Principal Threat Researcher/ Associate Principal Threat Researcher
Core
Lead advanced research into identity-centric vulnerabilities and exploit chains to pioneer next-generation Identity Threat Detection and Response (ITDR) products.
Role type
Principal Threat Researcher (Identity Security)
Builds
Next-generation ITDR platform with robust detection algorithms and high-fidelity telemetry
Domain
Cybersecurity, Identity and Access Management (IAM), Cloud Security
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Threat intelligence pivoting, Security frameworks (MITRE ATT&CK, ATLAS, MAESTRO), Identity-based attack vectors (Pass-the-Hash, Golden/Silver Tickets, MFA Fatigue), Adversary tradecraft, Vulnerability and exploit research, Programming and scripting (Python, Go, Bash), Data mining and OSINT, Rule and signature development (YARA, Snort, Splunk SPL, KQL, Sigma), AI/ML in threat research, Identity security expertise (IAM, PAM, AWS IAM, Azure AD, GCP Cloud Identity)
Preferred skills
Algorithmic prototyping, Cross-functional leadership
Technologies
Python, Go, Bash, YARA, Snort, Splunk SPL, KQL, Sigma, Mimikatz, BloodHound, Rubeus
Responsibilities
Spearhead research on novel identity-centric vulnerabilities and exploit chains; Develop sophisticated behavioral models to detect anomalies; Translate threat research into actionable product features and detection algorithms; Conduct proactive threat hunting and intelligence gathering; Map research to industry-standard frameworks; Architect advanced detection strategies and correlation rules; Author technical reports and blogs; Mentor junior researchers
Seniority
Principal, hands-on IC with mentorship