drjobs Threat and Detection Engineer Cortex XDR العربية

Threat and Detection Engineer Cortex XDR

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Tel Aviv - Israel

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Your Career

We are looking for a highly technical individual to join the Threat and Detection team in our TelAviv R&D center.

The team is dedicated to PANW Cortex Security & Security Assurance  Features on multiple Operating systems including but not limited to Windows and Linux simulating and developing POCs for known threats and offensive tools to determine New features security Coverage & Detection quality across the Kill Chain /MITRE ATT&CK Framework and real threats.

In this role you will identify unique ways to solve problems by creating custom ATTACK Infrastructure tooling and advancing inhouse Security capabilities. We are looking for someone who can bring new ideas and perspectives to Simulate Code and react to new threats Malware and Exploits. The position will expand our Platform Malware and Exploit sensors and capabilities that utilize heuristics and ML technologies.

More information about Cortex XDR can be found here.

Your Impact


Qualifications :

Your Experience 

  • Emulate and Automate Security Scenarios

  • Deep Understanding of RedTeaming Frameworks:

    • Handson experience with tools like Cobalt Strike Brute Ratel Metasploit and Havoc.

    • Familiarity with their architecture payloads (e.g. Beacons Badgers) and commandandcontrol (C2) mechanisms.

  • Adversary Tactics Techniques and Procedures (TTPs):

    • Ability to replicate the tools and techniques of inthewild threat actors

    • Knowledge of TTPs outlined in MITRE ATT&CK framework.

    • Expertise in simulating APT behaviors lateral movement privilege escalation and data exfiltration.

  • Programming and Scripting Skills:

    • Fluency in languages such as Python C/C PowerShell for tool development and automation.

  • Threat Detection TTP:

    • Familiarity with evasion techniques like DLL hijacking process injection and antiforensic measures etc.

    • Understanding how advanced tools bypass EDR/AV solutions.

  • Reverse Engineering and Malware Analysis Advantage:

    • Proficiency in static and dynamic analysis of malicious code.

    • Ability to decompile or disassemble payloads and extract configurations (e.g. C2 endpoints).

  • Creative thinker independent and team player 

Preferred Qualifications:

  • Experience with XDR/SIEM/EDR/NDR product Advantage

  • 1  years of experience with pen testing and red teaming functions including Windows OS cloud scripting and tool development.

Academic Credentials

  • Bachelors degree or equivalent military experience required

  • Certifications related to offensive security including OSCE OSEP OSEE OSCP CCSAS CCT INF or relevant SANS courses.


Additional Information :

The Team

Our engineering team is at the core of our products and connected directly to the mission of preventing cyberattacks. We are constantly innovating and challenging the way we and the industry think about cybersecurity. Our engineers dont shy away from building products to solve problems no one has pursued before.

We define the industry instead of waiting for directions. We need individuals who feel comfortable in ambiguity excited by the prospect of a challenge and empowered by the unknown risks facing our everyday lives that are only enabled by a secure digital environment.

#LINS14

Our Commitment

Were problem solvers that take risks and challenge cybersecuritys status quo. Its simple: we cant accomplish our mission without diverse teams innovating together.

We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need please contact us at  .

Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace and all qualified applicants will receive consideration for employment without regard to age ancestry color family or medical care leave gender identity or expression genetic information marital status medical condition national origin physical or mental disability political affiliation protected veteran status race religion sex (including pregnancy) sexual orientation or other legally protected characteristics.

All your information will be kept confidential according to EEO guidelines.


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Department / Functional Area

Engineering

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.