RefolkCandidates
Open nowEngineeringEngineering

Security Researcher (Detection Systems)

Cylake · Sunnyvale, California

Location
Sunnyvale, California, United States
Employment
Full time
Level
Mid level
Posted
6 weeks ago

About this role

Your Impact

Join a small team building the next generation of cybersecurity products from the ground up. Led by industry veterans with a proven track record of success - you will get to architect, build, and deliver hugely impactful products with this world-class team. You will have the opportunity to grow your career and skills along with the company from the very start.

Role Overview

As a subject matter expert in cyber attack and defense, you will architect and build comprehensive threat detection capabilities for our next-gen security platform, leveraging your deep understanding of the evolving threat landscape. You will also develop innovative research systems and tools to deliver broad, scalable threat coverage. This key leadership role offers the opportunity to shape the future of threat detection in the cybersecurity industry.

Responsibilities

  • Develop advanced threat detection capabilities in the next-gen security operation platform.

  • Research emerging threats, adversary tactics, and sophisticated attack techniques to design and implement end-to-end detection coverage

  • Build and enhance research systems focused on threat analysis, advanced persistent threat (APT) simulation, cyber threat intelligence (CTI), and security knowledge graph.

  • Partner with data scientists to develop agentic AI workflows, security-focused models and training datasets for cybersecurity use cases.

Required Experiences

  • 5+ years of experience on building large-scale threat analysis and detection solutions across one or more of the following: security logs, malware, network traffic, web page and vulnerability exploitation, and/or a Ph.D. in Computer Science, System/Network Security, or a related technical field.

  • Deep expertise in one or more of the following areas: threat hunting, malware analysis and sandboxing, vulnerability analysis, reverse engineering, offensive security, or penetration tests.

  • Deep understanding on modern attacks and evasion techniques, malware behaviors and countermeasures, MITRE ATT&CK framework, cyber kill chain/TTPs.

  • Strong proficiency in Python programming. System programming with C/C++/Rust/Go is a big plus.

  • Great passion for security research; strong communication and documentation skills.

Preferred Experience

  • Participation in Capture the Flag (CTF) competitions, contributions to open-source security projects, vulnerability disclosures (CVEs), attack campaign research, technical blogs, or security research publications and presentations.

  • Experience working as a SOC analyst, detection engineer, red team, blue team member, or security researcher within large-scale enterprise environments.

  • Deep understanding of modern operating system internals, system APIs, and security products such as EDR/XDR, SOC platforms, firewall, IDS/IPS, or related security technologies.

  • Familiarity with cyber threat intelligence, attack causality analysis, provenance-based intrusion detection systems, and advanced threat detection methodologies.

  • Experience developing machine learning models for security detection use cases and applying LLMs or agentic AI to accelerate security research, analysis, and detection workflows.

We offer competitive compensation and a comprehensive benefits package designed to support our employees’ health, well-being, and long-term success. The expected salary range for this position is $150,000 - $250,000 per year. Within this range, individual pay is determined based on job-related factors including skills, experience, qualifications, and internal equity. Most candidates can expect an offer within the range listed above. Your recruiter will provide additional details on compensation and benefits to qualified candidates during the hiring process.

We’re committed to building a diverse, inclusive workplace where everyone can do their best work. We are proud to be an equal opportunity employer and do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know - we’re happy to support you.

As published by Cylake. Applications are handled on their site.

Skills this posting mentions

ExploitationThreat HuntingSystems Programming

About Cylake

Cylake is building a complete, AI-native, data-driven cybersecurity platform for the world’s largest and most regulated institutions. Our approach does not depend on the public cloud; instead, it’s designed to operate on-premises or in private cloud environments, so that our customers retain full data and operational control. Our platform is currently under development, in consultation with several design partners, and is planned for general availability in early 2027.

All 15 openings at Cylake

One click, then it is written

Apply to Cylake with a resume written for this role.

Queue Security Researcher (Detection Systems) and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Cylake’s form for you.

  1. 01Drop your resume

    A PDF or a LinkedIn URL. About a minute, once.

  2. 02I rank the openings

    Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.

  3. 03Each one is written up

    Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.

  • 25 sent a week, free
  • No card
  • Nothing sent until you say so

More roles at Cylake

See all

Similar roles elsewhere

See more

Put this to work

Paste your career in once. Every application after that is written for you.

Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.

  1. 01Drop your resume

    A PDF or a LinkedIn URL. About a minute, once.

  2. 02I rank the openings

    Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.

  3. 03Each one is written up

    Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.

  • New matches ranked and written before you are up.
  • Every bullet stays inside what your history supports. Nothing invented.
  • Queued, submitted, interviewing, offer: one screen, not a spreadsheet.

500 free credits on sign-up. No card. Nothing is sent until you say so.

Listed from the job board Cylake publishes. Refolk is not the employer and does not handle their hiring. Applications go to Cylake directly.