Jobs Companies Fortra Sr. Cybersecurity Researcher, Cobalt Strike

À propos de ce poste Sr. Cybersecurity Researcher, Cobalt Strike chez Fortra

Fortra · Sur site · United States

Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more!

Cobalt Strike is Fortra’s adversary simulation and red team operations platform, used by security teams to emulate advanced threat actor behaviors in controlled, authorized environments. The product helps organizations strengthen security operations and incident response by enabling realistic attack simulation, post-exploitation tradecraft, and collaborative red team engagements.

We are looking for a Senior Cybersecurity Researcher to join the Cobalt Strike team. This is a hands-on applied R&D role focused on understanding modern attacker tradecraft, operating system internals, offensive security techniques, and defensive controls, then turning that research into practical product capabilities. You should be curious about how attacks work under the hood and excited to collaborate with engineers to design, validate, and deliver bleeding-edge Cobalt Strike features that are safe, responsible, and useful to authorized security teams.

WHAT YOU'LL DO

  • Research modern adversary tactics, techniques, and procedures, with a focus on post-exploitation tradecraft, endpoint defenses, and attacker behavior. 
  • Analyze security research, malware reports, proof-of-concept techniques, and developments in security controls to identify opportunities for Cobalt Strike product improvements. 
  • Work closely with software engineers, product managers, QA, support, and other researchers to turn research findings into practical, maintainable product capabilities. 
  • Prototype, document, and validate new techniques or product ideas in controlled, authorized lab environments. 
  • Help evaluate how offensive security techniques interact with modern Windows security features, endpoint controls, logging, detection engineering, and enterprise hardening practices. 
  • Produce clear technical write-ups, design notes, research summaries, and recommendations for engineering and product teams. 
  • Contribute to the Cobalt Strike roadmap by identifying emerging trends, customer needs, technical gaps, and opportunities for responsible adversary simulation. 
  • Collaborate with engineering teams during design discussions, implementation planning, testing, and validation. 
  • Communicate research findings to technical and non-technical audiences through internal and external presentations, documentation, blog posts, white papers, webinars, or conference-style talks. 
  • Participate in team planning, roadmap discussions, research reviews, and cross-functional technical discussions. 

QUALIFICATIONS

  • Strong experience in cybersecurity research, offensive security, threat research, red teaming, penetration testing, malware analysis, reverse engineering, detection engineering, or related discipline. 
  • Deep curiosity about how adversaries operate and how security teams can safely emulate, detect, and respond to those behaviors. 
  • Working knowledge of Windows internals 
  • Understanding common post-exploitation concepts, attacker tradecraft, and enterprise security controls. 
  • Ability to analyze technical research, threat intelligence, proof-of-concept code, malware reports, or detection logic and translate findings into clear product recommendations. 
  • Experience working in controlled lab environments to test techniques, validate assumptions, and reproduce technical behaviors. 
  • Strong analytical reasoning, problem-solving, and decision-making skills. 
  • Ability to write clear, accurate technical documentation for engineering, product, and customer-facing audiences. 
  • Ability to work independently on ambiguous research problems while communicating progress, tradeoffs, and findings clearly. 
  • Strong verbal and written communication skills. 
  • High ethical standards and sound judgment, especially when working with offensive security technology. 

PREFERRED QUALIFICATIONS

  • Experience using or developing with Cobalt Strike, or experience with similar adversary simulation, red team, command-and-control, or threat emulation tools. 
  • Experience with Windows debugging, reverse engineering, or analysis tools such as WinDbg, x64dbg, Ghidra, IDA Pro, Process Monitor, Process Explorer, Sysmon, ETW, or similar tools. 
  • Experience with scripting or programming languages such as Python, PowerShell, C, Java, Go, Rust, or similar. 
  • Experience applying AI/ML tools, including LLMs or agent-based workflows, to automate, accelerate, or augment security research, reverse engineering, detection analysis, or threat emulation workflows. 
  • Experience analyzing malware, loaders, implants, shellcode, process injection techniques, evasion techniques, persistence mechanisms, credential access techniques, or lateral movement behaviors in authorized research contexts. 
  • Experience with endpoint detection and response products 
  • Experience producing public-facing security research, conference talks, technical blogs, whitepapers, webinars, or customer-facing technical content, with personal write-ups, public talks, publications, or other verifiable contributions. 
  • Background in military, government, or public-sector cyber operations, with an established professional network in those communities. 

Compensation: 105,000 - 160,000 USD

At Fortra, we’re breaking the attack chain. Ready to join us?

At Fortra, our compensation philosophy prioritizes fair market value and internal equity, aligning with your experience and specialized skill set.

As a full-time, exempt employee at Fortra, you’ll enjoy a comprehensive benefits package that includes:

  • Health, dental, and vision coverage as of hire

  • Immediate enrollment in 401(k), HSA, and FSA plans

  • Flexible PTO policy

  • Tuition and personal enrichment reimbursement

  • Option to enroll in ID Theft Protection Program

At Fortra, work is only part of the story. Explore what Life at Fortra is all about, from perks that support holistic wellbeing to a culture that keeps you connected and empowered to make an impact beyond the job.

Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn.

As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.

Prêt à postuler chez Fortra ?
Postuler chez Fortra

À propos de Fortra

Ready to break the attack chain and forge a stronger future? Let’s secure it—together. At Fortra, we’re not just responding to cyber threats but anticipating them, planting obstacles, and breaking the attack chain. Fortra is a global cybersecurity company offering advanced offensive and defensive security solutions that deliver comprehensive protection across the cyber kill chain. Armed with a team of passionate experts driven by a shared purpose, we work together to empower our clients with the tools, intelligence, and expertise to safeguard what matters most.

Voir tous les emplois chez Fortra →

Emplois similaires

Trexquant Investment
Quantitative Researcher - PhD (USA)
Trexquant Investment
⚡ Postuler tôt New York, New York, United Sta... Sur site $150,000–$200,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
Trexquant Investment
Quantitative Researcher - Early Career (USA)
Trexquant Investment
⚡ Postuler tôt New York, New York, United Sta... Sur site $120,000–$180,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
CivilGrid
UX Researcher
CivilGrid
⚡ Postuler tôt Boston Hybride $119,000–$140,000
● Nouveau 👁 Vu ✓ Postulé il y a 3 h
ClinChoice
Senior Clinical Research Associate - Contract
ClinChoice
⚡ Postuler tôt West Coast, United States Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 h
Precision Medicine Group
Associate Research Scientist, Real World Evidence
Precision Medicine Group
⚡ Postuler tôt Remote, United States · lieu restreint $66,000–$94,000
● Nouveau 👁 Vu ✓ Postulé il y a 4 h
Precision AQ
Associate Research Scientist, Real World Evidence
Precision AQ
⚡ Postuler tôt Remote, United States · lieu restreint $66,000–$94,000
● Nouveau 👁 Vu ✓ Postulé il y a 4 h
IMC
Machine Learning Researcher
IMC
⚡ Postuler tôt Chicago, United States; New Yo... Sur site $250,000–$300,000
● Nouveau 👁 Vu ✓ Postulé il y a 6 h
IMC
Quantitative Researcher – Futures
IMC
⚡ Postuler tôt Chicago, United States; New Yo... Sur site $250,000–$300,000
● Nouveau 👁 Vu ✓ Postulé il y a 6 h
IMC
Graduate Machine Learning Researcher - London
IMC
⚡ Postuler tôt London, United Kingdom Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 6 h

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Fortra

Voir tous les emplois chez Fortra →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit