We are seeking a Principal Security Researcher to set the technical direction for a critical area of our identity protection charter, drive multi-quarter research agendas end-to-end, and raise the bar of the team through mentorship and influence. You will partner with engineering, PM, data science, and other research teams across our company to shape strategy, and you will represent our research externally through publications, talks, and industry engagement. We expect our Principal researchers to fluently leverage Generative AI and to actively shape how the team applies it – turning AI assistance into a durable force multiplier across investigation, detection authoring, and customer protection at our company scale.
our companys mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities
Set the technical direction for a major area of our identity protection research charter, owning the multi-quarter strategy from threat landscape framing to shipped detection and measurable customer protection impact.
Drive multiple concurrent end-to-end research initiatives, breaking ambiguous problems into tractable workstreams and unblocking the team on the hardest technical questions.
Lead deep investigation and research of data across identity and adjacent sources to surface novel threats, attacker tradecraft, and detection opportunities others miss.
Stay ahead of the evolving attacker landscape and design robust, sophisticated detection logics across the entire kill-chain – raising the bar on quality, coverage, and resilience to attacker evasion.
Influence across organizational boundaries – partner with product management, engineering, data science, and peer research teams to shape product strategy, define new identity protection capabilities, and align roadmaps on a data-driven foundation.
Mentor and grow other researchers, elevating the technical bar of the team through code/design review, research coaching, and apprenticeship on complex investigations.
Shape how the team and discipline leverage Generative AI – define patterns, evaluate tools, and build durable AI-assisted workflows that scale research throughput across data triage, hypothesis generation, code and KQL authoring, and detection synthesis.
Represent our company Security externally through high-quality research publications, conference talks, blog posts, and engagement with the broader security research community.
our companys mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities
Set the technical direction for a major area of our identity protection research charter, owning the multi-quarter strategy from threat landscape framing to shipped detection and measurable customer protection impact.
Drive multiple concurrent end-to-end research initiatives, breaking ambiguous problems into tractable workstreams and unblocking the team on the hardest technical questions.
Lead deep investigation and research of data across identity and adjacent sources to surface novel threats, attacker tradecraft, and detection opportunities others miss.
Stay ahead of the evolving attacker landscape and design robust, sophisticated detection logics across the entire kill-chain – raising the bar on quality, coverage, and resilience to attacker evasion.
Influence across organizational boundaries – partner with product management, engineering, data science, and peer research teams to shape product strategy, define new identity protection capabilities, and align roadmaps on a data-driven foundation.
Mentor and grow other researchers, elevating the technical bar of the team through code/design review, research coaching, and apprenticeship on complex investigations.
Shape how the team and discipline leverage Generative AI – define patterns, evaluate tools, and build durable AI-assisted workflows that scale research throughput across data triage, hypothesis generation, code and KQL authoring, and detection synthesis.
Represent our company Security externally through high-quality research publications, conference talks, blog posts, and engagement with the broader security research community.
Requirements:
You have at least 10+ years of cyber security experience, including 4+ years working hands-on with identity-based attacks (research, hunting, or detection engineering) on top of the modern attacker kill-chain and MITRE ATT&CK.
You have passion for defensive work – hunting, investigation, detection authoring, and protection enforcement design – with a track record of owning research end-to-end, from threat hypothesis to shipped detection and customer impact.
You have Windows internals knowledge, along with working knowledge of the main identity protocols (e.g., Kerberos, NTLM, LDAP, OAuth 2.0, SAML).
You demonstrated fluency leveraging Generative AI tools (e.g., GitHub Copilot, Security Copilot, ChatGPT/Claude) to multiply daily research output – including prompt design, model-output validation, and integrating AI assistance into investigation, coding, and detection authoring.
Preferred Qualifications:
B.Sc./M.Sc. in Computer Science or related technical discipline.
Good knowledge of at least one programming language such as C# (preferred), Python, or C++, and at least one query language such as KQL, SQL, or Cypher.
You have at least 10+ years of cyber security experience, including 4+ years working hands-on with identity-based attacks (research, hunting, or detection engineering) on top of the modern attacker kill-chain and MITRE ATT&CK.
You have passion for defensive work – hunting, investigation, detection authoring, and protection enforcement design – with a track record of owning research end-to-end, from threat hypothesis to shipped detection and customer impact.
You have Windows internals knowledge, along with working knowledge of the main identity protocols (e.g., Kerberos, NTLM, LDAP, OAuth 2.0, SAML).
You demonstrated fluency leveraging Generative AI tools (e.g., GitHub Copilot, Security Copilot, ChatGPT/Claude) to multiply daily research output – including prompt design, model-output validation, and integrating AI assistance into investigation, coding, and detection authoring.
Preferred Qualifications:
B.Sc./M.Sc. in Computer Science or related technical discipline.
Good knowledge of at least one programming language such as C# (preferred), Python, or C++, and at least one query language such as KQL, SQL, or Cypher.
This position is open to all candidates.
















