yandex
zscaler
Страна
Индия
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
SeniorГибридПолная занятость

Senior Threat Researcher - Threatlabz

Оценка ИИ

Zscaler — лидер рынка облачной безопасности, предлагающий работу в элитном подразделении ThreatLabz. Вакансия привлекательна сильной инженерной культурой, фокусом на инновации (AI/LLM) и отличным социальным пакетом.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует глубоких технических знаний в области реверс-инжиниринга, анализа сетевых протоколов и уязвимостей веб-приложений. Высокая планка задается необходимостью не только анализировать угрозы, но и создавать инструменты автоматизации на Python или Go.

Анализ зарплаты

Медиана55 000 $
Рынок45 000 $ – 70 000 $
Оценка ИИ

Указанная роль Senior/Principal уровня в международной компании уровня Zscaler в Индии обычно предполагает оплату выше среднего по рынку. Оценочный диапазон составляет от 3.5 до 5.5 млн индийских рупий в год, что соответствует премиальному сегменту для Бангалора и Пуны.

Сопроводительное письмо

I am writing to express my strong interest in the Senior Threat Researcher position at Zscaler. With a solid background in web attack analysis and malware reverse engineering, I have consistently demonstrated my ability to deconstruct complex payloads and develop robust detection signatures. My experience aligns perfectly with ThreatLabz's mission to protect global users from evolving threats like HTML smuggling and file-less exploits.

Throughout my career, I have leveraged tools like IDA Pro and Python automation to transform raw threat intelligence into actionable security measures. I am particularly drawn to Zscaler’s 'impact over activity' philosophy and your proactive approach to integrating AI into threat research. I am eager to bring my expertise in OWASP vulnerabilities and C2 framework mitigation to your world-class research arm and contribute to the high-performing culture at Zscaler.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в zscaler уже сейчас

Присоединяйтесь к команде ThreatLabz и станьте экспертом, определяющим будущее кибербезопасности в эпоху ИИ!

Описание вакансии

About Zscaler

Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability.

We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.

Role

We are looking for a Principal Threat Researcher to join our Threat Detection Group within ThreatLabz. This is Hybrid role, reporting to a leader in ThreatLabz Team . You will track the evolving threat landscape, analysing emerging threats and identifying TTPs to develop critical detection and protection signatures. As part of our world-class research arm, you will ensure millions of global users remain protected through advanced malware research and behavioural analysis.

What you’ll do (Role Expectations)

  • Analyse browser-based threats, including HTML smuggling and phishing, to develop robust protections
  • Research vulnerabilities across OWASP, Web API, and LLM Top 10 to author prevention signatures
  • Conduct static and dynamic malware analysis to mitigate emerging threats and C2 frameworks
  • Develop complex automation tools and prototypes to integrate research findings into Zscaler products
  • Contribute to the global security community by publishing in-depth threat analysis blogs and research papers

Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.
  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.
  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.

What We’re Looking for (Minimum Qualifications)

  • 2+ years of dedicated experience in Cyber Security Research with expertise in web attack and DOM/JS analysis
  • Proficiency in browser security and analysing/deconstructing payloads within browser environments
  • Hands-on experience with malware debugging and reverse engineering using tools like IDA, x64dbg, or Ollydbg
  • Strong understanding of TCP/IP, Application layer protocols, and vulnerabilities across OWASP and LLM Top 10
  • Experience with automation scripting in Python, Ruby, Go, or Shell to synthesise threat intelligence

What Will Make You Stand Out (Preferred Qualifications)

  • Professional security certifications such as OSCP or specialised degrees in Computer Science or Information Technology
  • Proven ability to implement AI-powered automation and leverage GenAI models for threat research
  • Advanced reverse engineering experience specifically related to file-less threats and complex exploit techniques

#LI-Hybrid

#LI-RG

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegallink.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Python
  • Ruby
  • OWASP
  • TCP/IP
  • Go
  • Shell Scripting
  • IDA Pro
  • Reverse Engineering
  • x64dbg
  • Malware Analysis
  • Phishing Analysis
  • HTML Smuggling

Возможные вопросы на собеседовании

Проверка практических навыков анализа специфических веб-угроз, упомянутых в описании.

Расскажите о вашем опыте анализа HTML smuggling. Какие техники обхода песочниц вы встречали чаще всего?

Оценка владения инструментами реверс-инжиниринга.

Опишите процесс деобфускации сложного JavaScript-загрузчика с использованием отладчика. С какими трудностями вы сталкивались?

Проверка понимания современных векторов атак, на которых акцентирует внимание Zscaler.

Какие специфические риски безопасности вы видите в использовании Large Language Models (LLM) согласно списку OWASP Top 10 для LLM?

Оценка навыков автоматизации и разработки.

Приведите пример инструмента на Python или Go, который вы разработали для автоматизации сбора или анализа данных об угрозах.

Проверка умения работать с сетевым трафиком.

Как бы вы подошли к обнаружению зашифрованного C2-трафика, если стандартные сигнатуры не срабатывают?

Похожие вакансии

SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
MTS Web Services
250 000 ₽ – 300 000 ₽

Старший эксперт SIEM

SeniorВ офисеРоссия
SIEM · SoC · Linux · Windows · macOS · CCNA · LPIC-1 · Cybersecurity · Incident Response · Network Security
+10 навыков
Инфосистемы Джет
Не указана

Старший инженер внедрения SIEM

SeniorВ офисеРоссия
SIEM · SOAR · SGRC · ArcSight · MaxPatrol SIEM · FortiSIEM · QRadar · Splunk · Linux · Windows Server · Information Security
+11 навыков
HaaS Platform
от 400 000 ₽

Pentester (Offensive Security)

SeniorУдалённоРоссия
Pentesting · Linux · Python · Bash · Burp Suite · NMAP · OWASP Top 10 · Network Security · Red Team · Vulnerability Assessment · Go · JavaScript · C++
+13 навыков
СберАвто
200 000 ₽ – 350 000 ₽

Специалист по информационной безопасности

SeniorУдалённоРоссия
Fortinet · Palo Alto Networks · Check Point · ELK stack · Splunk · Cisco Prime · MaxPatrol · ArcSight · SolarWinds · VPN · PKI · OSPF · EIGRP · BGP · Kaspersky Security Center · Cortex XDR · Solar Dozor · Ansible · Terraform · Vulnerability Management · Patch Management
+21 навыков
СберАвто
Не указана

Application security specialist

SeniorУдалённоРоссия
SAST · DAST · IAST · RASP · SCA · WAF · SSDLC · DevSecOps · OWASP · Linux · Python · Go · Threat Modeling
+13 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

zscaler
Страна
Индия