Senior Security Research Engineer, SONAR (Security Operations and Novel Adversary Research)
Core
Reverse engineer novel malware and adversary tradecraft to build protections and detection tooling for Elastic Security customers.
Role type
Senior Security Research Engineer (Malware Analysis & Adversary Research)
Builds
Malware signatures, detection workflows, and public research artifacts shipped to customers.
Domain
Cybersecurity, Malware Analysis, Threat Intelligence
Deliverable
production ML models | product features
Required skills
Malware reverse engineering (static/dynamic), Python development, YARA authorship, Windows/Linux internals, Network protocols (HTTP/TLS), Applied cryptography, Technical writing, AI-assisted development
Preferred skills
Vulnerability research, CTF participation, Open-source security tool maintenance, Conference speaking, Attribution tradecraft, Behavioral detection engineering, Elastic Stack familiarity
Technologies
Python, C, C++, Rust, Go, NodeJS, YARA, Windows, Linux, HTTP, TLS, Elasticsearch, Kibana
Responsibilities
Reverse engineer obfuscated/packed malware samples across multiple platforms; Operate global data systems to identify and mitigate threats; Author signatures and build automation/AI workflows for detections; Publish research and tools to public repositories; Collaborate on shared threat intelligence projects; Mentor junior researchers and lead technical investigations
Seniority
Senior, hands-on IC with mentorship responsibilities