Principal Threat Researcher – Data Platform
Company | Palo Alto Networks |
---|---|
Location | Santa Clara, CA, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | |
Experience Level | Senior, Expert or higher |
Requirements
- Knowledge and understanding of the threat landscape, including attack tools, tactics, and techniques, as well as networking and security fundamentals
- Experience investigating targeted, sophisticated, or hidden threats in both endpoints and networks
- 8+ years of relevant experience with a proven track record in cybersecurity research, specializing in either APTs or cybercrime, but with the ability to address the broader threat landscape
- Background in forensic analysis and incident response tools (both Dynamic and Static, such as IDA Pro, Ollydbg, and Wireshark) to identify threats and assess the extent and scope of compromises
- Understanding of APT operations, including attack vectors, propagation, data exfiltration, lateral movement, persistence mechanisms, and more
- Familiarity with organizational cybersecurity measures, including protective tools and remediation techniques
- Excellent written and oral communication skills in English
- Strong attention to detail
- Knowledge of advanced threat hunting methodologies and the ability to develop novel techniques
- Proficiency in Python and SQL
- Familiarity with leveraging AI related tools in Threat research
- Ability to simplify and clarify complex ideas
Responsibilities
- Developing novel threat hunting methodologies and contributing to our knowledge base through impactful technical blog posts and analysis reports
- Using insights into APT operations and familiarity with organizational cybersecurity measures to directly inform protective strategies and remediation efforts
- Simplifying and clarifying complex technical information to enable effective collaboration and enhance overall security posture
- Significantly contributing to strengthening data platform defenses and ensuring the integrity and security of critical assets
Preferred Qualifications
- Experience in an Incident Response environment is a plus