Malware Analyst

hace 1 semana


En remoto, España ISC A tiempo completo

The Position
We are looking for a hands-on malware analyst to join our growing R&D team in Spain.

What You Will Be Doing

  • Vetting YARA rules and building new threat indicators (Python based ruleset), which will directly impact the verdict of our products
  • Building Python based integrations with other threat intelligence and SOAR platforms
  • Analyze interesting samples (malicious binaries, portable executables, scripts, documents, and packet captures) through reverse engineering to the point where you can identify if they are malicious.
  • Conduct deepdive technical analysis of malicious artifacts/events to identify, assess, and document cyberattack tools, tactics, and procedures including malware defense mechanisms such as antireverse, antidebug, and antivirtual machine (antievasion techniques)
  • Analyze modern malware based on public records or own research
  • Classify malware based on malware behaviors, malware commonalities, malware families

What We Need From You

  • You are passionate about developing customized technical solution sets to monitor and analyze several different malware families and develop products to mitigate threats including Advanced Persistent Threats (APT) and zeroday attacks
  • Strong understanding of the cyber threat ecosystem including targets, actors, and the TTPs they use to distribute malware
  • Ability to use static and dynamic methods to analyze a file using mainly user mode debugger disassembler and other tools
  • Knowledge of security and compliance frameworks including MITRE ATT&CK
  • Deep knowledge in operating system APIs and internals (Windows and Linux)
  • Python experience is welcome (you should have scripting experience)
  • Experience in some common malware techniques: Injection, Packing, Obfuscating...
  • Familiarity with ICS/IoT threats and security is an advantage
  • Familiarity with Agile / Scrum working environment, and tools like Bitbucket, Jira, Confluence, TeamCity is a plus

Why You'll Love Working Here - HR to update with latest pitch

  • Over marketable Compensation & Benefits package
  • Home Office Set Up allowance
  • Stable, growing international company background with an exceptional customer group
  • Opportunity to improve your professional skills
  • The newest technology environment
  • Opportunity for active recreation kettlebell and yoga classes, office massage, language courses
  • Attractive working environment nice office full of accessories (fruits every day, coffee, breakfast, tea etc.)
  • Regular team events and Happy Hour activities

Application Question(s):

  • Do you have experience in building integrations with SOAR platforms for a sandbox environment?
  • Have you developed any custom tools or scripts in Python?

Work Location:
Remote
  • Malware Analyst

    hace 1 semana


    En remoto, España ISC A tiempo completo

    **The Position** We are looking for a hands-on malware analyst to join our growing R&D team in Spain. **What You Will Be Doing** - Vetting YARA rules and building new threat indicators (Python based rule-set), which will directly impact the verdict of our products - Building Python based integrations with other threat intelligence and SOAR platforms -...

  • Malware Analyst

    hace 1 mes


    En remoto, España ISC A tiempo completo

    **About Us** We are a global cyber security company providing solutions for enterprises since 2002 to identify, detect, and remediate advanced security threats from data and devices coming into and out their networks. Trusted by over 1,000 organizations worldwide for this secure data flow, we prevent advanced security threats across multiple channels of...

  • Malware Analyst

    hace 4 semanas


    En remoto, España ISC A tiempo completo

    **About Us** We are a global cyber security company providing solutions for enterprises since 2002 to identify, detect, and remediate advanced security threats from data and devices coming into and out their networks. Trusted by over 1,000 organizations worldwide for this secure data flow, we prevent advanced security threats across multiple channels of...