Job Information
VMware Senior Malware Threat Researcher - Opportunity for Working Remotely in Minneapolis, Minnesota
Business Summary
VMware Carbon Black, a leader in advanced threat protection, is seeking a Senior Threat Researcher. This is a senior level position in Cyber Security, targeted toward individuals with more than 5 years of specific experience. Educational and personal experience information security related work is necessary. Expert understanding of modern defensive and offensive security tools, tactics, techniques, and procedures is required.
Threat Researchers at Carbon Black are responsible for leading, conducting, and presenting threat research from the Threat Analysis Unit (TAU). This requires a strong understanding of endpoint detection, cloud technologies, security operations, current threat landscape, and emerging threats. Threat Researchers are also expected to provide mentorship to other members of the team, take lead in maturing procedures, evaluate new security technologies, and preferably have an understanding of incident response or penetration testing processes, and prototype/experiment with new ideas and technologies to improve both our product and services.
Job Role and Responsibilities
Perform security research, handle complex security events, and coordinate with security and engineering teams
Research anomalies to uncover new threat actor groups, malware, vulnerabilities, tools, and techniques
Work closely with internal and external customers for product and service improvements
Take ownership or support ongoing projects by assisting in the implementation, research, testing and documentation of security related projects
Research and manage the implementation of new technologies to enhance business products and customers’ security postures
Research reported product security vulnerabilities and bypasses
Create custom rules for dissemination into the Carbon Black product suite
Train and mentor researchers inside and outside of the TAU group
Share data and expertise with private and public communities
Actively participate in the security community as a subject matter expert, presenting in Carbon Black customer forums, developing customer threat notifications, writing blog posts, and presenting at conferences
Required Qualifications
Advanced knowledge of artifacts and behavior in Windows, Linux, and/or macOS
Knowledge of Windows system internals
Knowledge of x86 and x64 instruction set architectures
Knowledge of defensive capabilities and how attackers bypass them
Knowledge of malware anti-analysis techniques
5 years of experience in static and dynamic analysis of malware
Experience reverse engineering using tools like IDA Pro, Binary Ninja, or Ghidra
Experience using debuggers like x86dbg, windbg, Immunity, or OllyDbg
Experience unpacking obfuscated malware samples
Experience analyzing malicious documents and scripts
Experience developing scripts for automating repetitive analysis tasks
Experience collecting and leveraging cyber threat intel for malware family and threat actor tracking
Ability to track threat actors and document infrastructure
Experience with writing YARA rules
Familiarity with MITRE ATT&CK Threat IDs
Strong interpersonal skills, ability to mentor/train staff and bring awareness to current and emerging threats
Ability to translate descriptions of attacks or malware techniques into proof of concept demonstrations for testing and product improvement
Strong written and verbal communication skills with an ability to present technical risks and issues to non-technical audiences
Preferred Qualifications
Ability to track malware campaigns, such as botnets, via infrastructure
Experience in analyzing macOS (Mach-O) and Linux (ELF) malware
Experience in hunting threats through endpoint security technologies
Experience in collection and analysis of large scale families of malware
Previous Incident Response or Penetration Testing experience
This job may require the candidate to travel and/or work from a facility that requires full vaccination prior to entry.
Category : Engineering and Technology
Subcategory: Software Engineering
Experience: Manager and Professional
Full Time/ Part Time: Full Time
Posted Date: 2022-05-11
VMware Company Overview: At VMware, we believe that software has the power to unlock new opportunities for people and our planet. We look beyond the barriers of compromise to engineer new ways to make technologies work together seamlessly. Our cloud, mobility, and security software form a flexible, consistent digital foundation for securely delivering the apps, services and experiences that are transforming business innovation around the globe. At the core of what we do are our people who deeply value execution, passion, integrity, customers, and community. Shape what’s possible today at http://careers.vmware.com.
Equal Employment Opportunity Statement: VMware is an Equal Opportunity Employer and Prohibits Discrimination and Harassment of Any Kind: VMware is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at VMware are based on business needs, job requirements and individual qualifications, without regard to race, color, religion or belief, national, social or ethnic origin, sex (including pregnancy), age, physical, mental or sensory disability, HIV Status, sexual orientation, gender identity and/or expression, marital, civil union or domestic partnership status, past or present military service, family medical history or genetic information, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. VMware will not tolerate discrimination or harassment based on any of these characteristics. VMware encourages applicants of all ages. Vmware will provide reasonable accommodation to employees who have protected disabilities consistent with local law.
VMware
-
- VMware Jobs