Sr. Cybersecurity Researcher, Cobalt Strike
6 hours ago
Alcobendas
ppbWhether you're an experienced professional or just getting started, your contributions matter at Fortra. If you're passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more! /b /ppCobalt Strike is Fortra’s adversary simulation and red team operations platform, used by security teams to emulate advanced threat actor behaviors in controlled, authorized environments. The product helps organizations strengthen security operations and incident response by enabling realistic attack simulation, post-exploitation tradecraft, and collaborative red team engagements. /ppWe are looking for a Senior Cybersecurity Researcher to join the Cobalt Strike team. This is a hands‑on applied RD role focused on understanding modern attacker tradecraft, operating system internals, offensive security techniques, and defensive controls, then turning that research into practical product capabilities. You should be curious about how attacks work under the hood and excited to collaborate with engineers to design, validate, and deliver bleeding‑edge Cobalt Strike features that are safe, responsible, and useful to authorized security teams. /ph3What You'll Do /h3ulliResearch modern adversary tactics, techniques, and procedures, with a focus on post‑exploitation tradecraft, endpoint defenses, and attacker behavior. /liliAnalyze security research, malware reports, proof‑of‑concept techniques, and developments in security controls to identify opportunities for Cobalt Strike product improvements. /liliWork closely with software engineers, product managers, QA, support, and other researchers to turn research findings into practical, maintainable product capabilities. /liliPrototype, document, and validate new techniques or product ideas in controlled, authorized lab environments. /liliHelp evaluate how offensive security techniques interact with modern Windows security features, endpoint controls, logging, detection engineering, and enterprise hardening practices. /liliProduce clear technical write‑ups, design notes, research summaries, and recommendations for engineering and product teams. /liliContribute to the Cobalt Strike roadmap by identifying emerging trends, customer needs, technical gaps, and opportunities for responsible adversary simulation. /liliCollaborate with engineering teams during design discussions, implementation planning, testing, and validation. /liliCommunicate research findings to technical and non‑technical audiences through internal and external presentations, documentation, blog posts, white papers, webinars, or conference‑style talks. /liliParticipate in team planning, roadmap discussions, research reviews, and cross‑functional technical discussions. /li /ulh3Qualifications /h3ulliStrong experience in cybersecurity research, offensive security, threat research, red teaming, penetration testing, malware analysis, reverse engineering, detection engineering, or related discipline. /liliDeep curiosity about how adversaries operate and how security teams can safely emulate, detect, and respond to those behaviors. /liliWorking knowledge of Windows internals /liliUnderstanding common post‑exploitation concepts, attacker tradecraft, and enterprise security controls. /liliAbility to analyze technical research, threat intelligence, proof‑of‑concept code, malware reports, or detection logic and translate findings into clear product recommendations. /liliExperience working in controlled lab environments to test techniques, validate assumptions, and reproduce technical behaviors. /liliStrong analytical reasoning, problem‑solving, and decision‑making skills. /liliAbility to write clear, accurate technical documentation for engineering, product, and customer‑facing audiences. /liliAbility to work independently on ambiguous research problems while communicating progress, tradeoffs, and findings clearly. /liliStrong verbal and written communication skills. /liliHigh ethical standards and sound judgment, especially when working with offensive security technology. /li /ulh3Preferred Qualifications /h3ulliExperience using or developing with Cobalt Strike, or experience with similar adversary simulation, red team, command‑and‑control, or threat emulation tools. /liliExperience with Windows debugging, reverse engineering, or analysis tools such as WinDbg, x64dbg, Ghidra, IDA Pro, Process Monitor, Process Explorer, Sysmon, ETW, or similar tools. /liliExperience with scripting or programming languages such as Python, PowerShell, C, Java, Go, Rust, or similar. /liliExperience applying AI/ML tools, including LLMs or agent‑based workflows, to automate, accelerate, or augment security research, reverse engineering, detection analysis, or threat emulation workflows. /liliExperience analyzing malware, loaders, implants, shellcode, process injection techniques, evasion techniques, persistence mechanisms, credential access techniques, or lateral movement behaviors in authorized research contexts. /liliExperience with endpoint detection and response products /liliExperience producing public‑facing security research, conference talks, technical blogs, whitepapers, webinars, or customer‑facing technical content, with personal write‑ups, public talks, publications, or other verifiable contributions. /liliBackground in military, government, or public‑sector cyber operations, with an established professional network in those communities. /li /ulpAt Fortra, we're breaking the attack chain. Ready to join us? Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn. /ppAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status. /p /p #J-18808-Ljbffr