We are looking for a Principal Network Security Researcher to join our NDR behavioral detection team.
You will create statistics-based classification algorithms detecting everything from network entities through process behaviors and attackers operating in enterprise-scale networks using data from multiple network and endpoint sources; from analyzing attack patterns, finding statistical anomalies, choosing the right features, training the right model and validating that you detect the right concept on real customer data with real APTs.
Your Impact:
Research new methods to detect targeted attackers operating in networks and endpoints by utilizing enormous amounts and varied types of data
Simulate attacks in the lab and conduct a deep analysis of the behavior
Use and develop machine learning algorithms and techniques to create and improve our models
Be part of a diverse research group, improving our research processes and leading us to be a better team creating a better product
Stay up to date with APTs, attacker methodologies, and TTPs.
You will create statistics-based classification algorithms detecting everything from network entities through process behaviors and attackers operating in enterprise-scale networks using data from multiple network and endpoint sources; from analyzing attack patterns, finding statistical anomalies, choosing the right features, training the right model and validating that you detect the right concept on real customer data with real APTs.
Your Impact:
Research new methods to detect targeted attackers operating in networks and endpoints by utilizing enormous amounts and varied types of data
Simulate attacks in the lab and conduct a deep analysis of the behavior
Use and develop machine learning algorithms and techniques to create and improve our models
Be part of a diverse research group, improving our research processes and leading us to be a better team creating a better product
Stay up to date with APTs, attacker methodologies, and TTPs.
Requirements:
In-depth Knowledge of network protocols, including but not limited to HTTP/S, SMB, RPC, DNS, DHCP, Kerberos, SMTP etc
Intimate knowledge and understanding of attack methods and techniques over complex enterprise networks
Python software development experience
Experience working with large datasets
Ability to drive and own projects
Independent and team player, critical thinker
Advantage if you have exploitation knowledge and experience
Advantage if you have experience in machine learning or data analysis.
In-depth Knowledge of network protocols, including but not limited to HTTP/S, SMB, RPC, DNS, DHCP, Kerberos, SMTP etc
Intimate knowledge and understanding of attack methods and techniques over complex enterprise networks
Python software development experience
Experience working with large datasets
Ability to drive and own projects
Independent and team player, critical thinker
Advantage if you have exploitation knowledge and experience
Advantage if you have experience in machine learning or data analysis.
This position is open to all candidates.