Senior Staff Security Researcher- Mac/IOS, Reverse Engineering

1 Hour ago • All levels
Cyber Security

Job Description

Zscaler, a leader in cloud security, is seeking a Senior Staff Security Researcher for its Threatlabz team. This role involves performing static and dynamic analysis of macOS and iOS applications, reverse-engineering malware, researching the latest macOS security features, and developing custom tools. The researcher will collaborate with engineering and threat intelligence teams to enhance product defenses, contributing to Zscaler's mission of making the cloud a safe and enjoyable experience for enterprises globally.
Good To Have:
  • Experience with other platforms, such as Windows or Linux, for comparative analysis
  • Prior experience in malware analysis or vulnerability research
  • Understanding of network protocols and system-level communication mechanisms
Must Have:
  • Perform static and dynamic analysis of macOS and iOS applications, firmware, and system internals to identify vulnerabilities and malicious functionality
  • Reverse-engineer and Malware Analyst malware samples to understand their behaviour, capabilities, and attack vectors
  • Research and stay current with the latest macOS security features, kernel updates (XNU), frameworks, and common malware techniques
  • Develop custom tools and scripts to aid in reverse engineering, binary analysis, and automation of malware related tasks
  • Collaborate with engineering, QA, and threat intelligence teams to integrate new security features and improve product defences
  • Proficiency in C, C++, Objective-C, Swift, and Assembly language (x86_64 and ARM64)
  • Deep knowledge of macOS architecture, Mach-O binary format, frameworks, and security mechanisms
  • Extensive experience with IDA Pro, Ghidra, Hopper, Binary Ninja, Frida, Cycript, otool, nm, lipo, Wireshark, hex editors
  • Strong Python scripting skills for automating analysis tasks
  • Ability to decompile, disassemble, and de-obfuscate closed-source binaries
Perks:
  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks

Add these skills to join the top 1% applicants for this job

cpp
game-texts
quality-control
agile-development
macos
linux
threat-intelligence
assembly-language
wireshark
cloud-security
python
objective-c
swift

About Zscaler

Serving thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler.

Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.

We're looking for an experienced Senior Staff Security Researcher to join our Threatlabz team to contribute as Security Researcher, Reporting to the Senior Manager,Threat Research. You'll be responsible for:

  • Performing static and dynamic analysis of macOS and iOS applications, firmware, and system internals to identify vulnerabilities and malicious functionality
  • Reverse-engineering and Malware Analyst malware samples to understand their behaviour, capabilities, and attack vectors, contributing to the development of detection and prevention strategies
  • Researching and stay current with the latest macOS security features, kernel updates (XNU), frameworks (e.g., Endpoint Security, Network Extensions), and common malware techniques
  • Developing custom tools and scripts to aid in reverse engineering, binary analysis, and automation of malware related tasks
  • Collaborating with engineering, QA, and threat intelligence teams to integrate new security features and improve product defences

What We're Looking for (Minimum Qualifications)

  • Proficiency in system-level languages such as C, C++, Objective-C, Swift, and Assembly language (x86_64 and ARM64)
  • Deep knowledge of macOS architecture, including the Mach-O binary format, frameworks (Cocoa, AppKit), and security mechanisms like System Integrity Protection (SIP), Transparency, Consent, and Control (TCC), and Gatekeeper
  • Extensive hands-on experience with industry-standard reverse engineering tools, such as - IDA Pro, Ghidra, Hopper, Binary Ninja, Frida, Cycript, otool, nm, lipo, Wireshark, hex editors
  • Strong scripting skills, particularly in Python, for automating analysis tasks
  • Decompile, disassemble, and de-obfuscate closed-source binaries to reconstruct and understand the code's logic without access to the source code

What Will Make You Stand Out (Preferred Qualifications)

  • Experience with other platforms, such as Windows or Linux, for comparative analysis
  • Prior experience in malware analysis or vulnerability research
  • Understanding of network protocols and system-level communication mechanisms

#LI-Hybrid

#LI-PM5

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.

Set alerts for more jobs like Senior Staff Security Researcher- Mac/IOS, Reverse Engineering
Set alerts for new jobs by Zscaler
Set alerts for new Cyber Security jobs in India
Set alerts for new jobs in India
Set alerts for Cyber Security (Remote) jobs

Contact Us
hello@outscal.com
Made in INDIA 💛💙