Security Researcher
Commit
The company is pioneer of Active ASPM, purpose-built to secure the modern software supply chain in the age of AI. While traditional tools overwhelm teams with endless alerts, company cuts through the noise to identify the critical 5% of risks — those that are truly reachable and exploitable. From GenAI-generated code to cloud runtime, we gives developers and security teams the visibility and automation needed to ship secure software, faster.
We're looking for a highly skilled, driven Security Researcher to join our research group to analyze supply chain attacks, dissect malware, and build open-source tools. This is a high-impact role: you'll work with cross-functional teams to scan and protect users and organizations worldwide from the hottest cyber threats, playing a key part in shaping the future of company.
Requirements:
Must-Have Skills:
We're looking for a highly skilled, driven Security Researcher to join our research group to analyze supply chain attacks, dissect malware, and build open-source tools. This is a high-impact role: you'll work with cross-functional teams to scan and protect users and organizations worldwide from the hottest cyber threats, playing a key part in shaping the future of company.
Requirements:
Must-Have Skills:
- 5+ years of experience as a Cybersecurity Researcher (supply-chain attacks, malware analysis)
- Familiarity with open-source registry ecosystems (npm, PyPI, Maven) and their respective attack surfaces
- Proven ability to ship software in a production environment
- Strong understanding of the SDLC and modern CI/CD pipelines
- Comfortable leveraging AI tools to optimize research and development processes
- Proactive and independent mindset, with the ability to take full ownership of projects
- Active contributions to open-source security tools or research projects
- Hands-on experience with decompilers, debuggers, and network traffic analysis
- Advanced malware analysis experience (obfuscation, encryption, anti-analysis, and sandbox-evasion techniques)
- Web application penetration testing experience
- Published CVEs, coordinated disclosures, writeups, blogs, or research papers
- Experience public speaking at major industry conferences (e.g., Black Hat, DEFCON, RSAC)
- A genuine passion for cybersecurity, open-source communities, and solving complex ecosystem threats
Як відгукнутися?
Щоб відгукнутися на цю вакансію, вам необхідно авторизуватися на нашому сайті. Якщо у вас ще немає облікового запису, будь ласка, зареєструйтесь.
Розмістити резюмеСхожі вакансії
Репортажний оператор
Caritas-Spes Ukraine,
Київ,
2 дні тому
Маєте, відповідний досвід і бажаєте допомагати людям в потребі? Приєднуйтеся до нашої професійної команди міжнародного благодійного фонду "Карітас - Спес" в Україні. Наша діяльність спрямована на: подолання бідності, встановлення справедливості та відновлення гідності людини. Чекаємо на Ваше резюме! Нам потрібен - репортажний оператор Наші вимоги: досвід роботи на аналогічній посаді від 2-х років; добре знання програмного забезпечення Adobe (Premiere Pro,...
Бюджетний аналітик проєкту зі знанням англійської мови
Caritas-Spes Ukraine,
Київ,
3 дні тому
Запрошуємо кандидата з відповідним досвідом роботи приєднатися до Релігійної Місії «Карітас-Спес» Римсько-Католицької Церкви в Україні. Мета : підготовка інформації для керівництва щодо фінансових потоків по проєкту швидкого реагування. Вчасно готувати прогнози і звіти, брати участь в нарадах з донорами. Наші вимоги: вища профільна освіта (бухгалтерський облік, фінанси); ПК – впевнений користувач (Word, Excel, Ppt, office 365); 1С або аналогічні; досвід...
Middle Test Engineer (mobile) IRC296444
GlobalLogic,
Київ,
3 дні тому
Description Join the Android Engineering team delivering safety-critical, regulated mobile software for diabetes care. You will focus on product quality and reliability for international markets, with domain onboarding provided to accelerate your impact. Framework development is out of scope for this role; you will use and configure the existing internal framework to achieve high coverage and reliable automation. Requirements Own...