Security

Cybersecurity Researcher (Threat Analysis and Detection Engineering)

Bulgaria
Full time
Posted 1 Day Ago
R-100840-1
Please note that the application process will be managed on our partner website, Workday, which will require you to log in or create an account.
Acronis is a world leader in cyber protection, delivering natively integrated solutions that monitor, control, and protect the data that businesses and lives depend on. Driven by our passion to protect every workload, we’ve built the industry’s only all-in-one cyber protection platform. We are looking for a Cybersecurity Researcher to join our mission of protecting the digital world.

As Cybersecurity Researcher you will be part of the global Threat Research Unit, fighting against modern cyber threats and cybercriminals by dissecting complex campaigns, reverse engineering malicious content, and creating detection logic for Acronis products. As an expert in cyber threats, you will participate in the development of new threat detection technologies, including various automation and machine learning methods.

WHAT YOU'LL DO  

  • Participate in design and implementation of detection capabilities of Acronis Security and EDR products. 

  • Analyse clean and malicious content: executables, scripts, various document formats, websites, memory dumps, vulnerabilities. 

  • Develop, support, and fine-tune threat detection logic and signatures. 

  • Conduct online research of the latest cyber threats and ensure those can be detected by existing in-house technologies. 

  • Contribute to sharing research results in blog posts and articles. 

  • Monitor automated detection pipelines to ensure high detection accuracy. 

  • Support scan engine and product development by participating in joint research projects. 

 

WHO WE’RE LOOKING FOR  

  • Understanding of modern cyber-attack techniques, common types of malwares, OS internals (primarily Windows, macOS and Linux is a plus), and network protocols. 

  • 5+ years' experience in malware analysis (executables, scripts, document formats, exploits): static (e.g. IDA Pro, Ghidra), dynamic (e.g. x64dbg, OllyDBG), and behavioral (e.g. Cuckoo, CAPE). 

  • 3+ years' experience with proactive Threat Hunting (using multiple EDR/XDR solutions)- 

  • Network traffic analysis (Wireshark). 

  • Extensive experience working with threat intelligence tools and services: VirusTotal, Shodan, Censys, MISP (or similar feed collections), analysis with MITRE ATT&CK framework. 

  • 3+ years' experience working for a well-established security vendor. 

  • Software development experience: Python, REST APIs, SQL, Regular expressions. C/C++ would be considered a plus. 

  • Flexibility and proven ability to learn new things and develop skills fast. Analysis, critical thinking, and problem-solving skills. Unbeatable curiosity. 

  • Good reading and writing skills in English. 

*Please submit your resume and application in English 

 

WHO WE ARE 

A Swiss company founded in Singapore in 2003, Acronis offers over twenty years of innovation with 15 offices worldwide and more than 1800 employees in 50+ countries. Acronis Cyber Protect is available in 26 languages in 150 countries and is used by over 20,000 service providers to protect over 750,000 businesses. 

 

Our corporate culture is focused on making a positive impact on the lives of each employee and the communities we serve. Mutual trust, respect and belief that we can contribute to the world everyday are the cornerstones of our team. Each member of our “A-Team” plays an instrumental role in driving the success of our innovative and expanding business. We seek individuals who excel in dynamic, global environments and have a never give up attitude, contributing to our collective growth and impact. 

 

OUR INTERVIEW PRACTICES 

To ensure a fair and genuine hiring process, candidates are expected to participate in interviews without the use of AI tools, automated prompts, or third-party assistance. Interviews are designed to assess individual skills, experience, and communication style and we value authentic, real-time interaction. 

Use of AI or external assistance during live interviews may result in disqualification. For roles where AI skills are being evaluated, permitted use of AI tools will be clearly communicated in advance. Candidates may be asked to disable virtual backgrounds or participate in in-person interviews. All employment offers are contingent upon successful completion of applicable criminal, education and identity background checks 

Acronis is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances. 

Security
Cybersecurity Researcher (Threat Analysis and Detection Engineering)
Please note that the application process will be managed on our partner website, Workday, which will require you to log in or create an account.