Security Researcher (Active Directory)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Researcher (Active Directory): Conducting hands-on research into identity security, identifying misconfigurations, and developing proof-of-concept exploits with an accent on Active Directory and Entra ID. Focus on building testing methodologies, automating analysis with AI, and contributing technical findings to the security community.
Location: Must be based in the United States
Company
is a global provider of data security solutions focused on identity-centric visibility and control for over 13,500 organizations worldwide.
What you will do
- Conduct hands-on research into Active Directory, Windows, and Entra ID to identify security vulnerabilities and attack paths.
- Build and validate proof-of-concept exploits and testing methodologies.
- Leverage AI tools to automate repetitive analysis and accelerate research prototyping.
- Collaborate with engineering and product teams to translate research findings into product improvements.
- Contribute technical write-ups to the Blog and Attack Catalog.
- Maintain and contribute to open-source security tools on GitHub.
Requirements
- Must be based in the United States
- 1 to 3 years of experience in security research, red teaming, or penetration testing.
- Strong foundation in Active Directory, Entra ID, or related identity platforms.
- Proficiency in at least one programming or scripting language such as C#, PowerShell, or Python.
- Ability to break down unfamiliar systems into testable hypotheses.
- English: Good verbal and written communication skills required
Nice to have
- Experience with hybrid identity security concepts and authentication protocols like Kerberos, NTLM, or OAuth.
- Prior contributions to open-source security tooling.
- Interest in public speaking and presenting technical research at industry conferences.
- Experience building custom tools or scripts to solve security problems.
Culture & Benefits
- Competitive health benefits package.
- Continuous learning and professional development opportunities.
- Collaborative, remote-first work environment with a focus on innovation.
- Regular company town halls and transparent communication.
- Equal Opportunity Employer committed to a diverse and inclusive workplace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →