Remote Threat Research Analyst - Cyber Defense

Sigma Software

Warszawa

On-site

PLN 180,000 - 260,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Sigma Software in Poland is seeking a Threat Research Analyst for a remote role within European time zones. You will monitor threats, analyze attack patterns, and improve detection and blocking of automated attacks for web applications.

The role requires strong cybersecurity background, knowledge of web tech, SQL, Kibana/Elasticsearch, and English at least B2. You will collaborate with engineering and security teams on security platform improvements.

Qualifications

  • 3+ years of commercial experience in cybersecurity, threat research, or related areas.
  • Hands-on experience in cybersecurity, threat detection, security research, threat hunting, anti-bot solutions, fraud and abuse detection, application security, or a closely related security domain.
  • Strong understanding of attacker tactics, techniques, and behaviors, including methods used to evade, bypass, or modify attacks to avoid detection.
  • Experience investigating suspicious or malicious activities, with a solid understanding of detection, alerting, and blocking mechanisms.
  • Strong understanding of web technologies and architecture, including client-server architecture, HTTP/HTTPS, REST APIs, request/response lifecycle, headers/cookies/sessions/authentication.
  • Understanding of browser technologies and experience investigating DOM, browser events, XHR/Fetch, WebSockets, Browser APIs, and browser security policies.
  • Ability to read and analyze JavaScript code and understand remediation approaches.
  • Working knowledge of HTML and CSS to investigate web app behavior.
  • Strong practical experience with SQL for data analysis and investigations.
  • Hands-on experience using Kibana for log analysis, monitoring, and investigations.
  • Solid understanding of networking fundamentals (TCP/IP, DNS, VPN, proxies, basic troubleshooting).
  • Ability to independently investigate complex technical issues and correlate data points for attack/incident scenarios.
  • Experience using AI-powered tools and chatbots for research and technical investigations, including prompt writing.

Responsibilities

  • Monitor existing threats and investigate suspicious activities using logs, dashboards, and detection systems.
  • Analyze attack patterns and build detailed threat scenarios from collected data.
  • Research and respond to reported threats, customer escalations, and security incidents.
  • Improve detection and blocking mechanisms for automated attacks and malicious behaviors.
  • Analyze intelligence from competitors, public sources, and industry trends to identify emerging threats.
  • Work with monitoring and analytics tools such as Kibana and Elasticsearch.
  • Collaborate with engineering and security teams to improve product protection capabilities.
  • Document findings, attack methodologies, and investigation results.

Skills

Threat research
Cybersecurity
Threat hunting
Detection & blocking
Web security
Kibana
Elasticsearch
SQL
English (B2+)
Analytical mindset

Tools

Kibana
Elasticsearch
SQL
OpenSearch

Job description

Sigma Software in Poland is seeking a Threat Research Analyst for a remote role within European time zones. You will monitor threats, analyze attack patterns, and improve detection and blocking of automated attacks for web applications.

The role requires strong cybersecurity background, knowledge of web tech, SQL, Kibana/Elasticsearch, and English at least B2. You will collaborate with engineering and security teams on security platform improvements.

Get your free, confidential resume review.
or drag and drop your file here.