Remote job
Senior Security Researcher
Job details
About this role
Role overview A senior-level security research role on a specialized threat detection team focused on hybrid and multi-cloud enterprise networks. The position drives the discovery, modeling, and validation of detection capabilities that surface advanced attackers operating across on-premises, SaaS, and public cloud environments, blending hands-on offensive research with data-science collaboration.
Responsibilities - Investigate adversary tactics, techniques, and procedures (TTPs) and translate findings into new network- and cloud-based detection logic - Perform systems analysis, advanced persistent threat (APT) modeling, protocol analysis, and tooling assessments against hybrid attack surfaces - Partner with data science engineers to design, build, and refine detection models that ship into the production platform - Replicate attacker tooling in controlled labs to produce high-fidelity samples for detection development, validation, and gap analysis - Run ongoing efficacy testing, document results, and recommend remediations for broad internal consumption - Communicate an attacker-centric perspective to customers and help educate them on the technical nature of observed threats
Requirements - 5+ years of experience in offensive security (penetration testing on networks) or an equivalent background in security research, malware analysis, or incident response - Familiarity with corporate investigation workflows, incident response processes, and modern malware detection and mitigation technologies - Solid scripting ability in Python and strong analytical, troubleshooting, and problem-solving skills - Proficiency with common offensive security frameworks such as Cobalt Strike, Metasploit, Empire, Mimikatz, impacket, and CrackMapExec - Deep knowledge of networking concepts (TCP/IP, UDP, HTTP, TLS, FTP, RPC, DNS, SMB, Kerberos) and hands-on use of traffic analysis tools like Wireshark and tcpdump - Demonstrated self-direction in a remote work setting, with clear written and verbal communication skills
Nice to have - Professional or academic research in advanced threats, or operational experience as an incident responder, red teamer, administrator, or internal security consultant - Familiarity with big data technologies and the broader infosec community, including access to external threat-intelligence sources - Understanding of the lifecycle and economics of modern malware and advanced threat campaigns
Benefits and work setup Hybrid arrangement based in San Jose, CA; Austin, TX; Boston, MA; or Dublin, Ireland. Reported base compensation typically falls between $150,000 and $230,000 USD, with incentive eligibility and stock option participation. The package generally includes health care coverage, income protection and life insurance, retirement savings access, behavioral and emotional wellness services, generous time-off programs, and an employee recognition program.