Remote job
Sr. Cybersecurity Researcher, Cobalt Strike
Job details
About this role
Role overview A senior cybersecurity researcher position focused on applied research and development for an adversary simulation and red team operations platform. The role bridges offensive security research and product engineering, turning modern attacker tradecraft into safe, responsible capabilities used by authorized security teams worldwide. It is a hands-on position that requires deep curiosity about how attacks work and the ability to collaborate closely with engineering.
Responsibilities - Investigate contemporary adversary tactics, techniques, and procedures with emphasis on post-exploitation tradecraft, endpoint defenses, and attacker behavior. - Analyze security research, malware reports, proof-of-concept code, and detection logic to surface opportunities for product improvements. - Prototype, document, and validate new techniques in controlled, authorized lab environments before recommending them to engineering teams. - Examine how offensive techniques interact with modern Windows security features, logging, and enterprise hardening practices. - Produce clear technical write-ups, design notes, and research summaries for engineering, product, and customer audiences. - Contribute to product roadmaps by identifying emerging trends, customer needs, and technical gaps in responsible adversary simulation.
Requirements - Significant experience in cybersecurity research, offensive security, threat research, red teaming, penetration testing, malware analysis, reverse engineering, or detection engineering. - Working knowledge of Windows internals, common post-exploitation concepts, attacker tradecraft, and enterprise security controls. - Ability to analyze technical research and translate findings into actionable product recommendations. - Strong written and verbal communication skills, including the production of accurate technical documentation. - High ethical standards and sound judgment when working with offensive security technology. - Ability to operate independently on ambiguous research problems while communicating progress and tradeoffs clearly.
Nice to have - Familiarity with adversary simulation or command-and-control tools, including the featured platform. - Experience with Windows debugging or reverse engineering tools such as WinDbg, x64dbg, Ghidra, IDA Pro, Process Monitor, Process Explorer, Sysmon, or ETW. - Scripting or programming ability in Python, PowerShell, C, Java, Go, or Rust. - Use of AI or LLM-based workflows to accelerate security research or threat emulation. - Background in malware analysis, including loaders, shellcode, process injection, evasion, persistence, or credential access techniques. - Public-facing research contributions such as blog posts, whitepapers, or conference talks.
Benefits and work setup The listed compensation range is 105,000 to 160,000 USD. Benefits include health, dental, and vision coverage from the hire date, immediate enrollment in 401(k), HSA, and FSA plans, a flexible PTO policy, tuition and personal enrichment reimbursement, and optional ID theft protection.