Role Summary
SophosLabs is looking for an experienced, detail-oriented driven researcher with excellent technical skills to join our Reputation services team, a branch of our global team of highly skilled security experts, to provide fast response and high detection coverage for cross-platform threats targeting Sophos customers globally. In this role, you will be tasked with developing rules, behavioural signatures, curating reputation of threat objects by leveraging our vast collection of telemetric data. This highly technical role within the Sophos X-Ops division is a key cog in supporting and increasing our coverage in the global threat landscape and developing features, intelligence, and decisions in the SophosLabs Intelix platform. We run a remote-first working model. You will feel at home within our Agile team with its open communication, fanatical commitment to quality and a relentless drive for continuous improvement.
What You Will Do
- Analyse attacks, incidents, clean & malicious threat objects and identify behaviour.
- Crunch through SophosLabs vast collection of Threat Intelligence data and create signatures for hunting, detection and tracking of threat objects.
- Develop exceptional tools to automate operational tasks with utmost attention to quality. Carry out best practices of testing (unit, end-to-end, automated functional tests, and manual tests) prior to deployment.
- Collaborate with multiple and diverse stakeholders of the Sophos X-ops team.
- Participate in Agile planning (clarify requirements, break down into sensible epics / stories, estimate user stories).
- Engage with cross-functional teams to drive improvements to policies and processes.
What You Will Bring
Passionate about cybersecurity with a proven track record of relevant experience in the field and understanding of the security threat landscape.Undergraduate degree, or equivalent experience, in information security, cybersecurity or computer science.Ability to analyse threat objects and identify behaviour patterns.Deep understanding of relevant Internet protocols, technologies, and standards.Proficiency in programming and scripting languages, in particular Python.Experience with building, deploying, and maintaining tools & services for data extraction and automation for internal users.Navigate and analyse datasets of unique, structured, and unstructured data at scale.Ability to work remotely, in a joint team environment across different time zones.Strong collaboration and interpersonal communication skills working with a geographically distributed team.Excellent communication, documentation, and problem-solving skills.LI-FC1#B2#LI-Remote Ready to Join Us? At Sophos, we believe in the power of diverse perspectives to fuel innovation. Research shows that candidates sometimes hesitate to apply if they don't check every box in a job description. We challenge that notion. Your unique experiences and skills might be exactly what we need to enhance our team. Don't let a checklist hold you back – we encourage you to apply. What's Great About Sophos?
Sophos operates a remote-first working model, making remote work the primary option for most employees. However, some roles may necessitate a hybrid approach. Please refer to the location details in our job postings for further information.Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spiritEmployee-led diversity and inclusion networks that build community and provide education and advocacyAnnual charity and fundraising initiatives and volunteer days for employees to support local communitiesGlobal employee sustainability initiatives to reduce our environmental footprintGlobal fitness and trivia competitions to keep our bodies and minds sharpGlobal wellbeing days for employees to relax and rechargeMonthly wellbeing webinars and training to support employee health and wellbeing