Security Researcher (Detection Systems)
$150,000–$250,000 year
On-siteSunnyvale, California, United States
Job Summary
Architect and build comprehensive threat detection capabilities for the next-gen security platform, developing innovative research systems for threat analysis, APT simulation, and security knowledge graphs. Research emerging adversary tactics to design end-to-end detection coverage, partnering with data scientists to develop agentic AI workflows and security-focused models. This role requires 5+ years of experience in large-scale threat analysis and detection, with deep expertise in threat hunting, malware analysis, and the MITRE ATT&CK framework. Strong proficiency in Python is essential, with system programming in C/C++/Rust/Go preferred. Join a small R&D team building cybersecurity products from the ground up, led by industry veterans.
Required Qualifications
- 5+ years of experience on building large-scale threat analysis and detection solutions across one or more of the following: security logs, malware, network traffic, web page and vulnerability exploitation, and/or a Ph.D. in Computer Science, System/Network Security, or a related technical field
- Deep expertise in one or more of the following areas: threat hunting, malware analysis and sandboxing, vulnerability analysis, reverse engineering, offensive security, or penetration tests
- Deep understanding on modern attacks and evasion techniques, malware behaviors and countermeasures, MITRE ATT&CK framework, cyber kill chain/TTPs
- Strong proficiency in Python programming
Desired Qualifications
- System programming with C/C++/Rust/Go is a big plus
- Great passion for security research; strong communication and documentation skills
- Participation in Capture the Flag (CTF) competitions, contributions to open-source security projects, vulnerability disclosures (CVEs), attack campaign research, technical blogs, or security research publications and presentations
- Experience working as a SOC analyst, detection engineer, red team, blue team member, or security researcher within large-scale enterprise environments
- Deep understanding of modern operating system internals, system APIs, and security products such as EDR/XDR, SOC platforms, firewall, IDS/IPS, or related security technologies
- Familiarity with cyber threat intelligence, attack causality analysis, provenance-based intrusion detection systems, and advanced threat detection methodologies
- Experience developing machine learning models for security detection use cases and applying LLMs or agentic AI to accelerate security research, analysis, and detection workflows
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.