Senior Threat Researcher
Sophos View all jobs
- India
- Permanent
- Full-time
- Must be able to conduct in-depth research on emerging network-, software-, and application-based security threats, threat actors, vulnerabilities, and malware campaigns.
- Must be able to reproduce and simulate attack techniques, reverse engineer exploits and PoC code, etc., in lab environments to understand their network signatures and develop protection rules that ensure thorough detection and coverage.
- Continuously monitor critical threat intelligence sources to stay on top of emerging threats and trends.
- Develop high-quality detection/IPS signatures to detect and prevent threats and exploits.
- Build, test, and publish detection/IPS signatures.
- Must be able to write high-quality threat or exploit descriptions based on research, including white papers, blog posts, and case studies.
- Track zero-day and newly discovered vulnerabilities and malware on a regular basis, and strive to provide timely protection for customers.
- Independently conduct research and reverse engineer threats and exploits, and be able to provide detailed research reports.
- Triage requests submitted by other departments, respond to tasks, and escalate complex issues to senior team members.
- Answer customer queries routed through Technical Support, as well as internal queries from all departments.
- Identify opportunities to write blogs for the Sophos website to raise customer awareness.
- Understand gaps or failures and provide technical insights while working with engineering teams to develop solutions that improve future test results.
- Maintain aligned communication with the team, including updates on quality, effectiveness, and third-party test issues.
- Work with third-party test coordinators to improve performance in external test results.
- Take initiative and drive quality and effectiveness.
- Mentor and coach other Threat Researchers on writing and content creation.