7 дней назад
Threat Research Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Threat Research Engineer (Cybersecurity): Researching and analysing emerging endpoint threats, including OS-level malware, hardware attacks, firmware vulnerabilities, and exploit behaviours, with an accent on low-level systems security and evidence-led threat assessments. Focus on analysing malware and vulnerabilities, documenting defensive mitigations, and communicating complex findings through technical reports, blogs, briefings, and conference materials.
Location: Bristol, United Kingdom; onsite role
Company
is a global technology company developing hardware, software, tools, and security solutions across more than 170 countries.
What you will do
- Research emerging endpoint threats, including OS-level malware, bootkits, ransomware, hardware attacks, firmware vulnerabilities, and stealthy platform-level techniques.
- Analyse attacks observed in the wild, vulnerabilities, exploit behaviours, proof-of-concept material, and attacker tradecraft.
- Assess threat risk, maturity, likely impact, and relevant mitigation approaches based on and industry solutions.
- Maintain an authoritative view of the endpoint threat landscape and defensive security technologies.
- Translate complex technical findings into documentation and educational materials for technical and non-technical audiences.
- Create external-facing research content, including technical reports, blog posts, conference submissions, customer briefings, and media-support materials.
Requirements
- Strong understanding of endpoint security technologies, computer security architecture, and low-level systems security.
- Knowledge of Windows and Linux OS architecture and experience with reverse-engineering tools.
- Experience with attack and kill-chain analysis frameworks and the ability to assess malware, vulnerabilities, exploits, and attack methods.
- Experience gathering information from public sources and producing clear technical analysis documents and reports.
- Excellent written and verbal communication skills for technical and non-technical audiences.
- Experience with scripting languages, including Python; a degree in electronic engineering, computer science, cybersecurity, or a related field, or equivalent experience.
Nice to have
- Knowledge of PC hardware and firmware architecture, including x86, ARM, UEFI, PCIe, and DMA.
- Knowledge of OS kernel, hypervisor, enterprise IT, device security, and security management.
- Experience with penetration testing, exploit kits such as Metasploit, malware analysis, vulnerability research, attack reproduction, or attack demonstration.
- C or C++ coding experience and experience presenting offensive security, platform security, or threat research topics.
Culture & Benefits
- Work within Security Lab and collaborate with threat researchers, systems security engineers, security technologists, business stakeholders, and external partners.
- Participate in a global laboratory environment spanning more than 170 countries.
- Contribute to security research and innovation strategy at a large technology company.
- Equal employment opportunity and an inclusive workplace culture.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Writer
10 дней назад
Security Engineer, Applications (AI Security)
12 дней назад
Technical Security Architect (Cybersecurity)
11 дней назад
Specialist Software Engineer (Cybersecurity)
8 дней назад
Senior Software Developer (C/Python Systems)
13 дней назад
Security Engineer (Cloud Security)
12 дней назад
Security Engineer (GCP)
6 000 - 7 500€