Senior Threat Researcher – Threat Detection Engineer

🕒 Abril 17

🇮🇳 Índia – Remoto

⏰ Tempo Integral

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

Firewalls

Linux

Numpy

Pandas

Python

Unix

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Sophos

Sophos

1001 - 5000 funcionários

Fundada em 1985

🔒 Cibersegurança

☁️ SaaS

💰 Post-IPO Equity em 2021-08

Cybersecurity • SaaS

A Sophos é uma empresa líder em cibersegurança que se especializa em proteger empresas contra ameaças cibernéticas avançadas. A companhia oferece um portfólio abrangente de soluções de segurança, incluindo proteção de endpoints, Managed Detection and Response (MDR), segurança de rede e segurança em nuvem. Com uma abordagem focada em prevenção, a Sophos busca interromper ransomware e outras ameaças cibernéticas antes que causem danos. A Sophos fornece serviços como pesquisa de ameaças, treinamento em segurança e suporte operacional para garantir uma defesa robusta contra ciberataques. Suas soluções atendem a diversos setores, incluindo finanças, saúde, governo, manufatura e varejo. A plataforma Sophos Central oferece gestão centralizada de segurança, integrando-se perfeitamente à infraestrutura de TI existente para aprimorar a postura de segurança.

Descrição

• Develop countermeasures to detect advanced threats based on research and intelligence from the CTU team. • Analyze endpoint behaviors and logs to design detections using multi-source telemetry. • Continuously refine and monitor detection rules to optimize the signal-to-noise ratio for alerts. • Research and implement alert handling for new device ingestions, ensuring high-value signal delivery. • Leverage internal tooling to distinguish native from standard integrations for detection accuracy. • Collaborate on the development of internal tools, automation, and detection infrastructure. • Act as a subject matter expert across departments including Product Management, Marketing, and Labs Research.

🎯 Requisitos

• 10+ yrs of relevant experience in threat research, 5+ yrs in detection writing • Hands-on experience in scripting languages (PowerShell, Bash, Python) and use of Python data science libraries (e.g., NumPy, Pandas, Matplotlib). • Knowledge of CI/CD pipelines, testing frameworks, and automation principles. • Proficiency in analyzing logs from firewalls, proxies, and security infrastructure to identify anomalies. • Familiarity with event logs, traffic pattern anomalies, and threat hunting methodologies. • Strong understanding of endpoint detection, Linux/Unix and Windows OS internals, vulnerability identification, and workflow automation. • Experience with event correlation and incident reconstruction using log data is a plus, • Network traffic analysis skills, including identification of anomalous or malicious traits is a plus. • Solid grasp of database querying, systems architecture, and process automation for operational improvements is a nice to have. • Experience in malware analysis, including static/dynamic techniques and reverse engineering (IA32/64, ARM binaries). • Forensic analysis of memory and disk images across various OS and file system types.

🏖️ Benefícios

• Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach. • Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit • Employee-led diversity and inclusion networks that build community and provide education and advocacy • Annual charity and fundraising initiatives and volunteer days for employees to support local communities • Global employee sustainability initiatives to reduce our environmental footprint • Global fitness and trivia competitions to keep our bodies and minds sharp • Global wellbeing days for employees to relax and recharge • Monthly wellbeing webinars and training to support employee health and wellbeing

Candidatar-se

Vagas Similares

🕒 Abril 16

Rackspace Technology

5001 - 10000

🏢 Corporativo

🤖 Inteligência Artificial

🔐 Segurança

Forward Deployed Engineer at Rackspace Technology architecting AI solutions for enterprise customers. Owning the full solution lifecycle and collaborating with strategic enterprise clients.

🇮🇳 Índia – Remoto

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Abril 16

Miratech

501 - 1000

Senior Engineer designing Cisco Unified Communications solutions for a global IT services company. Focus on large-scale Cisco CUCM to Webex Calling migrations for major financial institutions.

🇮🇳 Índia – Remoto

💰 Private Equity Round em 2022-04

⏰ Tempo Integral

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Abril 16

Sutherland

10.000+ funcionários

🤝 B2B

🤖 Inteligência Artificial

☁️ SaaS

Disaster Recovery Engineer focusing on implementing and supporting DR solutions in multi-cloud and data center environments. Requires strong Linux and backup technologies expertise with 8–12 years of experience.

🇮🇳 Índia – Remoto

💰 $300.000.000 Secondary Market em 2014-10

⏰ Tempo Integral

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Abril 16

Exavalu

201 - 500

🤝 B2B

🏦 Bancário

⚕️ Seguro de Saúde

Microsoft Purview Engineer role requiring Azure expertise and 3+ years of experience in data governance. Join a dynamic team at Exavalu with a focus on digital transformation.

🇮🇳 Índia – Remoto

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Abril 15

Miratech

501 - 1000

Amazon Connect Engineer designing and optimizing contact center solutions on AWS. Collaborating with teams to deliver seamless customer engagement and troubleshooting support.

🇮🇳 Índia – Remoto

💰 Private Equity Round em 2022-04

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório