DFIR & Threat Hunting Researcher

5 Days ago • 5 Years + • Research Development • $152,000 PA - $210,000 PA

Job Summary

Job Description

CyberArk, a leader in Identity Security, is seeking a Senior DFIR & Threat Hunting Researcher to join its Global Information Security Team. This role involves conducting digital forensics and threat-hunting across CyberArk's global network, endpoints, and cloud environments. Responsibilities include performing digital forensics analysis on various artifacts, supporting incident response with technical expertise, and maintaining forensic tools. The role also requires proactive threat hunting using various data sources, developing hunting hypotheses, and collaborating with the SOC team. Additionally, the researcher will stay updated on emerging threats, attack vectors, and security technologies, and contribute to developing tools and automation to enhance DFIR and threat-hunting capabilities.
Must have:
  • 5+ years in digital forensics and incident response
  • Hands-on experience with forensic tools
  • Experience with threat hunting tools (ELK, Splunk, etc.)
  • Knowledge of network protocols, OS, malware analysis, cloud security
  • Ability to automate tasks with Python & JS
  • Excellent communication and interpersonal skills
  • Excellent English proficiency (written and verbal)
  • Curious and creative mindset
  • Ability to work independently and collaboratively
Good to have:
  • Experience in a tech company or security consulting firm
  • Cloud forensics experience (AWS)
Perks:
  • Medical benefits
  • Dental benefits
  • Vision benefits
  • Financial benefits
  • Other benefits
  • Commissions or discretionary bonus

Job Details

Company Description

About CyberArk:
CyberArk (NASDAQ: CYBR), is the global leader in Identity Security. Centered on privileged access management, CyberArk provides the most comprehensive security offering for any identity – human or machine – across business applications, distributed workforces, hybrid cloud workloads and throughout the DevOps lifecycle. The world’s leading organizations trust CyberArk to help secure their most critical assets. To learn more about CyberArk, visit our CyberArk blogs or follow us on X, LinkedIn or Facebook.

Job Description

CyberArk, the global leader in Identity Security, is looking for a skilled and passionate Senior DFIR & Threat Hunting Researcher to join its Global Information Security Team. In this role, you will conduct digital forensics and threat-hunting activities across CyberArk's global network, endpoints, and cloud environments. You will also research and develop new methods and tools to enhance the detection and response capabilities of the CyberArk Information Security team.

Responsibilities:

  • Digital Forensics and Incident Response (DFIR):
  • Perform digital forensics analysis on various types of evidence, such as disk, memory, network, and cloud artifacts (AWS – advantage).
  • Support incident response efforts by providing technical expertise, containment, eradication, and recovery guidance.
  • Maintain and operate forensic tools and platforms, ensuring they are up-to-date and reliable.
  • Document and report on forensic findings and recommendations, following the established procedures and standards.
  • Threat Hunting:
  • Proactively hunt for malicious activity and indicators of compromise across CyberArk's network, endpoints, and cloud environments using various data sources and analytical techniques.
  • Develop and refine custom threat-hunting hypotheses, queries, and dashboards based on the latest threat intelligence and trends.
  • Collaborate with the SOC team to validate, escalate, and respond to identified threats.
  • Research and Development:
  • Research emerging threats, attack vectors, threat actors, ATPs, security technologies and CyberArk products and share insights and best practices with the team and the broader security community.
  • Develop and improve tools, scripts, correlation alerts and automation to enhance the SOC team's DFIR and threat-hunting capabilities.

#LI-JH1

Qualifications

  • Proven (5+ years) experience in digital forensics and incident response, preferably in a tech company or a security consulting firm.
  • Hands-on experience with industry standard forensic tools and platforms.
  • Hands-on experience with threat hunting tools, query languages and platforms, such as ELK, Splunk, QRadar, KQL, SQL etc.
  • Strong knowledge of network protocols, operating systems, malware analysis, and cloud security.
  • Ability to automate tasks using a scripting language such as Python & JS.
  • Excellent communication and interpersonal skills.
  • Excellent proficiency in English, both written and verbal, is a must.
  • Curious and creative mindset, with a passion for learning and solving complex problems.
  • Ability to work independently and collaboratively in a fast-paced, dynamic environment and with a multi-region team.

Additional Information

CyberArk is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status. 

The salary range for this position is $152,000 – $210,000/year, plus commissions or discretionary bonus, which will be based on the employee’s performance. Base pay may also vary considerably depending on job-related knowledge, skills, and experience. The compensation package includes a wide range of medical, dental, vision, financial, and other benefits. 

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Newton, Massachusetts, United States

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Research Development Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Power BI, Financial Statements, Data Modelling, and Star Schema

Riyadh, Riyadh Province, Saudi Arabia (On-Site)

Bischofshofen, Salzburg, Austria (On-Site)

Doha, Doha Municipality, Qatar (On-Site)

Paris, Île-de-France, France (On-Site)

Doha, Doha Municipality, Qatar (On-Site)

Sydney, New South Wales, Australia (On-Site)

Doha, Doha Municipality, Qatar (On-Site)

Sydney, New South Wales, Australia (On-Site)

Sydney, New South Wales, Australia (Hybrid)

Cleveland, Ohio, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Star schema

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug