F5-posted 4 days ago
Full-time • Mid Level
Hybrid • Chelmsford, MA
5,001-10,000 employees

At F5, we make apps faster, smarter, and safer. Come work within the security threat research group in an exciting, fast paced environment. Our team is performing the analysis of the latest security threats, detection and mitigation of our security solutions, as well as pen testing of F5 products. The team works in an intensive environment and is constantly updated with the latest modern technologies. Come and join the best in their field! Position Summary: Being a part of a highly experienced Security Research team, while specializing in web vulnerabilities analysis, threat intelligence and Honeynet projects. The team is handling the research of vulnerabilities and malware, evolving threats analysis, development and updates of attack signatures and product-hacking.

  • Researching web frameworks and servers to identify and understand emerging threats.
  • Examining and replicating newly disclosed web application vulnerabilities.
  • Focusing on WAF (Web Application Firewall) evasion techniques to preemptively bypass our defenses before hackers can.
  • Creating innovative proof of concept solutions for advanced threats and continuously refining attack signatures, all in collaboration with development teams to enhance the WAF product using our research findings.
  • Gathering web security intelligence from blogs, forums, conferences, and academic papers.
  • Building tools and infrastructure for analyzing attacks.
  • Composing and distributing insights through blogs, reports, and presenting at security conventions.
  • Periodically performing security efficacy assessments on a variety of products, including WAFs, API security solutions, application security scanners, and machine learning models, to verify and improve their defense capabilities.
  • At least 2 years of experience in analyzing real web attacks or web exploitation, with a strong preference for more extensive experience.
  • A deep knowledge of networking fundamentals, the HTTP protocol, web servers, and the inner workings of web applications is essential.
  • Experience in tracking emerging web vulnerabilities in real-time.
  • Experience in building research infrastructure and Python-based tools.
  • Experience with creating and comprehending Regular Expressions for detailed pattern matching and security-related data analysis.
  • In-depth knowledge of security principles, theories, and recognized attack vectors.
  • Experience in creating attack signatures, such as with tools like SNORT.
  • Analyzing binary malware and malicious scripts.
  • Knowledge in web development (front and back end).
  • You may also be offered incentive compensation, bonus, restricted stock units, and benefits.
  • More details about F5's benefits can be found at the following link: https://www.f5.com/company/careers/benefits .
  • F5 reserves the right to change or terminate any benefit plan without notice.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service