We are seeking an experienced security researcher who is excited by uncovering unknown attacks to join our Israeli research team and focus on detecting and disrupting sophisticated enterprise attacks. The job includes researching novel attack techniques, hunting through our rich sensor data, identifying necessary optics for detecting malicious behaviour and crafting detection and protection logic to ensure compromise does not go undetected.
Microsofts mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities
Investigate, analyse, and expand MDE security, by exploring real incidents, developing durable protection strategies, and circumventing threats across the entire kill-chain
You will collaborate with multiple product teams to design sensors, implement protection ideas, and validate their effectiveness using a data-driven approach
You will collaborate with data science teams to drive ML based protections, understand, and identify detection gaps, capabilities, assumptions, and improvements
Be involved in customer conversations to identify opportunities, gaps, and concerns to improve product protection value
BS+ in Computer Science\Computer Engineering or equivalent engineering degrees
You have 6+ years of software development/research experience
You have In-depth knowledge and experience with the security threat landscape
You have extensive, practical OS internals knowledge of Windows
You have reverse Engineering skills: familiar with debuggers, disassemblers, protocols, file formats
Excellent cross-group and interpersonal skills
Code fluency in either C#, C, Python or Rust
Preferred qualifications:
Offensive security research experience
Digital forensics, Incident response and threat hunting skills
Industry recognized author of security research papers, blogs, or books
Low-level/security knowledge of other operating systems
Familiarity with cloud environments, and hybrid cloud enterprise services