Role Summary
Teams mandate is to find new and notable threats, assess their risk and produce protection where necessary. This include advanced targeted attacks, "attack tool" research, handling of vulnerability advisories and publishing blogs and whitepapers. The successful candidate will provide analysis of the evolving cyber threat landscape and contribute to create the next generation of SophosLabs research tools. The ideal candidate is passionate about computer security and has high aptitude for solving challenging puzzles with an attention to detail.
What you will do
- Perform cyber threat analysis utilizing multiple information sources
- Engage research based on cyber threat intelligence
- Investigate APT campaigns and understand cyber threat actors, their motivations and technical capabilities
- Identify steps to be taken to respond and minimize the impact of emerging threats
- Reverse engineer files to discover their intended functionality and risks to customers
- Write threat descriptions for publication on the Sophos website and threat research whitepapers in a timely fashion
- Triage requests submitted by other departments, respond to tasks or escalate complex issues to senior team members
- Generating intelligence on new trends in the Threat Landscape and distributing between departments outside of the Lab
- Identify opportunities to write blogs for the Sophos website to raise customer awareness
What you will bring
5+ yrs in Threat Researcher roleExperience with x86 assemblyWindows InternalsComputer and Web Security experienceProgramming skills and experience (C / C++ / Python / Perl)Reverse Engineering experience using IDA Pro, WinDbg, OllyDbg and Hex editorsGood written and verbal communication skillsUnderstanding of scripting basics (Perl / Python / Regexp)Experience with a wide array of Internet technologies and protocols (HTML, JavaScript, SMTP, DNS)Experience with a broad range of operating systemsBachelor’s degree in computer software (or equivalent)#LI-Remote#B2 Ready to Join Us? At Sophos, we believe in the power of diverse perspectives to fuel innovation. Research shows that candidates sometimes hesitate to apply if they don't check every box in a job description. We challenge that notion. Your unique experiences and skills might be exactly what we need to enhance our team. Don't let a checklist hold you back – we encourage you to apply. What's Great About Sophos?
Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach. While we are a remote first organization, applicants must have legal authorization to work in the jurisdiction where the position is posted, without requiring employer sponsorship.Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spiritEmployee-led diversity and inclusion networks that build community and provide education and advocacyAnnual charity and fundraising initiatives and volunteer days for employees to support local communitiesGlobal employee sustainability initiatives to reduce our environmental footprintGlobal fitness and trivia competitions to keep our bodies and minds sharpGlobal wellbeing days for employees to relax and rechargeMonthly wellbeing webinars and training to support employee health and wellbeing