Senior Security Researcher
$150,000—$230,000
ApplySenior Security Researcher
Posted 18 days ago
SENIORITY
Lead
SALARY
$150,000—$230,000
About the role
- Research and understand attacker TTPs to remain current as a subject matter expert within Vectra
- Research new threat detection technologies and investigate innovative approaches to finding attackers operating within customer environments
- Collaborate across Vectra to identify, research, and develop new detection models – working hand-in-hand with members of data science, consulting services, and other product teams
- Replicate attacker techniques and tooling to produce samples for use during detection development and for detection validation and gap identification
- Pursue security research topics that contribute to the knowledge and enumeration of new threats, tactics, and techniques in network, cloud, and hybrid environments
- Provide an attackers-eye-view to the evidence presented by Vectra products and educate customers to the technical nature of the threat
- What Will You Need Passion for cyber security 5+ years of attack and penetration testing experience in a network environment; or 5+ years direct experience in areas of security research, malware analysis, or incident response
- Knowledge of corporate security investigation and incident response processes, along with malware detection and mitigation technologies
- Solid programming skills with scripting languages such as PythonStrong problem solving, troubleshooting and analysis skillsExcellent written and verbal communication skillsExcellent inter-personal and teamwork skills
- Proactive, hard-working team player with a good sense of humor
- Self-driven, able to efficiently work remotely without close supervision
- Attack simulation experience; Knowledgeable of the Tools, Techniques, and Procedures of advanced threat actors
- Proficiency with common attacker and red team tools and frameworks: Cobalt Strike, Metasploit, Empire, Mimikatz, impacket, CrackMapExec, etc. Ability to realistically recreate advanced threat actor TTPs within controlled environments
- Network experience: Knowledgeable in network and application protocols, and traffic analysis (network forensics)
- Proficiency with network traffic analysis and network forensics tools such as Wireshark and tcpdump
- Proficiency with host forensics and memory analysis tools to study advanced threat actor activities
- Strong knowledge of networking and network application concepts: TCP/IP, UDP, HTTP, TLS, FTP, RPC, DNS, SMB, Kerberos, etc. What Will Help YouProfessional or academic research in advanced security threats
- Operational experience in infosec as an incident handler/responder, red teamer, administrator, or internal consultant
- Experience with big data technologies
- Participation in the broader infosec community with requisite contacts and access to external intelligence sources
- Understanding the lifecycle and economics of modern malware and advanced threats
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
