This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
You will be part of the team that develops the Intrusion Prevention System to power the Palo Alto Networks’s next generation firewall. The Decoder team is responsible for decoding network protocols and inspecting application traffic on enterprise customers’ networks, providing common service to support a variety of network security services. As a member of the Decoder team, you have the opportunity to work on our security engine, and collaborate with different intelligent teams on various advanced cybersecurity products.
Job Responsibility
Research networking protocols and related application networking behavior
Research file types and file properties
Research and provide defense mechanisms against popular protocol/firewall evasions
Develop protocol and file decoders, and integrate the detection solutions with Palo Alto Networks products
Build common services to support various network security services
Develop internal tools to monitor and support the cyber security products
Cross-team collaboration, discover and integrate advanced cybersecurity features to inline product solutions
Requirements
Strong programming and debugging skills, experience coding in Go required and C/C++ experience preferred
Strong understanding of Go concurrency, memory optimization, and scalable system design
Excellent understanding of L4-7 networking protocols such as HTTP, TLS, SMTP, FTP, Websocket, GRPC, TCP/IP, etc.
Experience with packet processing, stream reassembly, protocol parsing, and traffic analysis systems
Experience in analyzing network traffic using tools like Wireshark, Fiddler, tcpdump etc.
Familiar with Linux/Unix development environment
Team player, and good communication skills to work with cross-functional groups
BS/MS in Computer Science or Electrical Engineering or equivalent Military experience
3+ years industry experience
Nice to have
Knowledge and experience of next generation firewall and cyber security services
Understanding of protocol evasion techniques, fragmentation, and traffic obfuscation
Experience with Suricata, Zeek, eBPF, DPDK, or similar technologies
Experience with pattern matching engines, rule-based detection systems, or DFA/NFA concepts
Familiarity with performance profiling tools such as pprof, perf, or valgrind
Experience applying AI techniques to traffic classification, protocol identification, or anomaly detection is a big plus