Fortra Logo

Fortra

Senior Cybersecurity Researcher

Posted 15 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in United States
3K-3K
Senior level
Remote or Hybrid
Hiring Remotely in United States
3K-3K
Senior level
The Senior Cybersecurity Researcher will build detection capabilities, conduct technical analysis, hunt threats, and mentor junior team members.
The summary above was generated by AI

Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more! 

At Fortra, we’re breaking the attack chain. Ready to join us? 

Fortra is looking for a seasoned and proactive Senior Cybersecurity Researcher to join our front-line cyber defense team. This is a critical, hands-on role for a technical expert who can hit the ground running with detection engineering. You'll be responsible for engineering and enhancing our detection capabilities across both our Data Loss Prevention (DLP) and Endpoint Detection & Response (EDR) platforms.

Your mission will be to proactively hunt for, identify, and build high-fidelity detections to stop advanced threats and prevent data exfiltration. If you excel at reverse-engineering application behavior, understanding how data moves, and building robust rules to stop attackers in their tracks, this role is for you.

WHAT YOU'LL DO

  • Build & Tune Detections: Design, develop, test, and maintain sophisticated detection rules and policies within our EDR and DLP solutions to identify malicious activity and data exfiltration patterns.
  • Technical Analysis: Conduct deep-dive analysis of application, operating system, and network behaviors. You'll use tools like Procmon, Sysmon, Wireshark, and others to understand underlying functions and identify opportunities for detection.
  • Threat Hunting: Proactively hunt for advanced persistent threats (APTs), insider threats, and novel data exfiltration techniques across the enterprise.
  • Code & Automate: Utilize Python, JSON, and XML to create, manage, and automate detection logic, policies, and response actions.
  • Framework Alignment: Develop and map detection logic against industry-standard frameworks, with a heavy emphasis on the MITRE ATT&CK framework, to ensure comprehensive coverage of adversary tactics and techniques.
  • Incident Response Support: Act as a senior technical escalation point for the Security Operations Center (SOC), providing expert analysis on complex alerts and security incidents.
  • Mentorship: Mentor junior analysts and engineers, sharing your expertise in threat detection and system analysis to elevate the team's overall capability.
  • Other duties as assigned.

QUALIFICATIONS

  • 5-7+ years of experience in a senior cybersecurity role such as Detection Engineering, Threat Hunting, or a Senior SOC Analyst position.
  • Expert-level, hands-on experience with either a major EDR platform or an enterprise DLP solution.
  • Strong proficiency in scripting and data interchange formats, specifically Python, JSON, and XML, for building and managing detection logic.
  • Demonstrated expertise in profiling applications and system-level processes using tools like Sysmon and the Sysinternals suite (Procmon, ProcExp, etc.).
  • A deep, practical understanding of modern data exfiltration techniques (e.g., DNS tunneling, data staging, hiding in legitimate traffic) and the attacker lifecycle.
  • Proven ability to apply the MITRE ATT&CK framework to threat modeling and detection engineering in a practical, measurable way.
  • A self-starter mentality with the ability to operate independently and drive projects to completion with minimal supervision.

PREFERRED QUALIFICATIONS

  • Relevant industry certifications (e.g., GIAC GCIH, GCFA, GREM, CISSP).
  • Experience with cloud environments (AWS, Azure, GCP) and their native security tooling.
  • Proficiency with SIEM query languages like Splunk SPL or Kusto Query Language (KQL).
  • Experience with macOS.
  • Experience with network forensics and packet analysis.
  • Contributions to the security community (e.g., open-source tool development, research papers, blog posts).

3421

Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn.
As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.

Top Skills

AWS
Azure
GCP
JSON
Kusto Query Language
Mitre Att&Ck
Procmon
Python
Splunk Spl
Sysmon
Wireshark
XML

Similar Jobs

28 Minutes Ago
In-Office or Remote
Palo Alto, CA, USA
143K-274K Annually
Senior level
143K-274K Annually
Senior level
Aerospace • Artificial Intelligence • Computer Vision • Software • Analytics • Defense • Big Data Analytics
The Director of Business Development will lead efforts in pursuit of new commercial opportunities in the space sector, managing customer relationships and capture strategies to increase market share.
Top Skills: Business DevelopmentMarket StrategyProposal Management
42 Minutes Ago
In-Office or Remote
2 Locations
171K-256K
Senior level
171K-256K
Senior level
Artificial Intelligence • Productivity • Software • Automation
The Sr. Technical Product Manager will own the technical product roadmap, lead complex initiatives, drive architectural decisions, and ensure compliance, particularly in regulated environments like HIPAA.
Top Skills: AWSDatabricksDatadogIncident.Io,JiraKubernetesOpslevelTerraformVercel
42 Minutes Ago
In-Office or Remote
2 Locations
171K-256K
Senior level
171K-256K
Senior level
Artificial Intelligence • Productivity • Software • Automation
The Senior Product Manager will lead the MCP product strategy, collaborate with technical customers, prioritize features, and shape AI orchestration.
Top Skills: AIAutomationDeveloper ExperienceProduct Management

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account