Senior Security Researcher

Astrix Security

Astrix Security

Tel Aviv-Yafo, Israel
Posted on Nov 21, 2024

Senior Security Researcher

  • Research
  • Tel Aviv
  • Full-time

Description

We are looking for an experienced Identity Security Researcher to join our team. You will play a critical role in exploring new technologies, developing security models in the new domain of non-human identity security, and advancing our understanding of cloud, SaaS, and on-prem technologies. If you have a strong background in cybersecurity and are excited about tackling complex security challenges, we want to hear from you.

About the role

  • Conduct in-depth security research on cloud platforms SaaS, and on-prem applications, focusing on IAM and security features.
  • Use web and internet technologies, including HTTP, Proxy programs, REST APIs, HTML, and JavaScript, to improve our analysis and risk model for NHI.
  • Develop tools and proof-of-concepts to demonstrate security risks and identify potential attack vectors in the NHI domain.
  • Collaborate with R&D to implement security improvements and share research findings.
  • Present internal and external research findings via publications and marketing collaborations, contributing to the broader security community.

Requirements

  • Strong cybersecurity and security research background, with experience from 8200/81 and similar industry roles.
  • Hands-on experience with Cloud and SaaS platforms, particularly in Identity and Access Management (IAM) and security features.
  • Deep knowledge of web technologies such as Networking, HTTP, HTTP debugging tools, REST APIs, and JavaScript.
  • Expertise in authentication and authorization frameworks like OAuth and OIDC.
  • Proficiency in Python for scripting and automation.
  • Experience writing and publishing security articles on a personal blog or other platforms.
  • Previous experience in a startup environment.
  • Practical experience with web application security and vulnerabilities - Advantage.
  • Familiarity with container security, including Docker and Kubernetes - Advantage.
  • Experience with data analysis and implementing basic AI/ML models - Advantage.