
Position title
Security Researcher R&D
Responsibilities
- Research latest CERT and industry reports, Threat intel analytics, and TTP. Drive product vision
- Analyze trends/threats and run new EVIL samples in our awesome LAB
Analyze attacks patterns, fingerprints, anomalies, and new ransomware techniques - Research & Develop new threat algorithms to detect it on the scale during Lateral Movement in-stream analytics platform
- Maintain an isolated test/lab environment to run the latest malicious activities and generate artifacts (telemetry, reports, docs, manuals, pcap)
- Consult development team on implementing new features and functionality for product
- Run and automate attacks and simulations to assure detections work as expected
- Analyze and convert from SIGMA to a new detection format
- Cooperate with our Red team to run some of the complex attacks
Skills
- If you were in the Malware analysis team for a few years or with the Red team – it is awesome. You are our candidate
- Experience with MITRE and how the SOC team works and reacts – will help a lot
- Hands-on with CobalStrike, PowerShell Empire, Powersploit, Metasploit, AutoSploit, venom, Pivotsuite, Responder
- Seen on practice DGA & Command and Control (C2) console
- In-depth knowledge of network protocols WinRM, WMI, HTTP/S, SMB, DNS, ICMP, TCP/UDP
- Fundamental understanding of security tools such as SIEM, IDS/IPS, Web Proxies, DLP, CASB, SIEM, DNS security, DDoS protection, and firewalls
Knowledge of Microsoft Windows systems including active directory and Unix systems. - Knowledge of attack vectors, threat tactics, and attacker techniques.
- Experience applying Mitre ATT&CK matrix.
- Experience analyzing and inspecting log files, network packets, and any other security tool information output from multiple system types
- Familiar with basic reverse engineering principles and understanding of malware, rootkits, TCP/UDP packets, and network protocols
Nice to Have
- FlareON badges or OSCP
- Strong python skill
- English and good idea communication skills
- Demonstrable attention to detail, creative problem-solving, and persistence in your work product
- Work comfortably in a fast-paced, multi-tasking environment