Full-Time

Senior Engineering Manager

Python, Pen-testing, Nuclei

Posted on 11/15/2024

Recorded Future

Recorded Future

1,001-5,000 employees

Provides machine-readable threat intelligence solutions

Cybersecurity

Senior

Boston, MA, USA + 1 more

More locations: Arlington, VA, USA

Category
Engineering Management
Software QA & Testing
Software Engineering
Required Skills
Python
JavaScript
Go
C/C++
Requirements
  • A degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
  • A minimum of 5 years of substantial experience in cybersecurity, with a focus on threat detection, penetration testing, or vulnerability assessment.
  • In-depth understanding of attack surface management, including asset discovery, service fingerprinting, enumeration, and vulnerability scanning.
  • Extensive experience with tools such as Tenable, Rapid7, Qualys, or Nuclei for creating and validating network vulnerability checks.
  • Experience with Internet-scale scanning and discovery.
  • Strong grasp of cybersecurity principles, attack trajectories, and vulnerability analysis techniques.
  • Demonstrable experience in researching and analyzing new cyber threats across various industries and timeframes.
  • Proven ability to deploy vulnerable infrastructure in a lab environment for threat analysis.
  • Experience authoring signatures and checks for vulnerability identification.
  • Practical experience with recon and security testing tools such as NMap, Zmap, Burp, Zap, Amass, and Subfinder.
  • Experience with vulnerability research and binary analysis for patch diffing.
  • Familiarity with cyber threat intelligence tools like DomainTools, VirusTotal, SHODAN, and Censys.
  • Strong technical writing skills with a portfolio of published work.
  • Proficiency in scripting and programming languages such as YAML, Python, Golang, Javascript, and C.
  • Prior experience in a quick reaction or incident response team environment.
Responsibilities
  • Lead the research and analysis of current and emerging digital threats, identifying vulnerabilities and devising defensive strategies for our cybersecurity scanning products.
  • Oversee and mentor junior R&D personnel, guiding their research efforts and ensuring their work aligns with the company’s strategic goals.
  • Continuously monitor and assess the threat landscape to ensure our products remain effective against the latest cybersecurity threats.
  • Develop rapid response strategies to new threats, ensuring timely updates to our scanning products.
  • Conduct in-depth vulnerability assessments, including the creation of custom network vulnerability checks and validation techniques.
  • Work closely with product development teams to integrate research findings into product enhancements and new feature development.
  • Produce high-quality technical documentation, including research papers, vulnerability reports, and user guides, that translates complex concepts into accessible content.
  • Drive the innovation of new techniques for threat detection, vulnerability analysis, and defensive strategies, ensuring our products are always ahead of the curve.
  • Utilize common threat intelligence models such as MITRE ATT&CK, D3FEND, the Diamond Model, and the Cyber Kill Chain to enhance threat detection capabilities.
  • Stay up to date with industry trends, participate in cybersecurity forums, and contribute to the broader cybersecurity community through research publications and presentations.

Recorded Future provides threat intelligence in the cybersecurity field by gathering and analyzing information about potential threats to organizations. Their intelligence is delivered in a machine-readable format, making it easy for clients to integrate with their existing security systems. Unlike competitors, Recorded Future focuses on partnerships with Value Added Resellers (VARs) to enhance their offerings and provide comprehensive support. The company's goal is to help organizations lower the risk of cyber attacks through effective threat intelligence and strong partner relationships.

Company Stage

Acquired

Total Funding

$57.1M

Headquarters

Somerville, Massachusetts

Founded

2009

Growth & Insights
Headcount

6 month growth

32%

1 year growth

32%

2 year growth

32%
Simplify Jobs

Simplify's Take

What believers are saying

  • The launch of generative AI tools and Enterprise AI for intelligence positions Recorded Future at the forefront of innovation in threat intelligence.
  • Strategic investments, such as in Hunt.io, demonstrate Recorded Future's commitment to staying ahead in advanced adversary hunting and threat detection.
  • The company's comprehensive support and training for VARs ensure successful implementation and growth, benefiting both partners and clients.

What critics are saying

  • The rapid evolution of cyber threats requires continuous innovation, posing a challenge to maintain a competitive edge.
  • Dependence on VARs for market reach could limit direct customer relationships and feedback, potentially impacting product development.

What makes Recorded Future unique

  • Recorded Future's machine-readable threat intelligence format allows seamless integration with existing security systems, setting it apart from competitors who may offer less compatible solutions.
  • Their partnership model with Value Added Resellers (VARs) ensures a broader market reach and enhanced support, unlike companies that rely solely on direct sales.
  • The company's focus on generative AI and behavioral analytics provides advanced, real-time threat analysis, distinguishing it from traditional threat intelligence providers.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Professional development and career advancement

Flexible work environment, be yourself

Generous vacation policy

Wellness programs

Company outings

Competitive compensation and benefits

Free snacks, drinks, and coffee in the office

Parental leave program

Environmentally conscious