Associate Principal Engineer - Threat Researcher
Core
Lead advanced research initiatives to uncover identity-centric vulnerabilities and exploit chains across hybrid and multi-cloud environments, translating findings into actionable product features for an AI-powered identity security platform.
Role type
Associate Principal Engineer (Threat Research & Detection Engineering)
Builds
Next-generation ITDR platform with robust detection algorithms and high-fidelity telemetry
Domain
Cybersecurity, Identity Security, Cloud Security
Deliverable
production ML models | product features
Required skills
Threat Intelligence Pivoting, Security Frameworks (MITRE ATT&CK, ATLAS, MAESTRO), Attack Vectors (Pass-the-Hash, Golden/Silver Tickets, MFA Fatigue, Token Theft, Kerberosting), Adversary Tradecraft, Vulnerability & Exploit Research, Programming & Scripting (Python, Go, Bash), Data Mining & OSINT, Rule/Signature Development (YARA, Snort, Splunk SPL, KQL, Sigma), AI/ML in Threat Research, Identity Security Expertise (IAM, PAM, AWS IAM, Azure AD/Entra ID, GCP Cloud Identity)
Preferred skills
Algorithmic Prototyping, Cross-Functional Leadership Skills
Technologies
Python, Go, Bash, YARA, Snort, Splunk SPL, KQL, Sigma, AWS IAM, Azure AD/Entra ID, GCP Cloud Identity, Active Directory, Mimikatz, BloodHound, Rubeus
Responsibilities
Spearhead Identity Threat Research, Data-Driven Behavioral Modeling, Drive Product Innovation, Execute Advanced Threat Hunting & Intelligence, Operationalize Security Frameworks, Pioneer Detection Engineering, Establish Thought Leadership, Drive Patentable Innovation, Mentor and Guide
Seniority
Associate Principal, hands-on IC with mentorship