
Threat Researcher (Spam analysis)_Sophos Labs
- Ahmedabad, Gujarat
- Permanent
- Full-time
- You will be analyzing new malware and spam samples, developing protection against them and handling other protection issues reported by our customers in a timely manner and with quality.
- Analyze files reported by our customers to determine their type and risk level
- Create first-line detection signatures for new malicious Windows executable
- Monitor email spam protection levels and respond to spam outbreaks in a timely manner using appropriate anti-spam detection technology available
- Triage and manage cyber-threat related requests coming from our customers by collecting all the necessary information, responding to standard requests and escalating complex issues to problem domain experts for resolution.
- Handle false positive reports from customers triggered in anti-spam, URL filtering or anti-malware filtering layers
- Use Sophos data publishing systems to build, test and release protection updates for customer use Write descriptions for threats for publication on the Sophos website to raise customer awareness.
- Weekend shift work will be required
- Night-time shift work will be required
- 3-5 years of overall experience in hunting and analysing spam/email campaigns
- Good understanding of common Internet standards (HTTP, SMTP, DNS, Whois, HTML, RFC822, SSH)
- Understanding of Windows OS fundamentals
- In depth understanding of Regular expressions
- Basic understanding of computer and IT security
- Practical understanding of PE file format structures is good to have
- Reverse engineering with IDA or other tools is good to have
- Scripting experience (Shell, Perl, Python, JavaScript)
- Linux user experience
- Weekend shift work will be required
- Night-time shift work will be required