Full-Time

Security Researcher & Analyst

Application Security

Confirmed live in the last 24 hours

Cloudflare

Cloudflare

5,001-10,000 employees

Provides CDN, security, and serverless solutions

No salary listed

Mid, Senior

Bengaluru, Karnataka, India

In Person

Category
Cybersecurity
IT & Security
Requirements
  • Hands-on experience working with threat detection and prevention product engineering teams, recognizing vulnerabilities and configuring mitigations or managing risks in existing and new products.
  • Apply a deep understanding of security vulnerabilities in web application and application security.
  • Reverse and research n-day exploits, proactively detect patterns of bot and fraud attacks, review false positive and false negative reports, and recommend security configurations.
  • Excellent at communicating the details about security forensics to technical and non-technical audiences. Including writing public facing research blogs.
  • Authoring periodic report on trends on Internet traffic and security attack insights.
  • Experience with modern cloud-based technologies used to deliver rapidly-changing products at scale.
  • Conduct penetration testing to identify security gaps and potential exploits across applications and services.
  • Develop, maintain, and enhance security dashboards to monitor and analyze attack trends, bot activity, and fraud detection metrics.
  • Leverage strong coding skills to build and automate security tools, improve system engineering workflows, and develop new security rules and heuristics.
Desired Qualifications
  • A degree in computer science, IT, systems engineering, or related qualification.
  • 4 years of work experience with incident detection, incident response, forensics, reverse engineering, security research or similar.
  • Ability to work under pressure in a fast-paced environment.
  • Strong attention to detail with an analytical mind and outstanding problem-solving skills. Excellent organizational skills.
  • Great awareness of cybersecurity trends and hacking techniques.
  • Demonstrated results in identifying, tracking and resolving issues to resolution in the areas of cybersecurity.
  • Strong written and verbal communication skills.
  • Experience in OWASP, security standards and best practice
  • Strong SQL experience.
  • Proficiency in penetration testing methodologies, tools, and vulnerability assessment techniques.
  • Experience in building security dashboards using tools like Grafana or similar visualization platforms.
  • Strong programming experience with expertise in Python, Go, Rust, or JavaScript to develop security tools and automation.
  • Prior experience or interest in Web Security, HTTP protocols, Python, Jupyter Notebook, and JavaScript is a huge plus!
  • Knowledge and experience with machine learning, statistical inference, and AI in general is a huge plus
  • Knowledge and experience with columnar database like Clickhouse
  • Familiarity writing and optimizing advanced SQL queries
  • Good Linux/UNIX systems knowledge
  • Presented in security conferences such as Blackhat, Defcon, Bsides etc.

Cloudflare enhances the performance, security, and reliability of websites and applications through services like content delivery networks (CDN) and cybersecurity protections against threats such as DDoS attacks. They also offer serverless computing solutions that allow developers to run code without managing servers. What makes Cloudflare unique is their freemium model, which provides basic services for free while charging for premium features, attracting a wide range of users from individual developers to large enterprises. Their goal is to improve internet services as the demand for faster and more secure online experiences continues to grow.

Company Size

5,001-10,000

Company Stage

IPO

Headquarters

San Francisco, California

Founded

2009

Simplify Jobs

Simplify's Take

What believers are saying

  • 'Pay Per Crawl' program creates new revenue streams for Cloudflare and its users.
  • Orange Me2eets taps into the growing demand for secure communication tools.
  • Recognition in email security by Forrester could attract more enterprise clients.

What critics are saying

  • AI chatbots reduce referral traffic, impacting Cloudflare's clients relying on web traffic.
  • 'Pay Per Crawl' model may deter AI companies, reducing platform attractiveness.
  • Orange Me2eets faces competition from established video conferencing platforms.

What makes Cloudflare unique

  • Cloudflare offers a unique 'Pay Per Crawl' program for AI bot access monetization.
  • Cloudflare's Orange Me2eets provides end-to-end encrypted, self-hosted video calling solutions.
  • Cloudflare's Log Explorer tool integrates logging solutions, reducing reliance on third-party tools.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Competitive salaries

Take-what-you-need paid vacation policy

Comprehensive health plans and benefits

Paid maternity and paternity leave

Commuter and ride share options

Returnships

Growth & Insights and Company News

Headcount

6 month growth

-1%

1 year growth

0%

2 year growth

-1%
Red Dog Security
Jul 5th, 2025
Cloudflare Blocks AI Web Crawlers by Default and Tests Pay-Per-Crawl Model

Cloudflare has announced a major policy shift, automatically blocking AI-powered web scraping for new users and launching a beta program that lets website owners charge AI companies for access to their content.

The Web Orchard
Jul 4th, 2025
Cloudflare Closing the Door on AI Crawlers

Announced on 1 July 2025, Cloudflare has launched tools to new and existing service users to help website owners decide which crawlers to allow access and choose to prevent AI crawler bots and stop being a source of their data learning process.

ANP Tech
Jul 3rd, 2025
Cloudflare Recognized as a Strong Performer in Email Security by Forrester

Cloudflare recognized as a Strong Performer in Email Security by Forrester.

SSB Crack
Jul 1st, 2025
Cloudflare Blocks AI Crawlers, Changing the Game for Web Content Access

As part of this strategy, Cloudflare has introduced a "Pay Per Crawl" program, currently in private beta, which will allow publishers to set fees for AI companies wishing to scrape their content.

SRN News
Jul 1st, 2025
Cloudflare launches tool to help website owners monetize AI bot crawler access

Cloudflare launches tool to help website owners monetize AI bot crawler access.