This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Checkmarx is the enterprise application security leader and the host of Checkmarx One™ — the industry-leading cloud-native AppSec platform that helps enterprises build #DevSecTrust. Checkmarx is the leader in application security and ensures that enterprises worldwide can secure their application development from code to cloud. Our consolidated platform and services address the needs of enterprises by improving security and reducing TCO, while simultaneously building trust between AppSec, developers, and CISOs. At Checkmarx, we believe it’s not just about finding risk, but remediating it across the entire application footprint and software supply chain with one seamless process for all relevant stakeholders.
Job Responsibility:
Perform in-depth analysis of open-source packages to identify malicious behavior
Analyze source code across multiple programming languages
Investigate obfuscation, suspicious execution flows, and hidden payloads
Evaluate and validate detections from security tools
Develop scripts and internal tools (primarily in Python) to support analysis
Collaborate with the SCS research team and other security teams in the group
Requirements:
2–3 years of professional experience in malicious code analysis or security research
Strong understanding of malicious code patterns and supply-chain attack techniques
Experience using Python for analysis or automation
Familiarity with both interpreted and compiled languages