Simplify Logo

Full-Time

Principal Windows Security Researcher

Edr

Posted on 3/15/2024

Huntress

Huntress

201-500 employees

Managed endpoint detection and response services

Data & Analytics
Cybersecurity
AI & Machine Learning

Senior, Expert

Remote in USA + 1 more

Category
Cybersecurity
IT Project Management
IT & Security
Required Skills
PowerShell
Python
Requirements
  • Expert in Windows OS internals, components, APIs, and design
  • Prior experience with Windows OS kernel coding and device drivers
  • Experience testing EDRs, bypasses, and evasion techniques
  • Comfortable reverse engineering and using debuggers
  • Proficiency in multiple programming/scripting languages, such as C/C++/C#, PowerShell, and Python
  • Commitment to clear documentation of research findings
  • Experience with MITRE ATT&CK matrix, SIGMA, Yara, and Elasticsearch/Kibana
Responsibilities
  • Identify innovative ways to detect Windows OS threats
  • Develop cross-platform features that leverage telemetry from common OS subsystems such as file system, memory, process, and network activity
  • Research and development of sensor capabilities to provide visibility and detection support for attack techniques across supported Windows OS versions
  • Work collaboratively to implement detection logic
  • Identify and evaluate new telemetry opportunities
  • Identify and address gaps in product coverage
  • Respond to product escalations
  • Perform False Positive and False Negative investigations
  • Lead product research initiatives to develop and evaluate security product strategies and technologies
  • Coordinate with Product and Engineering teams to integrate and operationalize solutions developed by Threat Operations teams
  • Develop internal and external technical documentation to educate customers and communicate research findings to adjacent teams about security risks and opportunities
  • Mentor and teach technical expertise to advance the broader community
  • Promote Huntress' reputation through media interaction, public speaking, CFPs, CTFs, and blogs

The Huntress Managed Security Platform provides managed endpoint detection and response (EDR) capabilities, including 24/7 human threat hunting, ransomware detection, and security awareness training, to protect small and mid-market businesses from cyber threats. The platform combines human-powered solutions with technologies such as managed EDR, antivirus, and external recon to swiftly respond to active threats and find hackers hiding in plain sight.

Company Stage

Series C

Total Funding

$159.8M

Headquarters

Columbia, Maryland

Founded

2015

Growth & Insights
Headcount

6 month growth

25%

1 year growth

35%

2 year growth

80%

Benefits

100% remote work environment

Generous PTO including vacation, sick time, and paid holidays

12 weeks paid parental leave

Highly competitive and comprehensive medical, dental, and vision benefits plans

401(k) with 5% contribution regardless of employee contribution

Life and Disability insurance plans

Stock options for all full-time employees

One-time $500 stipend to build/upgrade home office

Annual allowance for education and professional development assistance

$75 USD/month digital reimbursement

Access to both Udemy and BetterUp platforms for coaching, personal, and professional growth

INACTIVE