Threat Detection Researcher (Windows/Linux/MacOS)
Posted 25 days ago · 56 applicants
Saving, applying or scoring takes a few seconds to set up your free account.
The role in plain words
In this role, you will analyze cloud and AI threats, investigate real-world attacks, and develop security detections for the Wiz Runtime Sensor. You will collaborate with R&D to turn research into product features and work directly with customers on suspicious incidents. Additionally, you will publish external content such as blog posts and security conference talks.
- 6+ years of experience in security or threat research conducting deep research with actionable conclusions
- Intimate knowledge of OS internals (Windows, Linux, MacOS) and networking
- Familiarity with cloud services, Kubernetes, cloud environment architecture, and major cloud providers (AWS, GCP, Azure)
- Proficiency in Python for tool development and automation
- Experience delivering security detections in customer-facing products
- Knowledge of Go, Rust, or C/C++
- Hands-on experience with malware analysis, reverse engineering, or vulnerability research
- Familiarity with notable threat actors and threat intelligence analysis
- Incident Response (IR), red-team, or threat-hunting experience
- Experience leveraging AI to supercharge research and detection workflows
Extracted from the job description · kept up to date automatically
Who this suits
This role suits senior threat researchers with at least 6 years of experience, strong OS internals knowledge, Python proficiency, and cloud environment expertise. It is less ideal for junior candidates or those requiring visa sponsorship.
Full job description
Original listing · kept for referenceCome join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google’s Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation.
Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We’re honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you’ll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun!
SUMMARY
We’re looking for a top-notch Threat Detection Researcher to join our team and spread the power of Wiz. In this role, you will further develop the Wiz Runtime Sensor as part of our threat research team.
WHAT YOU’LL DO
• Develop detections and tools to protect customers from cloud threats
• Investigate attacks on cloud environments and malware targeting cloud and AI workloads
• Hunt and analyze real-world attacks and emerging cloud and AI threats
• Collaborate closely with the R&D team to transform research insights into product features
• Work with customers in response to requests related to suspicious activity or potential incidents
• Create best practices and security policies based on research findings
• Deliver external-facing content (blog posts and talks at security conferences) based on security insights and novel research
WHAT YOU’LL BRING
• 6+ years of experience in security or threat research in which you conducted deep research with actionable conclusions and impacts
• Intimate knowledge of OS internals (Windows/Linux/MacOS) and networking
• Familiarity with cloud services, Kubernetes, cloud environment architecture, and the major cloud providers (AWS, GCP, Azure)
• Proficiency in Python for tool development and automation (knowledge of Go, Rust, or C/C++ – an advantage)
• Experience delivering security detections in customer-facing product(s)
• The ability to learn independently, to be self-driven and goal-oriented
• Excellent communication and teamwork skills
ADVANTAGE
• Hands-on experience with malware analysis/reverse engineering/vulnerability research
• Familiarity with notable threat actors and threat intelligence analysis
• IR/red-team/threat-hunting experience
• Experience leveraging AI to supercharge research and detection workflows
• Deep knowledge of modern threat classes (Supply Chain, CI/CD, or threats targeting AI infrastructure and agentic frameworks)
By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy and that you consent to the retention of your application for consideration for future opportunities at Wiz.
Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship.
Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.
By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.
Questions about this role
- This listing did not state a salary. We only show pay when the employer publishes it.
- 6+ years of experience in security or threat research conducting deep research with actionable conclusions, Intimate knowledge of OS internals (Windows, Linux, MacOS) and networking, Familiarity with cloud services, Kubernetes, cloud environment architecture, and major cloud providers (AWS, GCP, Azure), Proficiency in Python for tool development and automation, Experience delivering security detections in customer-facing products