wagey.ggwagey.ggv1.0-0f5e85e-22-May
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs/Senior Researcher Role/sophos - Senior Threat Behavior Researcher
sophos

sophos - Senior Threat Behavior Researcher

Romania - Hybrid2mo ago
In OfficeSeniorEMEASenior ResearcherLuaPythonReporting

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Responsibilities

• Conduct in-depth behavioral analysis of Windows threats. • Develop Behavioral rules for various threat behaviors including hands-on keyboard attack, malware payloads, initial attack vectors and Advanced Persistent Threats (APTs). • Produce quality threat analysis reports for both internal and external audience. • Assist in sandbox improvements by analyzing malware that hinders the sandbox environment in running the threat, which deploys various anti-analysis techniques. • Develop Cleanup rules to remove artifacts that are left behind by the behavioral protection rules. • Collaborate with other cross-functional teams to improve behavioral protection capability based on the threat analysis. • Guide and train junior team members in assisting malware analysis, peer code review. • Assist in the development of tools wherever necessary to improve day-to-day task. • Strong knowledge of Windows Internals including Memory management, Processes, Threads. • Proficiency in both static and dynamic analysis of threats, using tools such as IDAPro, WinDbg. • Demonstrated programming experience. Preferred: Python, Lua. • Excellent communication skills with the ability to demonstrate complex technical problem to peer researchers as well as to product engineering team. • Excellent analytical and problem-solving skills with the ability to think strategically and creatively. • Bachelor’s degree in computer software (Computer Security preferable) or equivalent experience. • Ready to Join Us?

Get Started Free

No credit card. Takes 10 seconds.

Privacy·Terms··Contact·FAQ·Wagey on X