Lead Security Expert- Threat Intelligence Platform R&D
Rapid7 is looking for an experienced Security expert to join our Team of Researchers and developers in the threat intelligence platform team.
About the Team
We are building a brand new Threat Intelligence platform from scratch for use by our analysts teams and customers. Be one of the first security professionals in our team leading Research into new ways to find problems and vulnerabilities in our customers' environments, find relevant threat intelligence in clear and dark web sources and find malicious infrastructure targeting the customer users.
About the Role
This is a leadership position tasked with researching and defining the needed capabilities and features of the platform. while working closely with both the developers and analysts teams to achieve these objectives.
We are looking for a researcher looking to broaden his view and take a critical role in building a data driven platform that will allow our analysts teams to bring critical threat intelligence to our customers.
In this role, you will:
Research and create new methodologies for the development of automations in:
Attack surface analyses
Vulnerability discovery and assessment
Clear and Dark web threat intel
Malicious infrastructure targeting our customers
Work closely with the dev and analysts team to implement new workflows and use cases.
Gathering a leverage of our unique data comes from our automations and analysts.
Be a source of knowledge and expertise for the entities services group.
Collaborate with other departments in Rapid7 Like Metasploit ,MDR ,Cloud-sec, VM etc.
The skills you’ll bring include:
5+ years of experience in the cybersecurity industry in research or analyst roles.
Independent researcher and natural leader with ability to lead ongoing efforts to build capabilities and new features.
Expert knowledge of common operating systems, services, networking protocols, logging, attacker techniques and tools.
Prior operational experience leveraging threat intelligence to detect and respond to adversaries.
A strong understanding of the current threat landscape including the latest tactics, tools, and procedures, common malware variants, and effective techniques for detecting this malicious activity.
Experience in investigating threats, utilizing OSINT, HUMINT and other research techniques to uncover threat actors and their TTP.
Familiarity with network defense technologies, cyber kill chain, Mitre ATT&CK framework, known cyber crime groups, APTs and their targeted sectors.
Very strong scripting skills in python/bash.
Nice to haves:
Previous experience working on security products.
Knowledge in data analysis AI/ML.
Previous experience in a product role.
previous experience as a developer (preferably Python).
We know that the best ideas and solutions come from multi-dimensional teams. Teams reflecting a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don’t be shy - apply today.
Rapid7 (NASDAQ: RPD) helps organizations across the globe protect what matters most so innovation can thrive in an increasingly connected world. Our comprehensive technology, services, and community-focused research simplify the complex for security teams, helping them reduce vulnerabilities, monitor for malicious behavior, be in 10 places at once, and shut down attacks. We’re on a mission to make security solutions easier to use and access so we can bring safety and resilience to more people.
With more than 10,000 customers across 140+ countries, Rapid7 is a leader in cybersecurity that has earned numerous industry accolades and recognition for our technology and culture.
These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not then work.
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. If you do not allow these cookie we will not know when you have visited our site, and will not be able to monitor its performance.