Remote job
Principal Threat Researcher
Job details
About this role
Role overview A remote Principal-level role on a Threat Research team, serving as the definitive subject matter expert on adversary behavior across endpoint and cloud environments. You will dissect, replicate, and outmaneuver sophisticated attack techniques, then translate research into scalable detection recommendations that directly shape engineering priorities and product strategy. Findings will influence detection coverage, vendor telemetry strategy, and protections for the broader customer base.
Responsibilities - Scope and continuously refine research initiatives using an adversarial mindset, analyzing emerging attack techniques, customer impact, and detection data sources across at least one operating system (Windows, macOS, Linux) and major cloud/SaaS providers such as AWS, Microsoft 365, and Okta. - Dive deep into the technical components and detection optics behind specific threats to understand how adversaries control and vary their techniques. - Engineer automated attack code, write test code that validates threat coverage, and build proofs of concept for new detections. - Collaborate with detection engineers, intelligence analysts, and threat hunters to develop new detection methodologies and prioritized engineering recommendations. - Document and present research findings to both internal and external audiences, and mentor junior researchers pursuing threat work.
Requirements - Foundational understanding of AI/ML technologies with experience leveraging, securing, or positioning AI-driven solutions within a functional domain. - 12+ years of experience conducting security research with actionable outcomes. - Extensive security expertise in at least one operating system (Windows, macOS, or Linux) and major cloud/SaaS environments such as AWS, Microsoft 365, or Okta. - Demonstrated ability to engineer automated attack code, write test code for threat coverage, and produce proofs of concept for new detections. - Strong cross-functional collaboration skills and the ability to mentor other researchers.
Nice to have - Contributions to detection enhancements or building attack-technique automation frameworks.
Benefits and work setup - Remote role reporting into the Threat Research organization. - Base pay range: $171,500–$245,000 USD (excluding commission, bonus, and equity, plus benefits). - Health plan options, vacation and sick time, parental leave, retirement options, and education reimbursement, plus in-office perks.