Senior Malware Researcher
פורסם לפני 13 ימים · 33 מועמדים
התפקיד במילים פשוטות
התפקיד כולל ניתוח והנדסה לאחור (Reverse Engineering) של נוזקות וכלי תקיפה המשמשים קבוצות תקיפה מתקדמות (APTs). העבודה היומיומית כוללת ניתוח סטטי ודינמי של קבצים בינאריים ותסריטים, חילוץ הגדרות ותשתיות שליחה ובקרה (C2), ופיתוח חתימות זיהוי כמו כללי YARA. בנוסף, התפקיד כולל שיתוף פעולה עם חוקרי בינה מלאכותית לפיתוח כלי ניתוח אוטומטיים.
- 7+ years of experience in cyber security, with significant hands-on experience in malware research focused on APTs and state-linked actors
- IDA Pro
- Ghidra
- x64dbg/WinDbg
- Deep understanding of OS internals (Windows/Linux/Android/Mac), common persistence and execution techniques, and modern offensive tradecraft
- Experience researching or defending government or critical infrastructure organizations
חולץ מתיאור המשרה · מתעדכן אוטומטית
למי זה מתאים
תפקיד זה מתאים לחוקרי אבטחת מידע מנוסים עם לפחות 7 שנות ניסיון במחקר נוזקות והתמקדות בקבוצות APT, השולטים בכלי הנדסה לאחור כמו IDA Pro או Ghidra. הוא פחות יתאים למי שאין לו ניסיון מעשי מעמיק בניתוח קבצים בינאריים מורכבים או הבנה עמוקה של מערכות הפעלה שונות.
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןEvery nation has data. Few can protect it. Fewer still can act on it.
Dream is the sovereign AI and national cyber-defense company for governments.
We help nations secure their most critical systems, connect fragmented information at a national scale, and turn their most sensitive data into decisions, all fully sovereign.
This is more than a job. It's a Dream job, where you'll work at a global scale alongside some of the best AI researchers, cyber operators, and government experts in the world.
We defend nations against the most advanced threats in the world with a national security suite that offers AI-native resilience against APTs with visibility, insights and mediation across Posture, CTI, and Detection & Response, all fully sovereign.
The Dream Job:
As a Senior Malware Researcher, you will analyze and reverse engineer malware and tooling used by advanced threat actors, particularly those targeting governments and critical infrastructure. You will apply deep expertise in binary and script analysis to uncover capabilities, configurations, and C2 infrastructure for threat actor attribution and mitigations.
Your work will power DREAM’s malware catalog, strengthen our understanding of threat actors’ technical capabilities, and directly support the development of next-generation AI-driven "artificial cyber researchers".
The Dream-Maker Responsibilities:
• Perform in-depth static and dynamic analysis of malware, implants, loaders, and related tooling used by APTs and other sophisticated adversaries.
• Reverse engineer binaries and scripts (e.g., PE, ELF, .NET, PowerShell, JavaScript/VBA) to determine capabilities, execution flow, persistence mechanisms, and evasion techniques.
• Extract and document configuration data and C2 information, and map these to campaigns, infrastructure, and threat actors in collaboration with CTI researchers.
• Develop and maintain detection and hunting artifacts such as YARA rules, VT LiveHunt queries, CAPA rules, and sandbox behavior signatures.
• Work closely with CyberAI researchers on the development of next-generation artificial cyber researchers and AI-driven analysis capabilities.
The Dream Skill Set:
• 7+ years of experience in cyber security, with significant hands-on experience in malware research focused on APTs and state-linked actors.
• Strong proficiency with RE tools such as IDA Pro, Ghidra, x64dbg/WinDbg, and common dynamic analysis/sandbox environments.
• Deep understanding of OS internals (Windows/Linux/Android/Mac), common persistence and execution techniques, and modern offensive tradecraft.
• Demonstrated experience extracting configs, C2 endpoints, and capabilities from both compiled and scripted malware.
• Strong investigative mindset, attention to detail, and ability to work with incomplete or obfuscated data.
• Experience researching or defending government or critical infrastructure organizations- Advantage.
Never Stop Dreaming...:
If you think this role doesn't fully match your skills but are eager to grow and break glass ceilings, we’d love to hear from you!
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- 7+ years of experience in cyber security, with significant hands-on experience in malware research focused on APTs and state-linked actors, IDA Pro, Ghidra, x64dbg/WinDbg, Deep understanding of OS internals (Windows/Linux/Android/Mac), common persistence and execution techniques, and modern offensive tradecraft