华人工作网 · 返回最新招聘
zscaler

Staff Threat Researcher

California · CA · 发布于 2026-10-08
<div class="content-intro"><p data-pm-slice="1 1 []">Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 200+ public data centers globally and thousands of private sites at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.</p> <p>We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.</p></div><p><strong>Role</strong></p> <p>We are looking for a Staff Threat Researcher to join our team. This is a remote role, reporting to the Manager Threat Research in the Threat Research Team. As our Staff Threat Researcher, you will serve as a highly technical subject matter expert on adversary tradecraft across endpoint, cloud, and identity environments. You will apply formal research methodologies to dissect and replicate complex cyber attacks, answering the critical questions of exactly how techniques work and how we can best detect them. By transforming your deep technical discoveries into practical attack automations and scalable detection recommendations, you will bridge the gap between theoretical research and operational defense. In this role, your expertise will directly strengthen our defensive capabilities, inform our detection engineering priorities, contribute to broader product strategy, and keep our customers a step ahead of evolving evasion tactics.</p> <p><strong>What you’ll do (Role Expectations)</strong></p> <ul> <li>Scope (with some guidance) and continuously refine research initiatives, applying an adversarial mindset to analyze emerging attack techniques, customer impact, and detection data sources across at least one operating system (Windows, macOS, Linux) and major Cloud/SaaS providers like AWS, Microsoft 365, and Okta</li> <li>Dive deep into the technical components and detection optics underlying specific threats to fully comprehend how adversaries control and manipulate variations of a given technique</li> <li>Leverage your endpoint and cloud expertise to engineer automated attack code, write test code to validate threat coverage, and develop proofs of concept for new detections</li> <li>Collaborate across Zscaler to develop new detection methodologies and engineering recommendations, working closely with detection engineers, intelligence analysts, and threat hunters to prioritize and refine deliverables</li> <li>Document and present your research findings and operational deliverables in an accessible, actionable manner to internal and external audiences, while serving as a technical mentor for colleagues pursuing research</li> </ul> <p><strong>Who You Are (Success Profile)</strong></p> <ul> <li>You thrive in ambiguity and are comfortable building the path as you walk it, viewing dynamic environments as an opportunity to construct impactful solutions from scratch.</li> <li>You act like an owner with a mission-driven bias for action, navigating seamlessly between high-level strategy and hands-on execution while operating with uncompromised integrity.</li> <li>You are a dedicated problem-solver energized by tackling complex challenges, knowing that solving the toughest problems creates the greatest organizational impact.</li> <li>You are a high-trust collaborator who values team success over ind
前往雇主官网申请
联系前请核实雇主身份、工作地点、薪资和用工条件;不要向陌生人提供银行卡密码或验证码。