Principal Security Researcher - Linux & API Security EDR (cortex)
Palo Alto Networks
**Our Mission**
At Palo Alto Networks® everything starts and ends with our mission:
Being the cybersecurity partner of choice, protecting our digital way of life.
Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.
**Who We Are**
We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday - from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included.
As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few!
**Your Career**
Are you an innovative security researcher with a deep understanding of Linux systems and a passion for protecting modern environments? Do you want to lead the charge in securing enterprise networks against the latest threats?
We're looking for a skilled professional to join our team, focusing on the critical and rapidly evolving fields of Linux and API security. You'll be a foundational member of a **new and growing team** dedicated to the "blue ocean" of detection and developing multiple new fields within the biggest cybersecurity enterprise in the world. This is a unique opportunity to apply your expertise and influence the future of threat prevention, helping us build cutting-edge security solutions from the ground up.
**Your Impact**
+ Playing a pivotal role in shaping the future of our security solutions.
+ Enhance the effectiveness of our product by designing cutting-edge protection components and developing sophisticated detection rules.
+ Research Linux OS internals, Virtualized environments, and low-level system behaviors to inform and enhance our attack prevention mechanisms.
+ Investigate and develop innovative methods for detecting threats and securing APIs, ensuring robust protection for modern applications and cloud-native environments.
+ Apply sophisticated AI and big data approaches to investigate and research large amounts of data across our clients.
+ Research and lead novel protection ideas to a production-grade level, serving as a subject matter expert.
+ Stay up to date with the latest attacker methodologies, APT campaigns, and TTPs targeting Linux systems and APIs.
+ Conduct static and dynamic reverse engineering of Linux malware to uncover new techniques and develop corresponding mitigation strategies.
+ Work closely with engineering, product management, and other research teams to translate research findings into production-grade features.
**Your Experience**
+ 7+ years of overall experience in cybersecurity research, with a proven track record of impactful projects.
+ In-depth knowledge of operating system internals, including user and kernel space.
+ Proficiency in programming languages like Python, C, and/or C++, with a strong understanding of system-level programming and APIs.
+ Strong knowledge of the cyber threat landscape, modern malware techniques, and APTs.
+ Hands-on experience with real-world threat hunting, big-data cyber research, incident response, or detection engineering.
+ Excellent problem-solving skills and a passion for cybersecurity innovation.
+ Ability to work independently, take initiative, and collaborate effectively within a team.
**The Team**
+ Experience in reverse engineering, including familiarity with debugging and disassembler tools like GDB, IDA Pro, or Ghidra.
+ Experience with EDR/XDR products or low-level security solution development.
+ Knowledge of API security frameworks, vulnerabilities, and best practices.
+ Experience with advanced data analysis, statistics, or machine learning for security applications.
+ Experience in Linux kernel development or vulnerability research.
+ Knowledge of network protocols related to APIs (e.g., HTTP/S, REST, GraphQL).
+ Experience with virtualization platforms (e.g., ESXi/vCenter).
**Our Commitment**
We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together.
We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com .
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.
Confirmar seu email: Enviar Email
Todos os Empregos de Palo Alto Networks