Jobs Companies Qualys Lead Security Research Engineer

Über diese Lead Security Research Engineer Stelle bei Qualys

Qualys · Vor Ort · Pune

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

As a Lead Security Research Engineer, you will provide technical leadership for vulnerability research, exploit analysis, exposure validation, and vulnerability signature development across the Qualys security platform. You will lead initiatives to identify, validate, and prioritise security risks based on real-world exploitability, helping customers distinguish theoretical exposures from confirmed attack paths.
 

Responsibilities:

- Lead vulnerability research initiatives across operating systems, databases, enterprise applications, cloud services, container platforms, and network devices.
- Research newly disclosed, N-day, and actively exploited vulnerabilities.
- Lead the development of exploit-based exposure validation techniques to confirm real-world exploitability of vulnerabilities.
- Review technical designs, research methodologies, and code contributions to ensure quality and consistency.
- Partner with Engineering and Product teams to influence roadmap decisions and security content strategy.
- Design safe and controlled validation mechanisms that emulate attacker behavior without affecting production systems.
- Analyze vulnerability root causes, attack vectors, exploitability conditions, and potential business impact.
- Mentor and guide Security Research Engineers on vulnerability analysis, exploit analysis, and signature creation.
- Build validation logic capable of determining whether existing security controls such as WAFs, firewalls, EDRs, IPS, and compensating controls effectively prevent exploitation.
- Drive automation initiatives for vulnerability research, exploit validation, content generation, testing, and release processes.
- Establish best practices, coding standards, and quality guidelines for signature development.


Qualifications:
- Bachelor's degree in a relevant field (or equivalent experience).

- 8+ years of hands-on experience in vulnerability research, penetration testing, detection engineering, or security research.
- Deep understanding of TCP/IP, HTTP/HTTPS, FTP, SSH, SMTP, DNS, SSL/TLS, and modern web protocols.
- Strong expertise in vulnerability analysis, exploit development, and attack techniques.
- Extensive knowledge of operating systems, databases, web technologies, cloud environments, and enterprise infrastructure.
- Strong coding background.
- Experience with packet analysis, network troubleshooting, and protocol reverse engineering.
- Knowledge of OWASP Top 10, common attack techniques, and modern threat actor tactics.
- Excellent written, verbal, and technical communication skills.
- Demonstrated experience leading projects and mentoring technical teams.


Additional Plus Competencies:
Understanding of Lua (preferred), Bash, or Python.
Knowledge of Cloud Platforms (AWS, Azure, Oracle, etc.).
Proficient with regular expressions.
Knowledge of container technologies such as Docker and Kubernetes.
Experienced in the use of vulnerability scanners, IDS, and security tools.
OSCP, CISSP, or SANS GIAC certifications.

Bereit, sich bei Qualys zu bewerben?
Bei Qualys bewerben

Über Qualys

Qualys, Inc. (NASDAQ: QLYS) is a pioneer and leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings.

Alle Jobs bei Qualys ansehen →

Ähnliche Jobs

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Qualys

Alle Jobs bei Qualys ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos