Senior Threat Researcher – Behavioral Protection

Sophos
$129,000 - $215,000Remote

About The Position

We are seeking a skilled and passionate Threat Researcher with deep expertise in Windows based threat behaviors, particularly having a strong understanding on memory-resident threats. In this role, you will be at the forefront of detecting and understanding emerging attack techniques, developing behavioral-based protection strategies, and enhancing our real-time protection capabilities. Your insights and contributions will directly impact on the security posture of millions of users worldwide.

Requirements

  • Proven hands-on experience in Windows based malware analysis using both static and dynamic analysis tools such as using IDAPro and Windbg.
  • Deep understanding of behavioral techniques, memory injection methods, persistence mechanisms, and evasion tactics.
  • Ability to write robust, high-quality behavioral protection rules.
  • Demonstrated programming experience, preferably Python, Lua.
  • Experience working in a fast-paced threat research or security operations environment.
  • Strong communication skills and the ability to provide technical mentorship to peers.
  • Proactive, self-driven mindset with the ability to lead in critical incident or zero-day response scenarios.

Responsibilities

  • Analyze malware behaviors aligned with MITRE ATT&CK TTPs (and beyond), covering the full attack lifecycle, including initial access vectors, execution techniques, payload delivery—with a strong focus on in-memory techniques, fileless malware, and evasive behaviors.
  • Research and identify behavioral techniques employed by novel and sophisticated Advanced Persistent Threats (APTs) and translate these insights into effective behavioral protection rules to enhance prevention capabilities.
  • Drive protection coverage for zero-day malware and novel attack techniques.
  • Work independently with minimal supervision while managing priority protection tasks.
  • Review and provide actionable feedback on detection logic and code developed by fellow researchers.
  • Collaborate with the team to define clear protection priorities and deliver updates to customers in a timely manner.
  • Produce quality threat analysis reports for both internal and external audience

Benefits

  • Sophos operates a remote-first working model, making remote work the primary option for most employees.
  • Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit
  • Employee-led diversity and inclusion networks that build community and provide education and advocacy
  • Annual charity and fundraising initiatives and volunteer days for employees to support local communities
  • Global employee sustainability initiatives to reduce our environmental footprint
  • Global fitness and trivia competitions to keep our bodies and minds sharp
  • Global wellbeing days for employees to relax and recharge
  • Monthly wellbeing webinars and training to support employee health and wellbeing

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

1,001-5,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service