
Cloud Security Researcher - UEBA R&D Israel
- ישראל
- משרה קבועה
- משרה מלאה
- Design, research, and implement cutting-edge UEBA detections across cloud, cross-cloud, and hybrid ecosystems, delivering high-value security capabilities at scale.
- Leverage Databricks and Pyspark to analyze logs and behavior in Cloud Environments & SaaS Applications, proactively hunt for evolving threats, and engineer detections from concept to deployment.
- Partner closely with other research teams, incident responders, and customer stakeholders to deploy your insights into production defenses, and present research in technical blog posts or conference talks.
- Stay up-to-date with emerging trends, attack vectors, and industry best practices in the cloud and hybrid threat landscapes to enhance detection capabilities.
- Collaborate with product and engineering teams to ensure security is seamlessly integrated into platform architecture from concept to deployment.
- 5+ years, or equivalent depth, of background in advanced security detection, threat hunting, red teaming, or security research, ideally with a focus on cloud and SaaS environments.
- Deep understanding of enterprise attack surfaces, cloud architectures, and the evolving threat landscape across the entire perimeter and beyond.
- Experience with identifying, reproducing, and analyzing trends or patterns related to security incidents and abnormal behaviors.
- Proven track record in designing and operationalizing advanced threat detections that intelligently minimize false positives through precision analytics, contextual enrichment, and continuous tuning.
- Strong proficiency in using Python and SQL to analyze large data sets, develop detections, and reduce false positives in a cybersecurity context.
- Exceptional interpersonal skills with the ability to communicate effectively and collaborate with diverse teams.
- Self-discipline and strong development skills to effectively transform raw research into repeatable, production-grade security capabilities.
- Hands-on experience with major IaaS providers like AWS, Azure, and GCP, with deep familiarity with their native security controls.
- Knowledge and experience protecting SaaS and IDP platforms.
- Experience with Databricks or similar technologies, and data science toolkits such as Pandas and PySpark for querying and analyzing large datasets.
- Significant experience in proactive threat hunting operations.