Threat Detection Researcher (Cloud)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Threat Detection Researcher (Cloud): Developing advanced cloud-native threat detection capabilities and behavioral baselines for complex environments with an accent on high-fidelity telemetry and novel attack vector research. Focus on investigating real-world attacks across IaaS and IDP platforms to enhance security detection engines.
Location: Tel Aviv. Must have the legal right to work in Israel without visa sponsorship.
Company
is a rapidly growing cloud security platform that enables organizations to secure cloud and AI applications by connecting code, cloud, and runtime environments.
What you will do
- Design behavioral baselines for complex cloud environments and develop high-fidelity detections.
- Expand the detection engine with novel and high-impact telemetry sources.
- Conduct deep technical research into cloud services to uncover new attack vectors.
- Investigate real-world attacks across cloud, identity providers, and IaaS platforms.
- Hunt and analyze emerging threats and active campaigns targeting cloud ecosystems.
Requirements
- 6+ years of hands-on experience in security or threat research.
- Proven track record of driving investigations to actionable, real-world impact.
- Strong self-motivation and ability to independently drive complex research projects.
- Clear and effective communication skills with a focus on cross-team collaboration.
- Must have the legal right to work in Israel without visa sponsorship.
Nice to have
- Experience with data-driven research and large-scale telemetry.
- Familiarity with AWS, GCP, Azure, Kubernetes, and cloud-native architectures.
- Background in incident response, red teaming, or threat hunting.
- Experience building and shipping security detections as part of a product.
- Proficiency in Python, Go, and query languages like KQL or SQL.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →