Threat Researcher
Wiz
שכר לא צויןTel Aviv, היברידיסניורמשרה מלאה
משרה חיצונית, ההגשה באתר החברהאושר שהמשרה פתוחה לפני 10 שעות
Research emerging threats, CVEs, and misconfigurations, and assess their real-world exploitability and impact on customers. Build detection rules and automation, then work with Product and R&D to turn research into product capabilities.
מה תעשו
- Research emerging threats, CVEs, and misconfigurations to assess exploitability and customer impact.
- Design and test detection rules and scanning logic for exposed and vulnerable assets.
- Build automation to validate, benchmark, and monitor AI-driven detection capabilities.
- Investigate cloud services, frameworks, and commonly deployed technologies to uncover attack surfaces.
- Analyze scan results to identify and prioritize risks.
- Lead research projects from initial idea through production-ready detection, collaborating with Product and R&D.
דרישות
- 5+ years of hands-on experience in security research, red-teaming, penetration testing, incident response, or vulnerability research.
- Strong understanding of network and application security, including TCP/IP, DNS, TLS, web technologies, APIs, and exploitation techniques.
- Strong scripting and automation skills using Python, Bash, or equivalent.
- Hands-on experience with vulnerability scanners, detection rules, or automated vulnerability and exploitability validation tools.
- Strong writing and presentation skills in English and Hebrew.
יתרון
- Experience developing or researching cloud environments such as AWS, Azure, or GCP.
- Familiarity with security aspects of Kubernetes, containers, or CI/CD.
- Familiarity with AI-assisted development tools such as Claude Code.
- Experience with Burp Suite, nmap, Metasploit, Nuclei, or similar tools; published security research or open-source contributions.
תנאי סף
- 5+ years of relevant hands-on experience
- Strong writing and presentation skills in English and Hebrew
- Legal right to work in the country where the role is based, without visa sponsorship
Security ResearchPythonBashNetwork SecurityApplication SecurityCloud SecurityVulnerability ScanningDetection Engineering