Назад
Company hidden
1 день назад

Security Researcher (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Researcher (Cybersecurity): Analyzing large-scale SaaS and AI security data, investigating incidents, and developing advanced threat detection strategies with an accent on identity-based attacks, SaaS attack vectors, and behavioral analytics. Focus on correlating security events through APIs and integrations, reducing false positives, and adapting detection methods to emerging threats.

Location: United States (remote)

Company

hirify.global is a SaaS security company focused on securing SaaS and AI environments by detecting identity-based threats and risky configurations.

What you will do

  • Analyze terabytes of SaaS application data to identify attack vectors, emerging threats, and vulnerabilities.
  • Investigate complex SaaS and AI security incidents, determine root causes, and analyze attack methods.
  • Fine-tune detection rules and algorithms using data correlation to reduce false positives and improve alert accuracy.
  • Develop threat detection strategies with security researchers and data scientists based on SaaS attack vectors and industry trends.
  • Work with APIs and integrations to ingest security logs from SaaS platforms and correlate signals.
  • Create technical content, deliver webinars, speak at conferences, and collaborate with customers on security investigations.

Requirements

  • At least 5 years of cybersecurity experience, preferably in SOC, SIEM, threat intelligence, or cloud security.
  • Experience with SaaS security challenges such as shadow IT, OAuth risks, identity provider misconfigurations, and excessive permissions.
  • Hands-on experience with large-scale log processing, anomaly detection, behavioral analytics, and security data analysis.
  • Proficiency in SQL for querying security events and correlating threat indicators, including tools such as ClickHouse.
  • Strong understanding of identity-based attacks, insider threats, SOC detection methodologies, SIEM, and XDR solutions.
  • Strong problem-solving and analytical skills for triaging incidents and optimizing detection rules.

Nice to have

  • Knowledge of SaaS security best practices, least-privilege access, OAuth governance, SSPM, and CASB frameworks.
  • Experience with identity provider security, including Okta, Azure AD, or Google IAM.
  • Experience with threat hunting or detection engineering in SaaS environments.
  • Understanding of SaaS API security and third-party application integrations.

Culture & Benefits

  • Remote work for the US-based R&D organization.
  • Close collaboration with security researchers, data scientists, and customers.
  • Opportunities to contribute to cybersecurity thought leadership through technical publications, webinars, and conferences.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →