Назад
Company hidden
10 часов назад

Staff Engineer – Network Security & Attack Path Intelligence

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Engineer – Network Security & Attack Path Intelligence (Cybersecurity): Architecting and building attack-path intelligence capabilities that combine network topology, identities, vulnerabilities, security controls, and business-critical assets across on-premises, cloud, and hybrid environments with an accent on effective reachability, graph analysis, and enterprise security integrations. Focus on modeling attacker movement, prioritizing exploitable and business-critical paths, developing explainable countermeasure recommendations, and validating security controls safely at enterprise scale.

Location: Bengaluru, India; on-site

Company

hirify.global is a Series C-funded cybersecurity product company developing an AI-driven platform for quantified, real-time enterprise security posture and cyber-risk visibility.

What you will do

  • Define the architecture and data model for network topology, effective reachability, trust boundaries, identities, vulnerabilities, controls, and attack paths.
  • Build production systems for network configuration parsing, reachability analysis, attack-graph construction, graph traversal, exposure chaining, and blast-radius computation.
  • Derive effective connectivity across routing, VLAN, ACL, firewall, NAT, VPN, proxy, load-balancer, and segmentation configurations.
  • Model attacker movement across exposed services, vulnerabilities, credentials, Active Directory privileges, lateral movement, privilege escalation, and critical assets.
  • Prioritize actionable attack paths using exploitability, control effectiveness, asset criticality, and business impact.
  • Lead security integrations, countermeasure intelligence, validation frameworks, architectural reviews, and mentoring for backend, graph, security, and platform engineers.

Requirements

  • 12+ years of experience in software engineering, network security, security product engineering, exposure management, or related fields, with a record of shipping production systems.
  • Strong hands-on programming skills in Python, Go, Java, or a similar backend language.
  • Strong system design, API design, data modeling, distributed systems, graph processing, rule processing, and network automation fundamentals.
  • Deep knowledge of enterprise on-premises, cloud, and hybrid networks, including routing, switching, VLANs, ACLs, firewalls, NAT, VPNs, proxies, load balancers, and segmentation.
  • Strong understanding of Active Directory, Kerberos, identity privilege paths, credential exposure, privilege escalation, lateral movement, attack graphs, threat modeling, and MITRE ATT&CK.
  • Experience translating security-domain expertise into scalable products, analytical systems, or security-platform capabilities.

Nice to have

  • Experience with attack-path, network digital-twin, microsegmentation, or CTEM products.
  • Experience with graph databases and large-scale graph computation, or tools such as BloodHound, Nmap, Zeek, Wireshark, and NetFlow.
  • Experience with enterprise network-control and security platforms from vendors such as Palo Alto Networks, Cisco, Fortinet, Check Point, or Juniper.
  • Knowledge of AWS, Azure, or GCP networking; experience with regulated enterprises and security-validation platforms.
  • Offensive and defensive security background, relevant certifications, published research, patents, open-source contributions, or technical leadership.

Culture & Benefits

  • High-intensity, mission-driven environment focused on ownership, rigor, direct feedback, and high-quality execution.
  • Meaningful equity and shareholder participation.
  • Unlimited leave.
  • Medical insurance and wellness benefits for employees and families.
  • Growth opportunities in a well-funded company operating at enterprise scale.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →