Full-Time

Senior Threat Researcher

Behavioural

Posted on 7/26/2024

Sophos

Sophos

1,001-5,000 employees

Provides cybersecurity solutions for businesses

No salary listed

Senior, Expert

Remote in UK

Category
Cybersecurity
IT & Security
Required Skills
Python
Communications
Connection
Connection
Connection
logo

Get referrals →

You have ways to get a Sophos referral from your network.

💡

Applications through a referral are 3x more likely to get an interview!

Requirements
  • Strong knowledge of Windows Internals including Memory management, Processes, Threads.
  • Proficiency in both static and dynamic analysis of threats, using tools such as IDAPro, WinDbg
  • Demonstrated programming experience. Preferred: Python, Lua.
  • Excellent communication skills with the ability to demonstrate complex technical problem to peer researchers as well as to product engineering team
  • Excellent analytical and problem-solving skills with the ability to think strategically and creatively
  • Bachelor’s degree in computer software (Computer Security preferable) or equivalent experience
Responsibilities
  • Conduct in-depth behavioural analysis of Windows threats
  • Develop Behavioural rules for various threat behaviours including hands-on keyboard attack, malware payloads, initial attack vectors and Advanced Persistent Threats (APTs)
  • Produce quality threat analysis reports for both internal and external audience
  • Collaborate with other cross-functional teams to improve behavioural protection capability based on the threat analysis
  • Guide and train junior team members in assisting malware analysis, peer code review
  • Assist in the development of tools wherever necessary to improve day-to-day task

Sophos provides cybersecurity solutions to protect businesses from digital threats like malware, ransomware, and phishing attacks. Their products include endpoint protection for individual devices, network security for entire systems, and mobile security for smartphones and tablets. A key feature is Sophos Central, a cloud-based management console that allows users to oversee all security measures from one platform, making it easier to manage and respond to threats. Additionally, Sophos offers Managed Detection and Response (MDR) services, where experts monitor and address security incidents for clients who may not have in-house capabilities. Unlike many competitors, Sophos focuses on an integrated approach to security, combining various services and products under a subscription model, which provides consistent revenue and allows for ongoing support and training for clients.

Company Size

1,001-5,000

Company Stage

Acquired

Total Funding

$4.7B

Headquarters

Abingdon, United Kingdom

Founded

1985

Simplify Jobs

Simplify's Take

What believers are saying

  • Growing demand for AI-driven cybersecurity boosts Sophos' market potential.
  • Hybrid work environments increase need for Sophos' endpoint security solutions.
  • Rising cyber insurance adoption favors Sophos' advanced security offerings.

What critics are saying

  • Sophos must address data theft risks in the smart car sector.
  • Sophos faces challenges from sophisticated cyber attackers' evolving techniques.
  • Reliance on compromised credentials as attack vectors poses a vulnerability.

What makes Sophos unique

  • Sophos Central offers a unified platform for managing diverse security solutions.
  • Sophos provides Managed Detection and Response services for expert incident handling.
  • Sophos' cloud-based management enhances security operations and defense mechanisms.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Disability Insurance

Remote Work Options

Wellness Program

Mental Health Support

Company News

TechMoran
May 8th, 2025
Sophos Warns Of The Risk Of Data Theft In The Smart Car Sector

Sophos is warning of rising risks of data theft in the smart car sector at the recent Shanghai Motor Show held in China to celebrate electric cars and onboard intelligence. Of the 90 million vehicles (cars, trucks, and buses) produced worldwide in 2024, 31.3 million were produced in China, i.e. 34% of the global total, according to an Inovev report. France is also following this trend, with many consumers now opting for cars from Chinese brands such as BYD, Xpeng, Beiking and Hongqi.Sophos, a global leader of innovative security solutions for defeating cyberattacks, is drawing users’ attention to how their personal data could be used for malicious purposes. Indeed, it is inadvisable to synchronize one’s phone or any other device with a vehicle, whether their own or even more so in the case of a rental car, as the car could use its internet connectivity to make a copy of contacts and other sensitive data and upload to the Internet, long before one has the ability of deleting it when returning the rental car, for example. A modern vehicle is packed with computers, lidars, various radios, and external cameras. What’s more, it is also equipped with aerial updating capabilities that could very well be repurposed as a surveillance platform

TechMoran
Apr 28th, 2025
World Password Day: Sophos Advocates The End Of The Password

On the occasion of World Password Day, Sophos, a global leader of innovative security solutions for defeating cyberattacks, stresses the limits of the password and knowledge-based authentication methods. Indeed, the sophisticated techniques, tactics, and procedures (TTPs) of cyber attackers in 2025 will enable them to easily circumvent traditional authentication methods. As such, the 2025 edition of Sophos’ Active Adversary report indicates that compromised credentials represent the leading cause of attack for the second year running (41% of cases). It is therefore essential that users and companies adopt more robust methods to protect their data against credential theft.The Limits of Knowledge-Based ProtectionDual or multi-factor authentication (2FA/MFA) solutions are widely adopted. However, like the password, these additional layers of protection often rely on knowledge-based secret codes shared via SMS or authentication applications. Unfortunately, many of these methods remain vulnerable

TechMoran
Apr 9th, 2025
Sophos Appoints Chris Bell To Lead Global Channel Strategy

Sophos, a global cybersecurity solutions firm has named Chris Bell as senior vice president of global channel, alliances and corporate development.Bell will lead the evolution of Sophos’ global channel strategy to deliver a world-class partner experience.“Partners need adaptable strategies that prioritize flexibility to stay ahead of the increasingly complex threat landscape,” said Bell. “Unifying Sophos’ and Secureworks’ portfolios presents a unique opportunity to accelerate a future-ready channel program that arms partners with the technology, services, insights, and enablement needed to protect customers and fuel long-term growth.”Bell joined Sophos following its acquisition of Secureworks, where he served as chief strategy officer, responsible for long-term vision, strategic partnerships, corporate development and strategy. Building on his career of more than two decades working in the technology industry, including nearly a decade in cybersecurity and channel; Bell’s leadership will focus on developing and executing a channel strategy that prioritizes expanding reach, empowering partners and driving growth. Key priorities for Bell at Sophos will include:. §  Enhancing Sophos Partner Experience to make it seamless for partners to do business with Sophos at high velocity, while streamlining operations.§  Continued Innovation for Managed Service Providers (MSPs) and Managed Security Service Providers (MSSPs) with Sophos’ industry-leading cybersecurity platform, enabling superior cybersecurity outcomes for customers, enhancing operational efficiency for security analysts, and boosting profitability for partners.§  Fueling Partner Growth with service delivery competencies,expanded partner enablement programs including persona-based training and fast-track training to expand partners cybersecurity expertise.§  Increasing Sophos’ Market Reach by leveraging the unified portfolio of Sophos and Secureworks to deliver best-in-class security technologies and services, empowering partners to enhance cybersecurity and strengthen the security posture of organizations, from commercial to enterprise.§  Expanding Routes to Market by bolstering Sophos’ presence across technology alliances, marketplaces and the cyber insurance ecosystem. Sophos will also continue to maintain its focus across resellers, service providers, and OEM channels.A core piece of Sophos’ channel strategy is to better equip partners in addressing the evolving security challenges faced by businesses of all sizes

Sophos
Apr 8th, 2025
Sophos Firewall v21.5 early access is now available

Last year, Sophos Group launched its DNS Protection service and made it free for all Xstream protection-licensed firewall customers.

ChannelVision Magazine
Apr 8th, 2025
Sophos Names SVP, Global Channel, Alliances, Corporate Development

Bell joined Sophos following its acquisition of Secureworks, where he served as chief strategy officer, and was responsible for long-term vision, strategic partnerships, corporate development and strategy.

INACTIVE