SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 122,500 - 175,000 / annual
Zscaler is seeking a Staff Threat Researcher to join the Threat Research Team as a highly technical subject matter expert on adversary tradecraft across endpoint, cloud, and identity environments. This is a remote role reporting to the Manager of Threat Research.
In this position, you will apply formal research methodologies to dissect and replicate complex cyber attacks, determining exactly how techniques work and how to best detect them. You will transform deep technical discoveries into practical attack automations and scalable detection recommendations, bridging theoretical research and operational defense. Your expertise will directly strengthen defensive capabilities, inform detection engineering priorities, contribute to product strategy, and keep customers ahead of evolving evasion tactics.
Key responsibilities include:
- Scope and refine research initiatives with an adversarial mindset, analyzing emerging attack techniques, customer impact, and detection data sources across Windows, macOS, Linux, and major cloud/SaaS providers (AWS, Microsoft 365, Okta)
- Dive deep into technical components and detection optics underlying specific threats to understand how adversaries control and manipulate technique variations
- Engineer automated attack code, write test code to validate threat coverage, and develop proofs of concept for new detections
- Collaborate across Zscaler with detection engineers, intelligence analysts, and threat hunters to develop new detection methodologies and prioritize deliverables
- Document and present research findings and operational deliverables to internal and external audiences; mentor colleagues pursuing research
You thrive in ambiguity, act as an owner with mission-driven bias for action, and excel at tackling complex challenges. You are a high-trust collaborator who values team success and embodies a growth mindset as a continuous learner.
Requirements:
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions
- Experience working with commercial Endpoint Detection & Response (EDR) and/or cloud-based detection platforms
- Software development experience in at least one scripting language (PowerShell, Python, etc.) and one compiled language (C, C++, Go, etc.)
- Security experience in at least one cloud service provider (AWS, GCP, Azure) and cloud architectures
- Established record of public community engagement (conference talks, blog posts, webinars, etc.)
- Experience managing code with git/GitHub
Preferred qualifications:
- Proven ability to leverage AI technologies and workflows to drive measurable operational efficiency
- Established record of public community engagement such as conference talks or technical blog posts