SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Nozomi Networks is hiring a Malware Analyst for its Security Research department to join the team defending critical infrastructure and operational technology (OT) / Internet of Things (IoT) systems globally. The company's AI-powered cybersecurity platform protects enterprises and government entities across energy, manufacturing, transportation, and critical infrastructure sectors in over 68 countries.
In this role, you will perform hands-on static and dynamic analysis of malicious samples to understand their behavior, capabilities, and intent. You'll create and tune detection rules within the product, conduct threat intelligence operations to collect and vet knowledge for responding to advanced threats, and occasionally contribute to public-facing technical materials.
Key responsibilities include reverse-engineering malware using tools like IDA Pro, Ghidra, OllyDBG, x64dbg, and radare2; analyzing Windows and Linux malware with deep understanding of PE and ELF formats; creating detection signatures in YARA, Snort, Suricata, STIX, and SIGMA; and applying knowledge of the MITRE ATT&CK framework and cyber kill chains.
Required qualifications: professional experience as a Detection Engineer, SOC Analyst, or Threat Hunter; proven hands-on experience with static and dynamic malware analysis in sandboxed environments; demonstrated expertise analyzing Windows malware including PE format and common execution/persistence/evasion techniques; experience with reverse engineering tools; solid understanding of binary file attributes and packers; familiarity with the OSI model and Wireshark; working knowledge of Python; and ability to work with confidential, NDA-covered data. Experience analyzing Linux malware and ELF format is a strong advantage.
Nozomi Networks values diversity, integrity, and customer success. The company offers customized global benefits including health & wellness, financial support, work-life balance, and flexible time-off.