Malware Analyst Tech Lead

Nozomi Networks Labs

Milano

In loco

EUR 90.000 - 130.000

Tempo pieno

7 giorni fa
Candidati tra i primi

Ricevi più risposte dai datori di lavoro

Invia un CV specifico per questa offerta in pochi minuti.

Vantaggi offerti da questo lavoro

Work-Life Balance
Unparalleled Flexible Time-Off

Descrizione del lavoro

Nozomi Networks in Milano is seeking a Malware Analysis Tech Lead to guide the malware analysis and detection engineering team, shaping threat detections for OT and IoT cybersecurity and supporting customers worldwide.

You will mentor engineers, set technical direction, and collaborate with product, research, and customers to translate complex findings into actionable guidance. The role demands hands-on expertise and strong communication to strengthen our security platform.

Competenze

  • Experience leading malware analysis or detection engineering teams.
  • Proficient in reverse engineering with debuggers and PE/ELF analysis.
  • Familiar with YARA, SNORT, SURICATA, STIX and SIGMA for detections.
  • Knowledge of MITRE ATT&CK framework and cyber kill chains.
  • Strong communication skills for research findings and customer sharing.
  • Able to work with NDA data and maintain confidentiality.

Mansioni

  • Lead the team creating and curating detection rules for the product.
  • Mentor team members and set technical direction.
  • Coordinate threat intelligence operations to track advanced threats.
  • Contribute technical material to public resources.
  • Collaborate with customers, partners and the cybersecurity community.

Conoscenze

Reverse engineering
MZ-PE & ELF
Malware signatures
YARA/SIGMA/SURICATA/SNORT/STIX
MITRE ATT&CK
Wireshark
Python
Conferences speaking
OSI model
NDA/confidentiality

Strumenti

IDA Pro
Ghidra
OllyDbg
x64dbg
radare2

Descrizione del lavoro

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.

We defend some of the world’s largest organizations and critical infrastructure in more than 68 countries and we’re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT) infrastructures for enterprises and government entities across energy, manufacturing, transportation, resources, and critical infrastructure.

As Nozomi Networks continues to expand our product portfolio and global presence, our Security Research department is looking for a Malware Analysis Tech Lead to guide and grow the team responsible for reverse engineering malicious samples, developing high-quality detection signatures, producing actionable threat intelligence, and sharing research findings with customers, partners, and the broader cybersecurity community.

This is a hands-on leadership role for someone who combines deep technical expertise in malware analysis and detection engineering with the ability to mentor others, set technical direction, and communicate complex findings clearly. You will lead a team focused on identifying, analyzing, and tracking advanced threats, with a particular emphasis on creating reliable detections that strengthen our products and help protect critical infrastructure around the world.

You could be the next “Nozomier”! If this sounds like you, read on.

In this role, you will:
  • Lead the team creatingandcuratingvarious detection rules within our product, acting as a manager andas anindividual contributor
  • Help the support team addressthecustomer feedback associated with these detections
  • Perform threat intelligence operations to collect andmaintainall the required knowledge to respond efficiently to advanced threats
  • Contribute to the technical material shared with the public
  • Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust
To be successful in this opportunity, you should have:
  • Industry experience as an IT manager
  • Ability to performreverse engineering using debuggers,understandingspecifics ofMZ-PEandELFexecutables
  • Experience in creating some of these signatures: YARA, SNORT or SURICATA, STIX, and SIGMA
  • Experience speaking at cybersecurity conferences presenting findings ina clear way
  • Familiarity with the MITRE ATT&CK framework and cyber kill chains
  • Understanding of the OSI model and an ability to use Wireshark
  • Basic experience with Python
  • Attitude tooperatein environments including data covered by non-disclosure agreements andahighlevel of confidentiality
These qualifications would be a strong plus:
  • Proven experience in reverse engineering using analysis tools like IDA PRO,Ghidra, OllyDBG, x64dbg, radare2, etc
  • Fundamental understanding of attributes of binary files such as executable structures and packers
  • Previousprofessional experience as a Detection Engineer, SOCAnalystor a Threat Hunter
Who we are and what we stand for:

Nozomi Networks is the leader in OT and IoT Cybersecurity. We protect the world's critical infrastructure, industrial and government organizations from cyber threats by providing exceptional network visibility, threat detection and operational insight. We’re always innovating and we hire the best at what they do to ensure our customers always have access to fast product enhancements, exceptional engineering support and rapid deployment across continents.If you like a challenge, and value integrity and customer success, we invite you to help Nozomi Networks build the future of OT and IoT cybersecurity.

Diversity, Inclusion and Belonging are part of our core beliefs, at Nozomi Networks. Diversity of thought, background and culture broadens our knowledge of the world and helps us learn, grow, and gain new perspectives. What makes us all different is what makes us powerful.

All of our benefits are customized to the country you are based in, naturally we want to get the best out of our Nozomiers, so we provide the best benefits packages, such as:

  • Work-Life Balance
  • Unparalleled Flexible Time-Off
Need to know information

Successful candidates will be subjected to background verification checks.

Ottieni la revisione del curriculum gratis e riservata.
o trascina qui il file.
Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Fullstack Software Engineer
Fullstack Software Engineer

Nozomi Networks • Turbigo

In loco
EUR 40.000 - 70.000
Health & Wellness
Financial
Work-Life Balance
+1
Malware Analysis Tech Lead — Drive OT/IoT Threat Detections
Malware Analysis Tech Lead — Drive OT/IoT Threat Detections

Nozomi Networks Labs • Milano

In loco
EUR 90.000 - 130.000
Work-Life Balance
Unparalleled Flexible Time-Off
Associate Sales Engineer
Associate Sales Engineer

Nozomi Networks • Italia

In loco
EUR 40.000 - 60.000
Work-Life Balance
Unparalleled Flexible Time-Off
Associate Sales Engineer, EMEA
Associate Sales Engineer, EMEA

Cacheflow • Italia

In loco
EUR 35.000 - 55.000
Health & Wellness
Financial
Work-Life Balance
+1
Senior Network & Security Technical Lead (Cisco & Palo Alto)
Senior Network & Security Technical Lead (Cisco & Palo Alto)

The Nippon Telegraph and Telephone Corporation (NTT) • Italia

Ibrido
EUR 90.000 - 130.000
Hybrid Working
Senior Network & Security Technical Lead (Cisco & Palo Alto)
Senior Network & Security Technical Lead (Cisco & Palo Alto)

NTT DATA, Inc. • Milano

Ibrido
EUR 110.000 - 150.000
Hybrid Working
Malware Analyst
Malware Analyst

Soluzioniergon • Chieti

In loco
EUR 30.000 - 45.000
Staff Windows Low Level C++ Engineer - Endpoint security
Staff Windows Low Level C++ Engineer - Endpoint security

SentinelOne • Italia

Remoto
EUR 90.000 - 120.000
Flexible working hours
Employee stock plan
Yearly bonus
+3
IT Network Engineer
IT Network Engineer

Nadara • Milano

In loco
EUR 55.000 - 75.000
Flexible ways of working
Continuous learning and development opportunities
Well-being initiatives
Solution Engineer
Solution Engineer

OPSWAT • Roma

In loco
EUR 50.000 - 75.000