Halcyon Logo

Halcyon

Reverse Engineer

Posted 20 Days Ago
Be an Early Applicant
Remote
Senior level
Remote
Senior level
The Reverse Engineer will analyze malware, enhance detection mechanisms, collaborate on security product improvements, and contribute to threat intelligence efforts.
The summary above was generated by AI

What we do:
Halcyon is the industry’s first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware.

Who we are:
Halcyon was formed in 2021 by a team of cyber industry veterans after battling the scourge of ransomware (and advanced threats) for years at some of the largest global security vendors. Comprised of leaders from Cylance (now Blackberry), Accuvant (now Optiv), Fireye and ISS X-Force (now IBM), Halcyon is focused on building products and solutions for mid-market and enterprise customers.

As a remote-native, completely distributed global team, we recognize great talent can exist anywhere. We invite you to apply to a job you’re interested in and we'll work a plan to meet your needs.

The Role:
 Halcyon is redefining what modern security products can achieve, focusing on disrupting the ransomware economy through innovative, prevention-first technology. We’re seeking an experienced Reverse Engineer with a strong background in malware analysissecurity research, and anti-virus technologies to help us stay ahead of emerging threats. This individual will play a key role in refining detection accuracy, expanding coverage, and contributing to the next generation of anti-ransomware defense.

 

Responsibilities:

  • Reverse engineer malware and suspicious binaries using both static and dynamic techniques to extract indicators of compromise (IOCs), identify evasion techniques, and map behavior to the ransomware attack chain.
  • Monitor and triage security events, identifying malicious activity through data correlation, pattern analysis, and contextual threat enrichment.
  • Develop and maintain internal tools and scripts to support threat hunting, triage, and automated analysis workflows (Python, C, C++, shell scripting).
  • Analyze and assess PE file structures, obfuscation methods, and payload delivery mechanisms to detect new or evolving threats.
  • Collaborate with engineering teams to translate research into detections and product enhancements, and work closely with Customer Success during incident response.
  • Contribute to threat intelligence efforts and share actionable findings internally to improve detection and prevention strategies.

Minimum Qualifications:

  • Strong experience in reverse engineering malware using tools such as IDA Pro, Ghidra, x64dbg, WinDbg, or similar.
  • Deep understanding of Windows internalsPE file format, and ransomware attack chains.
  • Prior experience at an anti-virus (AV) or endpoint security company, or certification in reverse engineering (e.g., GREM, CREA, CRT, OSCE).
  • Proficient in one or more development/scripting languages: Python, C, C++.
  • Experience developing Yara rules and malware detection signatures.
  • Excellent communication skills and ability to clearly convey complex technical findings.
  • A passion for staying ahead of adversaries in an ever-evolving threat landscape.

Bonus Points:

  • Experience with kernel-level analysis or rootkit detection.
  • Prior research publications or community contributions in malware analysis.
  • Experience automating malware analysis pipelines or integrating sandbox results into detection infrastructure.

In accordance with applicable state and federal laws, the range provided is Halcyon’s reasonable estimate of the base compensation for this role. The actual amount may differ based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. Base pay is one part of the total package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and equity in the Company.

We understand it takes a diverse team of highly intelligent, passionate, curious, and creative people to develop the exceptional product we are building. Our dynamic team has incredible perspectives to share, just as we know you do, and we take great pride in being an equal opportunity employer.

Top Skills

C
C++
Ghidra
Ida Pro
Pe File Format
Python
Windbg
X64Dbg
Yara

Similar Jobs

10 Days Ago
Remote
USA
110K-180K Annually
Mid level
110K-180K Annually
Mid level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Analyze malware and vulnerabilities, document findings, research emerging threats, and collaborate to enhance the platform's resilience.
Top Skills: AWSYara
13 Days Ago
Remote
Hybrid
USA
110K-180K Annually
Senior level
110K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Analyze malware and exploits, document findings, conduct research on threat actors, and collaborate to enhance the Falcon platform's security measures.
Top Skills: Behavioral AnalysisCloud SecurityDebuggingMalware AnalysisReverse EngineeringThreat DetectionYara Rules
4 Days Ago
Remote
Hybrid
2 Locations
Mid level
Mid level
Software • Financial Services
Teller seeks experienced reverse engineers to analyze mobile banking apps, facilitating bank integrations for their API while maintaining high product standards.
Top Skills: APIsMitmproxyMobile Applications

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account