Security Research Engineer
Securonix
At Securonix, we’re on a mission to secure the world by staying ahead of cyber threats, reinforcing all layers of our platform with AI capabilities. Our Securonix Unified Defense SIEM provides organizations with the first and only AI-Reinforced solution built with a cybersecurity mesh architecture on a highly scalable data cloud. Enhanced by Securonix EON’s AI capabilities, our innovative cloud-native solution delivers a seamless CyberOps experience, empowering organizations to scale their security operations and keep up with evolving threats.
Recognized as a five-time leader in the Gartner Magic Quadrant for SIEM and highly rated on Gartner Peer Insights, our award-winning Unified Defense SIEM provides organizations with 365 days of ‘hot’ data for rapid search and investigation, threat content-as-a-service, proactive defense through continuous peer and partner collaboration, and a fully integrated Threat Detection, Investigation, and Response (TDIR) experience—all within a single platform. Built on a cloud-native architecture, the platform leverages the Snowflake Data Cloud for unparalleled scalability and performance.
Securonix is proud to be a cybersecurity unicorn and featured in CRN's 2024 Security 100 list. Backed by Vista Equity Partners, one of the largest private equity firms with over $100 billion in assets under management, we have a unique advantage in driving innovation and growth. With a global footprint, we serve more than 1,000 customers
worldwide, including 10% of the Fortune 100. Our network of 150+ partners and Managed Security Service Providers (MSSPs) enables us to deliver unmatched security solutions on a global scale.
At Securonix, we are driven by our core values and place our people at the heart of everything we do:
- Winning as One Team: We work together with universal respect to achieve aligned outcomes
- Customer Driven Innovation: We innovate to stay ahead of the market and create value for our customers
- Agility in Action: We embrace change and are unified in our purpose and objectives amidst change
Join us as we redefine cybersecurity, innovate fearlessly, and grow together as one team.
Summary:
We are looking for a passionate and technically skilled Security Researcher to join our team and help us stay ahead of evolving cyber threats. This role will focus on building and maintaining honeypot infrastructure, analyzing threat activity, developing detection content, and contributing to the broader security community through advisories and research.
You will work closely with our detection engineering and threat intelligence teams to ensure our SIEM platform stays responsive and adaptive to emerging threats.
What Your Role Entails:
- Design, deploy, and maintain honeypots and deception infrastructure to collect real-world attack telemetry.
- Analyze malware samples, attacker behavior, and TTPs captured via honeypots and external threat intelligence sources.
- Develop and validate prototype detection rules, logic, and analytics for threats observed in the wild.
- Author timely and insightful threat-advisory reports for internal teams and customers.
- Assist customers with detection requests, emerging threat queries, and incident support based on real-time intelligence.
- Work with the detection engineering team to maintain and continuously improve production detection content.
- Work with data-science team to prototype new product features and provide SME inputs for feature designs
- 5+ years in security research, threat intelligence, or malware analysis.
- Solid understanding of threat actor behaviors, attack frameworks (MITRE ATT&CK, etc.), and threat intelligence methodologies.
- Experience with malware reverse engineering, sandboxing, or forensic analysis tools.
- Deep understanding of Windows/Linux internals (useful for exploit testing, detection validation and log generation)
- CI/CD Workflows for detection as code
- Proficiency in at least one scripting or programming language (e.g., Python, PowerShell).
- Strong communication skills, especially in writing technical documentation and threat reports.
- Understanding of cloud and hybrid environments and their security challenges.
- Deep understanding of threat detection for CSPs like AWS and Azure.
- Experience with honeypot/deception platforms (e.g., Cowrie, T-Pot, OpenCanary).
- Familiarity with SIEM platforms, log analysis, and detection engineering.
- Contributions to open-source threat intelligence projects or public research/blog posts.
- Prior experience building detection or research in AI ecosystems
Benefits -
As a full-time employee with Securonix, you will be eligible for the following employee benefits:
- Health Insurance with a total sum insured is INR 7,50,000
- Coverage: Self, Spouse, 2 kids, Dependent parents, or parents-in-law
- Personal Accident with total sum insured is INR 10,00,000
- Term Life Insurance with a sum assured for employees is 5 times fixed base pay is covered.
Securonix, Inc. provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. Securonix complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Securonix expressly prohibits any form of unlawful employee harassment based on race, color, religion, gender, sexual orientation, national origin, age, genetic information, disability or veteran status. Improper interference with the ability of Securonix employees to perform their expected job duties is absolutely not tolerated.