Security Researcher - EDR

3 Months ago • 2-3 Years • Cyber Security

Job Summary

Job Description

This role requires 2+ years of experience writing detection using Snort, Yara, Sandbox, or proprietary detection engines, performing threat hunting, and querying large datasets. Strong understanding of cybersecurity threats and the MITRE ATT&CK framework is essential. You'll analyze malware, write detection rules, and conduct threat hunting.
Must have:
  • Threat Hunting
  • Malware Analysis
  • Detection Engine
  • MITRE ATT&CK
Good to have:
  • Incident Response
  • Scripting Languages
  • IDA Pro
  • Multiple OS
Perks:
  • Retirement Plans
  • Medical Coverage

Job Details

Job Title:

Security Researcher - EDR

About Trellix:

Trellix is a global company redefining the future of cybersecurity and soulful work. The company’s comprehensive, open and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through artificial intelligence, automation, and analytics to empower over 50,000 business and government customers with responsibly architected security. More at  https://trellix.com. 

Role Overview:

We are looking for a skilled EDR Security Researcher. Your primary responsibility will be to evaluate and improve our EDR product's detection capabilities by identifying detection coverage gaps and developing signatures to address these gaps effectively.

About the role:

  • Reverse engineer malware to identify malicious code, obfuscation techniques, and communication protocols.
  • Author detection rules for behavior-based detection engines.
  • Conduct deep research on attacker campaigns and techniques to support detection investments and improve customer experience.
  • Write generic threat detections based on static and dynamic detection engines.
  • Demonstrate a strong understanding of cybersecurity threats, attack techniques, and the MITRE ATT&CK framework.
  • Conduct proactive and reactive threat hunting and identify detection issues such as misses or misclassifications from a large-scale dataset.
  • Respond to escalations to resolve detection effectiveness issues (misclassifications, false positives, and false negatives).
  • Engage and collaborate with diverse partner teams to drive great customer experiences and ensure holistic protection.
  • Develop alerting, reporting, and automated detection solutions.
  • Build tools and automation to improve productivity.

About you:

  • 3+ years of experience writing detection using Snort, Yara, Sandbox, or proprietary detection engines.
  • 2+ years of experience performing threat hunting or deep familiarity with incident response procedures, processes, and tools.
  • 2+ years of experience querying and analyzing (for malware/TTPs) large datasets.
  • Experience in programming or scripting languages (e.g., Python, PowerShell).
  • Experience in utilizing various malware analysis tools and frameworks (e.g., IDA Pro).
  • Experience performing detection engineering across multiple operating systems, including Windows, Linux, and macOS.
  • Excellent verbal and written communication skills in English.

Company Benefits and Perks:

We work hard to embrace diversity and inclusion and encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family-friendly benefits to all of our employees.

  • Retirement Plans
  • Medical, Dental and Vision Coverage
  • Paid Time Off
  • Paid Parental Leave
  • Support for Community Involvement

We're serious about our commitment to diversity which is why we prohibit discrimination based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.

Similar Jobs

Anavation - Senior Android Software Engineer

Anavation

Chantilly, Virginia, United States (On-Site)
3 Months ago
IG Group - Senior Systems Engineer

IG Group

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Meta - Software Engineer, Infrastructure

Meta

Redmond, Washington, United States (Remote)
3 Months ago
The Pokemon Company International - Senior Customer Data Platform Product Engineer

The Pokemon Company International

Bellevue, Washington, United States (Hybrid)
3 Months ago
Playrix - Full Stack QA Engineer

Playrix

Cyprus (Remote)
3 Months ago
Axinous - Principal Software Engineer - Automation, Python

Axinous

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
PwC - Workday specialist in benefits & compensations

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
4 Months ago
Trend Micro - Sr. Sales Engineer

Trend Micro

Abu Dhabi, Abu Dhabi, United Arab Emirates (On-Site)
4 Months ago
PwC - IN_Senior Manager_ISIM_Identity management_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
PlayStation Global - Sr Application Security Engineer

PlayStation Global

United States (Remote)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

HiLabs - Data Engineer

HiLabs

Bengaluru, Karnataka, India (On-Site)
4 Months ago
PlayStation Global - Data Science Intern, Payments & Fraud - Master's or PhD

PlayStation Global

Carlsbad, California, United States (Hybrid)
4 Months ago
Unity - Senior ML Engineer

Unity

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
3 Months ago
Luxoft - Data Engineer for Market Data Projects (with Streamlit Expertise)

Luxoft

New Delhi, Delhi, India (On-Site)
2 Months ago
Luxoft - Senior Data Ops Engineer

Luxoft

Delhi, India (On-Site)
2 Months ago
Nagarro - Principal Engineer, AI / ML

Nagarro

Sri Lanka (Remote)
3 Months ago
Expedia - Machine Learning Scientist III

Expedia

Chicago, Illinois, United States (On-Site)
4 Months ago
Playrix - Senior Big Data Engineer

Playrix

Ukraine (Remote)
3 Months ago
DAZN - BI Analyst/Engineer

DAZN

Malta (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

PwC - IN_Senior Associate _ Market Risk BA _Captive Financial Services_Advisory_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
Curtiss-Wright Corporation - Project Administrator

Curtiss-Wright Corporation

Delhi, India (On-Site)
5 Months ago
Viacom 18 - Senior Manager - CRM, JioCinema

Viacom 18

Mumbai, Maharashtra, India (On-Site)
3 Months ago
UST - Physical Design Engineer

UST

Karnataka, India (On-Site)
4 Months ago
Intel Corporation - Senior SAP Basis and HANA Engineer

Intel Corporation

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Novatr - Senior Frontend Developer

Novatr

Gurugram, Haryana, India (On-Site)
4 Months ago
Assystems - Mechanical Design Engineer (PHE + Fire Fighting)

Assystems

Gurugram, Haryana, India (On-Site)
3 Months ago
Forcepoint - Platform Developer - Salesforce Development

Forcepoint

Bengaluru, Karnataka, India (On-Site)
4 Months ago
PwC - Associate – Power Platform -Ms Dynamics– Advisory  -Chennai

PwC

Chennai, Tamil Nadu, India (On-Site)
4 Months ago
MELTING POT CONCEPTS PRIVATE LIMITED - Social Media Management

MELTING POT CONCEPTS PRIVATE LIMITED

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Google - Embedded Engineer, Security/Privacy, Pixel

Google

(On-Site)
2 Months ago
Balbix - Data Engineer

Balbix

San Jose, California, United States (On-Site)
3 Months ago
PwC - AES SAP Security Manager - Operate

PwC

Hyderabad, Telangana, India (On-Site)
4 Months ago
PwC - Financial Services GRC Senior Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
4 Months ago
ION - Junior Cyber Security Analyst

ION

Pisa, Tuscany, Italy (Hybrid)
4 Months ago
PwC - IN_Associate_Java_Application Technology__Advisory_Jaipur

PwC

Jaipur, Rajasthan, India (On-Site)
4 Months ago
Applike Group - IT Security Manager (f/m/d)

Applike Group

Hamburg, Hamburg, Germany (Hybrid)
3 Months ago
PwC - Transformation Risk and Advisory Senior Manager

PwC

Toronto, Ontario, Canada (On-Site)
4 Months ago
Britive - STRATEGIC ACCOUNT EXECUTIVE

Britive

(Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Trellix is a global company redefining the future of cybersecurity. The company’s open and native extended detection and response (XDR) platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix’s security experts, along with an extensive partner ecosystem, accelerate technology innovation through machine learning and automation to empower over 53,000 business and government customers. More at https://trellix.com.

Get notified when new jobs are added by Trellix

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug