View All Jobs 159078

Senior Threat Researcher 1 - Remote Eligible

Translate threat intelligence into high-fidelity detection rules for complex cyber threats
London
Senior
yesterday
Sophos

Sophos

A global cybersecurity leader offering next-generation solutions for endpoint, network, and cloud security to protect against complex threats.

Senior Threat Researcher 1

The role involves analyzing advanced security threats and translating threat intelligence into high-fidelity detections across the platform. You will develop countermeasures to detect advanced threats based on research and intelligence from the CTU team, analyze endpoint behaviors and logs to design detections using multi-source telemetry, and continuously refine and monitor detection rules to optimize the signal-to-noise ratio for alerts.

You will need a strong passion for cybersecurity research, hands-on experience in scripting languages, and knowledge of CI/CD pipelines, testing frameworks, and automation principles. Proficiency in analyzing logs from firewalls, proxies, and security infrastructure to identify anomalies, experience in malware analysis, and familiarity with event logs, traffic pattern anomalies, and threat hunting methodologies are also required.

At Sophos, we believe in the power of diverse perspectives and encourage you to apply even if you don't check every box in a job description. We operate a remote-first working model, with some roles requiring a hybrid approach. We also have a great sense of fun and team spirit, employee-led diversity and inclusion networks, annual charity and fundraising initiatives, global employee sustainability initiatives, and global fitness and trivia competitions. We are committed to ensuring equality of opportunity and encourage applicants who can contribute to the diversity of our team.

+ Show Original Job Post
























Senior Threat Researcher 1 - Remote Eligible
London
Human Resources
About Sophos
A global cybersecurity leader offering next-generation solutions for endpoint, network, and cloud security to protect against complex threats.