VIOLA

CAREERS

Looking for Your Next Dream Job?

Join Viola's Talent Network and get access to opportunities in Israel's top tech companies

Cyber Threat Investigator

ReasonLabs

ReasonLabs

Posted on Tuesday, September 5, 2023
THE HIRING MANAGER
Share
Cyber Threat Investigator
Share
About Us

ReasonLabs is a rapidly growing company in the cybersecurity industry. It was founded in 2016 with the goal of developing a powerful defense against ever-evolving cyber threats to users around the world. Today, ReasonLabs protects over 100M active users by detecting more than 24M threats every month.

What is the job

We are seeking a highly motivated and experienced Threat Researcher and Security Analyst to join our team. The ideal candidate will have a strong security-oriented mindset, a deep understanding of threat landscapes, and a proven track record in conducting research to uncover and mitigate potential security risks - as well as a goal-oriented focus and a self-driven approach to learning. This role will involve working closely with our R&D team, investigating data from various sources, and actively contributing to the improvement of our security technologies.

Responsibilities

There are multiple sources of data that help us detect and hunt for threats. Our aim is to take each of them and make sure we extract the most out of each source. Examples of such sources include:

  • EDR behavioral data
  • DB
  • Malware lab output
  • ML analysis of detected / undetected groups of resources Other responsibilities include:
  • Creating detection signatures for endpoints
  • Leading threat hunting projects
  • Investigating EDR data from our attack monitoring system
  • Ongoing lab analysis
  • Ability to transform research insights into product features
  • Using latest security insights to create best practices for security policies
  • Producing research content (research reports, security conference CFPs) based on latest research and novel findings
Requirements
  • At least 5 years research experience
  • Knowledge of programming languages (i.e. Python, C, PowerShell )
  • Understanding of how threat actors operate and familiarity with threat intelligence analysis
  • Knowledge of OS internals (Windows) - Must
  • Experience with product security detections (i.e. creating signatures, detection rules, YARA rules, etc.)
  • Experience in IR
  • Experience with RE - Advantage
Submit my resume