CrawlJobs Logo

Sr. Security Researcher

India, Hyderabad · Job Posted June 03, 2026
Apply Position
Job Link Share

Job Description

Proven experience in static analysis, manual source code review, particularly in areas such as taint tracking and data flow analysis Strong expertise in secure coding standards and remediation of security vulnerabilities Solid understanding of programming language fundamentals, with proficiency in multiple languages including Java, TypeScript, and Python Experience with logic programming languages and frameworks such as Datalog, CodeQL, or Prolog Hands-on experience in vulnerability research, including CVE analysis and zero-day discovery Familiarity with relational database systems like MySQL and PostgreSQL Practical experience working in Linux environments & Docker Containers Solid understanding on LLM Fundamentals and their principles Excellent written and verbal communication skills

Requirements

  • Proven experience in static analysis, manual source code review, particularly in areas such as taint tracking and data flow analysis
  • Strong expertise in secure coding standards and remediation of security vulnerabilities
  • Solid understanding of programming language fundamentals, with proficiency in multiple languages including Java, TypeScript, and Python
  • Experience with logic programming languages and frameworks such as Datalog, CodeQL, or Prolog
  • Hands-on experience in vulnerability research, including CVE analysis and zero-day discovery
  • Familiarity with relational database systems like MySQL and PostgreSQL
  • Practical experience working in Linux environments & Docker Containers
  • Solid understanding on LLM Fundamentals and their principles
  • Excellent written and verbal communication skills

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Sr. Security Researcher

8 matching positions

New

Sr. Staff Security Researcher

We are seeking a passionate and self-driven Sr. Staff Researcher to join our Clo...
Location
Location
United States , Santa Clara
Salary
Salary:
139600.00 - 225775.00 USD / Year
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • PhD with 3-5 years of experience
  • Basic understanding of malware types (e.g., Spyware, Ransomware, Exploits) and popular vulnerabilities (e.g., command injection, buffer overflow)
  • Strong familiarity with key network protocols such as HTTP, SMTP, and FTP
  • Proficiency in at least one programming language, such as Python or Go
Job Responsibility
Job Responsibility
  • Design, build, and optimize automation systems for real-time data collection and processing to support threat detection
  • Apply advanced AI/ML methods, including anomaly detection and deep learning, to analyze real network traffic for threat detection and mitigation
  • Conduct in-depth research on network security countermeasures to identify and mitigate sophisticated cyber attacks
  • Proactively collaborate with fellow security researchers to analyze adversarial activities and implement robust, proactive protections
  • Continuously learn and apply knowledge of next-generation firewalls and their role in modern network security
  • Translate threat research findings into tangible security solutions and protections within our product ecosystem
  • Fulltime
Read More
Arrow Right
New

Sr Principal/Principal Windows Malware Security Researcher

We are looking for a Windows Malware Security Researcher for our Tel Aviv R&D ce...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 5 years of experience in the cyber security research domain
  • In-depth knowledge of Windows operating system internals (both user-mode and kernel-mode) - at least 3 years of hands-on research experience
  • In-depth knowledge of C/C++, with hands-on development experience using C/C++ (Win32 API) in a Windows environment
  • Experience with anti-RE techniques such as anti-debug, anti-VM, unpacking, etc.
  • Strong knowledge of the cyber threat landscape, including APTs (Advanced Persistent Threats) and modern malware techniques
  • Strong dynamic analysis skills with hands-on experience using debuggers such as WinDbg, x64dbg, OllyDbg, or similar
  • Strong static analysis skills with hands-on experience using disassemblers such as IDA Pro and Ghidra
  • Proficiency in Python
  • Knowledge of networking and internet protocols
  • A major advantage to candidates with at least 2 years of experience in at least one of the following: EDR/XDR products, Windows kernel development, low-level security solution development, Windows exploitation, or vulnerability research
Job Responsibility
Job Responsibility
  • Playing a pivotal role in shaping the future of our security solutions
  • Enhance the effectiveness of our EDR product by designing cutting-edge protection components and developing sophisticated prevention rules
  • Researching OS internals and how Windows works under the hood - leveraging this knowledge to develop and improve our anti-malware mechanisms and capabilities
  • Research and lead novel protection ideas to production-grade level, serving as the feature subject matter expert
  • Research new malware and APT mitigation techniques and develop corresponding capabilities (POC level), or improve existing mitigation capabilities
  • Respond to malware-based security events at clients' networks
  • Stay up to date with current malware and APT techniques
  • Provide feedback to the product management team on new feature requests and product enhancements from our customer base
  • Find new malware techniques and APT attacks, including analysis of caught-in-the-wild malware
  • Operate independently end-to-end - from initial threat idea, through research and POC, to handing off a production-ready design to core agent engineering with clear specs, test cases, and edge-case analysis
  • Fulltime
Read More
Arrow Right

Sr Staff Machine Learning Engineer (Web Security)

The Web Security Research team is responsible for delivering high quality AI pow...
Location
Location
United States , Santa Clara
Salary
Salary:
141000.00 - 228075.00 USD / Year
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Creative thinker and team player with a passion for data-driven security research, and building high quality, complex systems as a part of an incredible research team
  • Strong Web Security background and expertise in detecting security threats over the Internet, such as, phishing, fraud, botnet, spam
  • Hands-on experience in applying Machine Learning within the domain of Web Security and building detection models
  • Experience with Tensorflow, PyTorch, or Vertex AI
  • Strong engineering skills and ability to fastly learn and adapt to new programming languages and technologies
  • Strong programming skills in Python and Shell scripting
  • Must have MS/PhD or 2+ years of relevant industry experience or equivalent military experience required
  • Strong research, communication and presentational skills
Job Responsibility
Job Responsibility
  • Track and research emerging online threats and innovate new AI-powered automated ways to identify malicious indicators used by malicious websites and URLs
  • Leverage data-driven techniques and frontier technologies in ML and AI to build novel detection models for malicious URL detection and blocking
  • Design, develop, test, threat prevention and detection systems to protect enterprise customers around the globe
  • Convert research results and discoveries into real-impact innovative products
  • Implement and maintain complex software pipelines and data infrastructures with challenging requirements on high quality and performance
  • Work across teams to deliver production-impact projects
What we offer
What we offer
  • restricted stock units
  • bonus
  • Fulltime
Read More
Arrow Right

Sr. Information Security Administrator

Get ready to take your place on n11, an open market platform has made valuable c...
Location
Location
Turkey , Istanbul
Salary
Salary:
Not provided
ariteknokent.com.tr Logo
İTÜ ARI Teknokent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Minimum 4 years of experience in application security, vulnerability management and information security
  • Experience with SAST, DAST, SCA, IAST, IaC, SBOMs and Secret Management
  • Expertise in utilizing various security tools such as Burp Suite, OWASP ZAP, Acunetix, Fortify, and Checkmarx, along with vulnerability scanners
  • Experience with security requirements for APIs. (SOAP, REST, GraphQL etc.)
  • Experience with Manuel Source Code Analysis and Penetration Testing of Mobile and Web Applications
  • Experience with container security, such as Docker and Kubernetes
  • Familiarity with “secure by design” and “shift left” security principles
  • Strong knowledge of software security risks and threats (OWASP top 10)
  • Solid understanding of web-based application technologies, web services/APIs, web-based authentication/single sign-on protocol and technologies
Job Responsibility
Job Responsibility
  • Perform manual and automated penetration testing on applications to identify and exploit vulnerabilities
  • Integrate and automate application security testing tools (SAST, DAST, SCA,IaC, Network Scans)
  • Devise, implement, and monitor vulnerability response processes to efficiently remediate critical and zero-day vulnerabilities
  • Assess potential security vulnerabilities within our applications, and work with development teams to ensure remediation in our established SLAs
  • Provide training to development teams on secure coding practices and awareness of emerging security threats
  • Stay abreast of emerging application security trends and threats, researching new attack vectors to update vulnerability management strategies accordingly
  • Utilize scripting languages (Python, Ruby, Bash, etc.) to build automation tools as needed
  • Manage DLP, SIEM, PAM, EDR, IAM, DAM , SCC , Mail Gateway Security Tools
  • Improve General Security of Networks , Cloud and Systems
  • Provide Single Point of Contract for the General information Security
  • Fulltime
Read More
Arrow Right

Sr. Java Developer (Application Security)

Location
Location
United States , Charlotte
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 5+ years of experience in Java/J2EE development, including building and maintaining enterprise-level web applications
  • At least 3+ years of hands-on experience in application security, including identifying and remediating vulnerabilities such as XSS, CSRF, IDOR, and session-related issues
  • Minimum 3+ years of experience with web technologies such as HTML, CSS, JavaScript, and frameworks/libraries like jQuery, Axios, or Ext.js
  • At least 2+ years of experience in secure coding practices, including input validation, output encoding, authentication, and authorization mechanisms
  • Minimum 2+ years of experience working with RESTful APIs and web services, including securing APIs and handling authentication/authorization
  • At least 2+ years of experience with application servers such as Apache Tomcat, WebLogic, or JBoss
  • Minimum 2+ years of experience in vulnerability management tools (e.g., Fortify, Checkmarx, Veracode, or similar SAST/DAST tools)
  • At least 2+ years of experience in debugging and resolving production issues, including HTTP errors and performance bottlenecks
  • Minimum 1+ year of experience with security configurations, including CSP headers, secure cookies (HttpOnly, Secure, SameSite), and cache control mechanisms
  • At least 1+ year of experience working in Agile/Scrum environments, participating in sprint ceremonies and collaborative development
Job Responsibility
Job Responsibility
  • Design, develop, and maintain secure Java/J2EE-based applications, ensuring adherence to enterprise security standards and best practices
  • Identify, analyze, and remediate application security vulnerabilities such as XSS, CSRF, session fixation, IDOR, and path traversal issues
  • Perform regular code reviews and security assessments to detect code smells, insecure patterns, and misconfigurations
  • Collaborate with security teams to triage and resolve findings from vulnerability scans, penetration testing, and security audits
  • Implement secure coding practices, including input validation, output encoding, and proper authentication/authorization mechanisms
  • Update and manage third-party libraries (e.g., Axios, jQuery, Ext.js), ensuring no outdated or vulnerable versions are in use
  • Configure and enforce web security controls such as CSP headers, secure cookies (HttpOnly, Secure, SameSite), and cache directives
  • Debug and resolve issues related to HTTP errors (e.g., 500 errors), session management, and application behavior inconsistencies
  • Work closely with frontend and backend teams to ensure consistency in validation and prevent security gaps between UI and server-side logic
  • Analyze and secure APIs, including TPP/Open Banking integrations, ensuring proper authentication and data protection
  • Fulltime
Read More
Arrow Right

Sr. Java Developer (Application Security / FTE / Hybrid)

We are currently seeking a Sr. Java Developer (Application Security / FTE / Hybr...
Location
Location
United States , Charlotte
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 5+ years of experience in Java/J2EE development, including building and maintaining enterprise-level web applications
  • At least 3+ years of hands-on experience in application security, including identifying and remediating vulnerabilities such as XSS, CSRF, IDOR, and session-related issues
  • Minimum 3+ years of experience with web technologies such as HTML, CSS, JavaScript, and frameworks/libraries like jQuery, Axios, or Ext.js
  • At least 2+ years of experience in secure coding practices, including input validation, output encoding, authentication, and authorization mechanisms
  • Minimum 2+ years of experience working with RESTful APIs and web services, including securing APIs and handling authentication/authorization
  • At least 2+ years of experience with application servers such as Apache Tomcat, WebLogic, or JBoss
  • Minimum 2+ years of experience in vulnerability management tools (e.g., Fortify, Checkmarx, Veracode, or similar SAST/DAST tools)
  • At least 2+ years of experience in debugging and resolving production issues, including HTTP errors and performance bottlenecks
  • Minimum 1+ year of experience with security configurations, including CSP headers, secure cookies (HttpOnly, Secure, SameSite), and cache control mechanisms
  • At least 1+ year of experience working in Agile/Scrum environments, participating in sprint ceremonies and collaborative development
Job Responsibility
Job Responsibility
  • Design, develop, and maintain secure Java/J2EE-based applications, ensuring adherence to enterprise security standards and best practices
  • Identify, analyze, and remediate application security vulnerabilities such as XSS, CSRF, session fixation, IDOR, and path traversal issues
  • Perform regular code reviews and security assessments to detect code smells, insecure patterns, and misconfigurations
  • Collaborate with security teams to triage and resolve findings from vulnerability scans, penetration testing, and security audits
  • Implement secure coding practices, including input validation, output encoding, and proper authentication/authorization mechanisms
  • Update and manage third-party libraries (e.g., Axios, jQuery, Ext.js), ensuring no outdated or vulnerable versions are in use
  • Configure and enforce web security controls such as CSP headers, secure cookies (HttpOnly, Secure, SameSite), and cache directives
  • Debug and resolve issues related to HTTP errors (e.g., 500 errors), session management, and application behavior inconsistencies
  • Work closely with frontend and backend teams to ensure consistency in validation and prevent security gaps between UI and server-side logic
  • Analyze and secure APIs, including TPP/Open Banking integrations, ensuring proper authentication and data protection
  • Fulltime
Read More
Arrow Right

Sr. Staff Security Engineer

Our mission is to protect, defend, and secure Uber’s products, infrastructure an...
Location
Location
United States , Sunnyvale; Seattle; New York
Salary
Salary:
267000.00 - 297000.00 USD / Year
uber.com Logo
Uber
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s Degree or equivalent in Computer Science, Engineering, Information Security or related field
  • 10+ years full-time work experience in security engineering, with a strong focus on security defense and incident response
  • Deep technical expertise in multiple security domains, such as network security, endpoint security, cloud security (GCP, OCI, Azure, AWS), and identity and access management
  • Strong scripting and automation skills (e.g., Python, PowerShell, Bash, Golang) are highly desirable
  • Proven experience designing, implementing, and managing complex security solutions at an enterprise level
  • Excellent analytical and problem-solving skills, with the ability to diagnose and resolve complex security issues
  • A proactive and results-oriented mindset with a passion for staying ahead of the evolving threat landscape
  • Experience leading technical security projects and mentoring other engineers
  • Excellent communication, collaboration, and interpersonal skills, with the ability to effectively communicate technical information to diverse audiences
Job Responsibility
Job Responsibility
  • Lead the technical direction and architecture of our cyber security defense capabilities, including areas such as enterprise security posture management, threat detection and response, and vulnerability management
  • Design and implement robust and scalable security solutions leveraging a diverse range of technologies (e.g., SIEM, EDR, SOAR, cloud security platforms, IAM)
  • Lead incident response efforts, including investigation, containment, and recovery activities. Perform post-incident analysis and recommend improvements to prevent future occurrences
  • Proactively research and evaluate emerging security threats, technologies, and trends, and provide recommendations for their adoption to enhance our security posture
  • Collaborate effectively with cross-functional teams, including Engineering, IT, Legal, and Compliance, to integrate security considerations into the development lifecycle and business processes
  • Mentor and provide technical guidance to junior security engineers, fostering a culture of continuous learning and growth within the team
  • Contribute to the development and automation of security tools and processes to improve efficiency and effectiveness
  • Communicate complex security concepts and risks effectively to both technical and non-technical audiences
  • Participate in security audits and compliance initiatives, providing technical expertise and ensuring adherence to security standards
What we offer
What we offer
  • eligibility to participate in Uber's bonus program
  • may be offered an equity award & other types of comp
  • eligible for various benefits
  • Fulltime
Read More
Arrow Right

Sr Executive Protection Program Manager

In this role, you will plan and support Executive Protection Security operations...
Location
Location
United States , Overland Park
Salary
Salary:
85300.00 - 154000.00 USD / Year
https://www.t-mobile.com Logo
T-Mobile
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree (or equivalent work experience) plus 4–7 years in corporate security, including developing and documenting security detail plans
  • Hands-on experience in corporate executive security/protection
  • Background to obtain an Armed Security Officer (ASO) certification a plus
  • prior law-enforcement experience preferred
  • Proven success leading mid- to large-scale security programs, with quantitative analysis and budget oversight
  • Confident executive presence
  • adept at collaborating with and presenting to senior leaders, peers, and cross-functional partners
  • Excellent relationship-building and conflict-management abilities
  • Ability and willingness to travel up to 50%
  • At least 18 years of age
Job Responsibility
Job Responsibility
  • Plan and support Executive Protection Security operations
  • Facilitate a wide range of security functions, including executive security planning, event security planning, technical security operations, travel security support, and physical security
  • Work with other business units and internal/external partners and act as a representative of Corporate Security
  • Review security requests, identify security needs, and deliver recommendations that align with industry standards
  • Create and maintain security plans submitted to Corporate Security Senior Management
  • Collaborate with internal and external partners to devise detailed security plans for events and public engagements
  • Provide security advances and risk assessments for corporate facilities, hotels, ballrooms, event spaces, and restaurants
  • Participate in long term planning cycles and provide revised security plans based on updates and changes
  • Work with T-Mobile Corporate Events and Marketing to plan and coordinate non-executive corporate events
  • Connect with partners at event venues and remote corporate offices to prepare for future events
What we offer
What we offer
  • Competitive base salary and compensation package
  • Annual stock grant
  • Employee stock purchase plan
  • 401(k)
  • Free, year-round money coaches
  • Medical, dental and vision insurance
  • Flexible spending account
  • Paid time off and up to 12 paid holidays
  • Paid parental and family leave
  • Family building benefits
  • Fulltime
Read More
Arrow Right