building and shipping detection logic directly into production.
Design behavioral baselines for complex cloud environments using diverse signals, and develop high-fidelity detections based on those baselines.
Expand our company's detection engine with novel and high-impact telemetry sources, pushing the boundaries of what can be detected in modern cloud environments.
Conduct deep technical research into complex cloud services to uncover novel attack vectors.
Investigate real-world attacks across cloud environments, identity providers (IDPs), and infrastructure-as-a-service (IaaS) platforms.
Hunt and analyze emerging threats and active campaigns targeting the cloud ecosystem.
Requirements:
6+ years of hands-on experience in security or threat research, with a proven track record of driving investigations to actionable, real-world impact.
Experience conducting data-driven research and working with large-scale telemetry.
Proficiency in Python, Go, and query languages (e.g., KQL, SQL).
Strong self-motivation and ability to independently drive complex research projects from concept to delivery.
Preferred Qualifications
Familiarity with cloud infrastructure (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
Background in incident response, red teaming, or threat hunting.
Hands-on experience building and shipping security detections as part of a product.
Experience writing technical blogs, publishing security research, or speaking at industry conferences.
Leveraging AI/LLM-driven tools to enhance detection generation and telemetry analysis.
Clear and effective communicator with excellent collaboration skills, comfortable working across teams and disciplines.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8847750
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for an experienced Threat Researcher to join our Solution Architect team. This role combines deep cybersecurity research with hands-on work in customer and PoC environments, helping uncover real-world attack scenarios, demonstrate security value, and translate field insights into product capabilities.
Responsibilities
Analyze network devices, configurations, security products, and customer environments to identify security risks and attack opportunities.
Research and develop methods to discover network topology, device relationships, attack paths, and lateral movement opportunities.
Conduct security assessments to identify weaknesses and recommend effective detection and mitigation strategies.
Research and analyze emerging cyber threats, attack techniques, and adversary behaviors.
Drive hands-on threat research in customer and PoC environments, simulating and validating real-world attack scenarios through our Securitys platform.
Develop tools, scripts, and frameworks to automate security and network analysis.
Translate research findings into actionable customer insights, detections, and product capabilities.
Collaborate with Solution Architects, R&D and Product teams to integrate new research capabilities into the platform and deliver value to customers.
Act as a cybersecurity subject matter expert for our customers.
Generate and present a comprehensive and professional report of findings from investigations.
Requirements:
5+ years of hands-on cybersecurity experience, including experience in Incident Response, Threat Hunting or similar roles.
Deep understanding of advanced threats, attack vectors, adversary techniques, lateral movement, and the attack lifecycle.
Strong networking knowledge, including TCP/IP, routing, switching, firewalls, network topologies, and network security controls.
Strong understanding of security across Identity/IAM, Windows/Linux environments, cloud, virtualization, attack surface management, and attack-path analysis.
Hands-on experience with SIEM, EDR/XDR, threat intelligence, vulnerability management, and enterprise security products.
Experience with host-based investigation and forensic analysis, including OS artifacts and security controls across Windows and Linux/Unix.
Proficiency in Python or another scripting language for research, automation, and data analysis.
Strong research and problem-solving skills, with the ability to quickly learn and investigate unfamiliar technologies.
Excellent communication and collaboration skills, with the ability to turn complex technical research into customer and product value.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8836124
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Senior/ Principal Security Researcher - Cloud & Kubernetes (Cortex)
Job Summary:
If you are an innovator at heart and passionate about redefining how organizations secure modern environments end-to-end, we're looking for you. This is an opportunity to join an exceptional group of researchers working on a startup-level product within the largest security company, helping revolutionize how organizations protect their Kubernetes and hybrid cloud environments.
Key Responsibilities:
Contribute to a team of talented security researchers focused on defending organizations as they transition from on-premises data centers to modern cloud and Kubernetes infrastructure.
Drive the execution of research initiatives to uncover novel techniques for detecting and responding to sophisticated attacks targeting hybrid and cloud-native environments.
Define and prioritize detection use cases, relevant datasets, and innovative analytic approaches combining runtime visibility and posture management across diverse platforms.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs to ensure our detection capabilities stay ahead of evolving threats in both legacy and cloud contexts.
Simulate real-world attacks and perform deep behavioral analysis to inform and validate detection content.
Collaborate across engineering, product management, and go-to-market teams to deliver impactful security solutions.
Share insights with the security community through blogs, conference talks, and publications.
Requirements:
Required Qualifications:
5+ years in security research with a proven track record of driving impactful projects.
Deep expertise in cloud-native security, with strong focus on Kubernetes, containers or major cloud providers (AWS, Azure, GCP, OCI) or Linux internal.
Experience developing or working with detection and response products, such as XDR, EDR, or cloud workload protection platforms.
Excellent communication skills, with the ability to articulate complex research findings and drive alignment across diverse teams.
Proficient in hands-on coding and scripting (e.g., Python).
Preferred Qualifications:
Experience working with large-scale data pipelines and analytics (e.g., GCP BigQuery, Dataflow).
Familiarity with Kubernetes threat modeling frameworks (e.g., MITRE ATT&CK for Containers).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830304
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
If you are an innovator at heart and passionate about redefining how organizations secure modern environments end-to-end, we're looking for you. This is an opportunity to join an exceptional group of researchers working on a startup-level product within the largest security company, helping revolutionize how organizations protect their Kubernetes and hybrid cloud environments.
Key Responsibilities
Contribute to a team of talented security researchers focused on defending organizations as they transition from on-premises data centers to modern cloud and Kubernetes infrastructure.
Drive the execution of research initiatives to uncover novel techniques for detecting and responding to sophisticated attacks targeting hybrid and cloud-native environments.
Define and prioritize detection use cases, relevant datasets, and innovative analytic approaches combining runtime visibility and posture management across diverse platforms.
Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs to ensure our detection capabilities stay ahead of evolving threats in both legacy and cloud contexts.
Simulate real-world attacks and perform deep behavioral analysis to inform and validate detection content.
Collaborate across engineering, product management, and go-to-market teams to deliver impactful security solutions.
Share insights with the security community through blogs, conference talks, and publications.
Requirements:
5+ years in security research with a proven track record of driving impactful projects.
Deep expertise in cloud-native security, with strong focus on Kubernetes, containers or major cloud providers (AWS, Azure, GCP, OCI) or Linux internal.
Experience developing or working with detection and response products, such as XDR, EDR, or cloud workload protection platforms.
Excellent communication skills, with the ability to articulate complex research findings and drive alignment across diverse teams.
Proficient in hands-on coding and scripting (e.g., Python).
Preferred Qualifications
Experience working with large-scale data pipelines and analytics (e.g., GCP BigQuery, Dataflow).
Familiarity with Kubernetes threat modeling frameworks (e.g., MITRE ATT&CK for Containers).
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834343
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
3 ימים
Location: Tel Aviv-Yafo
Job Type: Full Time
At our company, what you do matters. Every day, we protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.
Our prevention-first approach safeguards hybrid networks, cloud environments, digital workspaces, and AI systems, stopping attacks before they happen.
This is where innovation meets real-world impact. Youll help customers across industries operate with confidence in a rapidly changing digital world, working alongside smart, curious people who take ownership, challenge assumptions, and solve complex problems.
Were proud to be recognized by TIME, Newsweek, and Forbes for excellence and workplace culture.
What really sets our company apart is the opportunity to grow, contribute, and help companies navigate their AI transformation securely.
If youre excited to work at the forefront of AI-driven security on a global scale, this is the place to do it.
Key Responsibilities
We are looking for an experienced malware researcher to lead our Endpoint Research & Protection team , someone with a passion for investigating cyber threats across every stage of the infection chain and a desire to understand real-world attacks.
In this position, you will use your expertise in malware analysis, Windows internals, and threat hunting to analyze and create threat detections based on data from our company's various products.
Responsibilities
Lead a team of malware researchers
Respond to high-profile attacks, understand them, and create relevant protections
Release protections for our customers and monitor detections
Investigate our broad sensor data to find leads and interesting cases of targeted attacks and campaigns
Automate daily processes to increase the team's efficiency
Run deep investigations into our company products and lead enhancements in security and UX
Present your work in different forums, including to stakeholders and strategic customers and at security conferences
Publish marketing and technical blogs about the team's interesting findings.
Requirements:
Desired background
Bachelor of Science in Computer Engineering or Computer Science
2-3 years of experience as a team leader in a relevant malware analysis field
Strong understanding of Windows internals and malware analysis
Broad knowledge of past in-the-wild attacks and security trends
Experience analyzing cyber attacks from top to bottom
Ability to translate your findings into actionable detection signature recommendations
Knowledge of common hacking tools and techniques
Knowledge of advanced threat hunting methodologies
Experience in reverse engineering malware, both dynamic and static
Fluent English is required.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8840950
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
28/09/2026
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
We're looking for a Threat Security Researcher to join our Threats team at the intersection of security research, AI, and product. You'll own detection research across runtime, cloud, network, identity, code, while actively shaping how AI capabilities are applied to solve real security problems at scale.
Conduct deep technical research into modern cloud environments and AI systems and discover novel attack techniques.
Lead product initiatives in the threats domain from inception to production. Collaborate closely with product, backend, and GTM, translating research into product capabilities.
Define and create complex detection logic over our vast telemetry, with a focus on coverage that scales across customer environments.
Identify gaps in detection coverage and evaluate detection quality. ensuring security logic is reliable and impactful.
Stay up to date with the evolving threat landscape (threat intelligence, campaigns) and incorporate into our product
Contribute to PR presence - technical research content, talks, open-source tooling.
Requirements:
5+ years of experience in threat research, including threat hunting, incident response or detection engineering
Military background experience, university degree, or Ex-CNAPP
Curious, detail-oriented mindset with proven ability to self-learn complex topics and new mechanisms.
Hands-on skills with scripting languages (e.g., Python) as well as query languages (e.g., KQL
Ability to work independently and also across teams, in a dynamic, fast-moving, demanding environment
Strong written and verbal communication skills in English, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
Advantages:
Experience in AI Security Research
An AI-native mindset, you've built or applied AI-powered tooling in a security context
Experience conducting data-driven research and working with large-scale telemetry.
Experience in public-facing work, such as presenting at recognized industry conferences or authoring technical blog posts.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8835832
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
27/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Security Researcher to join our Identity Threat Detection and Response team. In this role, you will research the evolving threat landscape and develop advanced detections to protect SAAS, Cloud, on-premises, and hybrid identities. You will focus on identifying and mitigating identity-related threats across networks, endpoints, and cloud environments, using statistical classification methods to build effective detection models and protecting customers at scale. Additionally, you will collaborate with cross-functional teams, validate detection concepts on real-world data, and continuously enhance detection capabilities to stay ahead of emerging threats.
Key Responsibilities:
Research innovative methods for detecting targeted attackers operating in endpoints, networks, cloud and SAAS environments.
Simulate real-world attacks in lab environments and conduct a deep analysis of the behavior.
Develop and refine statistics-based classification algorithms and techniques to create and improve detection models.
Research specific scenarios to enhance our model's capabilities.
Collaborate within a diverse research group, improving our research processes and leading us to be a better team creating a better product.
Stay informed on the latest APTs, attacker methodologies, and TTPs to ensure our models stay ahead of emerging threats.
Requirements:
Required Qualifications
At least 5 years experience with Active Directory security and identity related attacks.
In-depth knowledge of the inner-workings of operating systems.
In-depth Knowledge of network protocols, including but not limited to Kerberos, RPC, SMB, HTTP, SMTP, DNS, DHCP, etc.
In-depth knowledge of enterprise infrastructure, including Active Directory, FW, VPN, Security products, etc.
Ability to drive and own projects from start to finish.
Independent and a team player, a critical thinker.
Preferred Qualifications:
2+ years of experience with Entra ID (formerly Azure AD) or SAAS application.
At least 2 years of experience coding in Python.
Strong knowledge of SQL language.
Experience with red-teaming / pentesting of Entra ID.
Experience with machine learning, data analysis, cloud infrastructure, or security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8833983
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
לפני 3 שעות
חברה חסויה
Location: Tel Aviv-Yafo
Job Type: Full Time
Were looking for a Pentest Product Associate to join our Product team and help expand the power of our company. In this pivotal role, you will be the primary operator of our cutting-edge AI-driven Dynamic Application Security Testing (DAST) agent while simultaneously innovating detection mechanisms for cloud-native technologies. You will bridge the gap between automated AI testing and cloud infrastructure, defining the "rules of engagement" for our agents to ensure they effectively simulate sophisticated attacks and accurately classify the modern attack surface.
Responsibilities
Develop advanced detection algorithms to classify cloud technologies while fine-tuning the attack policies that define how our agents identify and exploit vulnerabilities.
Analyze cloud services, APIs, and log payloads to review complex attack paths, reducing false positives and ensuring compliance with industry standards.
Stay at the forefront of novel attack vectors and emerging cloud/API threats, translating new techniques into executable behaviors for the company DAST engine.
Collaborate directly with Research, Backend, and R&D teams to turn operational insights into feature requests, positioning our company as the market leader in vulnerability management.
Requirements:
2 years of hands-on experience in AppSec or penetration testing, including proficiency with enterprise tools like Burp Suite, OWASP ZAP, or Acunetix.
Hands-on experience with Linux, Windows, Docker, Kubernetes, web protocols (HTTP/S, REST, GraphQL), and authentication mechanisms (OAuth, SAML).
Proficiency in scripting languages such as Python, Bash, or Go to automate security tasks and interact with codebases.
Solid knowledge of networking concepts, the OSI model, and cloud infrastructure (AWS, Azure, or GCP).
Preferred Qualifications
Knowledge of AI/ML and how LLMs or reinforcement learning agents operate within a cybersecurity context.
SaaS and cloud experience, with familiarity in AWS, Azure, or GCP environments and modern cloud-native architectures.
A red teaming background, with experience in simulated adversarial attacks and bypassing standard WAF or security controls.
An analytical mindset with the ability to diagnose complex logs and scans to distinguish between tool failures, configuration issues, and valid security findings.
Self-motivated with the ability to work collaboratively and communicate high-stakes security concepts effectively across teams.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8847769
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
23/09/2026
Location: Tel Aviv-Yafo
Job Type: Full Time
Required Principal / Sr. Principal Security Research - Advanced Cyber Research (Cortex)
We are seeking a visionary and highly technical Principal / Sr. Principal Security Researcher to join our security research team. In this role, you will be at the forefront of innovating automated defense systems to rapidly protect platform customers against advanced cyber threats at an unprecedented scale. This position offers a unique opportunity to blend deep traditional cybersecurity expertise - including OS internals, reverse engineering, and advanced detection engineering with cutting-edge AI technologies like LLMs, SLMs, and agentic workflows.
You will spearhead the creation of innovative prevention solutions, leveraging massive streams of agent telemetry to design AI-driven logic that neutralizes threats before they execute. As a key technical leader, you will partner closely with top-tier data scientists and product engineers to translate cutting-edge security research into production-grade capabilities, ensuring we stay ahead of the evolving threat landscape.
Key Responsibilities:
Develop Automated Defense Systems:Create, engineer, and deploy automated solutions for the prevention and detection of advanced cyber threats, analyzing complex data to rapidly protect platform customers at scale.
Innovate with AI:Partner closely with data scientists to leverage LLMs, SLMs & deeplearning techniques to fuel these advanced prevention solutions and automated defense capabilities.
Research, develop, and continuously improve the Agentix solution. Drive the development of next-generation security content by designing and implementing specialized AI agents to automate security operations and workflows.
Drive Security Innovations:Spearhead new research initiatives from the ground up. Act as the primary driver across key stakeholders, leading top-tier data scientists and engineers to ensure the successful delivery of enterprise-grade security capabilities.
Requirements:
Required Qualifications:
5+ years of hands-on experience in the cybersecurity research field.
Threat Research & OS Internals:Proven track record of applying deep cyber and analytical expertise to build robust security logic using endpoint telemetry. Supported by a profound understanding of Windows and Linux OS/kernel internals to engineer advanced defenses.
Reverse engineering experience:Demonstrated expertise in reverse engineering (e.g., IDA Pro, Ghidra) across multiple platforms to dissect malware and identify sophisticated attack vectors.
Programming & Native Code Comprehension:Strong proficiency in Python for data analysis and rapid prototyping, combined with the ability to comprehend native code (C, C++, or Rust) to effectively read and interpret agent code, low-level system interactions, and memory operations.
End-to-End Research Ownership:A scientific, data-driven approach to solving complex security challenges, with a proven track record of owning research initiatives from initial ideation through to the deployment of production-grade capabilities.
Communication & Mentorship:Excellent communication skills, with the ability to clearly articulate complex threat research to diverse audiences, mentor junior team members, and champion security initiatives across the organization.
Preferred Qualifications:
AI Agents & Frameworks:Hands-on experience developing and working with AI Agents and agentic workflows. Technical understanding of the architectural distinctions between an agent, a skill, and Model Context Protocol (MCP). Proven experience utilizing common agentic frameworks.
Data Scale & Telemetry Analysis:Proficiency in query languages (e.g., SQL) and big data platforms (e.g., GCP) to parse, manipulate, and query large-scale agent telemetry, extracting actionable security insights and uncovering threat patterns from massive datasets.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8830285
סגור
שירות זה פתוח ללקוחות VIP בלבד
סגור
דיווח על תוכן לא הולם או מפלה
מה השם שלך?
תיאור
שליחה
סגור
v נשלח
תודה על שיתוף הפעולה
מודים לך שלקחת חלק בשיפור התוכן שלנו :)
Location: Tel Aviv-Yafo
Job Type: Full Time
We are looking for a Senior Security Researcher to join our Identity Threat Detection and Response team. In this role, you will research the evolving threat landscape and develop advanced detections to protect SAAS, Cloud, on-premises, and hybrid identities. You will focus on identifying and mitigating identity-related threats across networks, endpoints, and cloud environments, using statistical classification methods to build effective detection models and protecting customers at scale. Additionally, you will collaborate with cross-functional teams, validate detection concepts on real-world data, and continuously enhance detection capabilities to stay ahead of emerging threats.
Key Responsibilities
Research innovative methods for detecting targeted attackers operating in endpoints, networks, cloud and SAAS environments.
Simulate real-world attacks in lab environments and conduct a deep analysis of the behavior.
Develop and refine statistics-based classification algorithms and techniques to create and improve detection models.
Research specific scenarios to enhance our model's capabilities.
Collaborate within a diverse research group, improving our research processes and leading us to be a better team creating a better product.
Stay informed on the latest APTs, attacker methodologies, and TTPs to ensure our models stay ahead of emerging threats.
Requirements:
Required Qualifications
At least 5 years experience with Active Directory security and identity related attacks.
In-depth knowledge of the inner-workings of operating systems.
In-depth Knowledge of network protocols, including but not limited to Kerberos, RPC, SMB, HTTP, SMTP, DNS, DHCP, etc.
In-depth knowledge of enterprise infrastructure, including Active Directory, FW, VPN, Security products, etc.
Ability to drive and own projects from start to finish.
Independent and a team player, a critical thinker.
Preferred Qualifications
2+ years of experience with Entra ID (formerly Azure AD) or SAAS application.
At least 2 years of experience coding in Python.
Strong knowledge of SQL language.
Experience with red-teaming / pentesting of Entra ID.
Experience with machine learning, data analysis, cloud infrastructure, or security.
This position is open to all candidates.
 
Show more...
הגשת מועמדותהגש מועמדות
עדכון קורות החיים לפני שליחה
עדכון קורות החיים לפני שליחה
8834251
סגור
שירות זה פתוח ללקוחות VIP בלבד