Research Engineer
On-sitePrague, Prague, Czechia
Job Summary
Research and analyze emerging security threats, exploits, and post-exploitation tools to develop IPS signatures and prevention logic for Cato's cloud security products. Monitor and analyze work using Cato's big data warehouse to maintain a zero false positive rate while enhancing product accuracy against the evolving threat landscape. Reproduce threats in lab environments and contribute to long-term projects involving automation, internal tools, or new feature development. Requires at least two years of cybersecurity experience, hands-on Wireshark and PCAP analysis, and scripting proficiency in Python or PowerShell.
Required Qualifications
- At least 2 years of hands-on experience in the cybersecurity industry
- Excellent knowledge of networking architecture and protocols (TCP/IP, DNS, SSL, HTTP, SMB, etc.)
- Understand the cyber-security landscape, and common attack scenarios: Exploitation, Malware C&C, Post exploitation, Phishing, Network scans, etc.
- Experience (Hands-on) with Wireshark and PCAP analysis
- Experience with at least one scripting language, such as Python or PowerShell - a must
- Analytic spirit: define a thesis and validate it based on in-depth analysis and technical facts
- Excellent English and communication skills
- Team player, responsible, independent, and well-organized
- B.Sc. in Computer Science, Information technology or Mathematics
Desired Qualifications
- Experience with signature development for IPS and Firewall - Advantage
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.