
Senior Security Research Engineer
Qualys, Inc.1 hour ago
Pune, IndiaSenior
Responsibilities
- Research, analyze, and assess attack surface and vulnerability data.
- Develop tailored mitigation strategies and plans based on vulnerability risk, return on mitigation, and level of effort.
- Identify potential attack paths in critical systems using emerging vulnerability data.
- Document, develop, and present mitigation strategies for web applications, databases, and standalone applications.
- Analyze vulnerability root causes and support vulnerability prioritization, tracking, remediation, and reporting.
- Conduct patch diffing and reverse engineering using tools such as Ghidra and IDA.
- Assess and create software patches and configuration changes for software, middleware, and hardware.
- Provide security, system, and business impact assessments while helping avoid business outages.
- Provide subject matter expertise on tailored vulnerability mitigations and apply AI strategies to prioritize risk.
Requirements
- A preferable four-year degree or at least a three-year degree with a computer science and information technology background.
- Vulnerability research and exploit analysis experience.
- Programming ability in PowerShell, Python, or Shell.
- Excellent understanding of network, system, and application security.
- Knowledge of secure architecture designs and detection/protection mechanisms such as firewalls, IDS/IPS, and full-packet capture technologies.
- Working knowledge of operating-system commands and tooling for Windows, Linux, and Mac OS.
- Understanding of the security implications of patches for web applications and Windows, Linux, and Mac OS.
- Excellent written and verbal communication and articulation skills.
- Preferred experience with IDA Pro, Ghidra, or similar binary analysis tools.
- Knowledge of vulnerability scanning solutions, business-process mapping against industry best practices, and patch testing in non-production environments is preferred.
- Ability to learn new technologies and work effectively in a team.