Senior Threat Researcher

Sophos
United Kingdom
Workplace: RemoteFull timeFunction: Research & Scientific (R&D)Skills: ["Communication","Problem-solving","Collaboration","Teamwork"]

Senior Threat Researcher will analyze advanced security threats, develop high-fidelity detections across the platform, and collaborate with CTU Threat Intelligence to reduce noise in alerts. You’ll leverage multi-source telemetry, refine detection rules, and contribute to internal tooling and automation within SophosLabs to strengthen threat detection capabilities.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Sophos
Sophos
6 months ago

Senior Threat Researcher

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 9 hours agoStatus: Live

Job Summary

Senior Threat Researcher will analyze advanced security threats, develop high-fidelity detections across the platform, and collaborate with CTU Threat Intelligence to reduce noise in alerts. You’ll leverage multi-source telemetry, refine detection rules, and contribute to internal tooling and automation within SophosLabs to strengthen threat detection capabilities.
Location: United Kingdom
Workplace: Remote
Employment Type: Full time
Job Function: Research & Scientific (R&D)
Seniority: Sr. Manager level

Key Responsibilities

  • •Develop countermeasures to detect advanced threats based on research and intelligence from the CTU team.
  • •Analyze endpoint behaviors and logs to design detections using multi-source telemetry.
  • •Continuously refine and monitor detection rules to optimize the signal-to-noise ratio for alerts.
  • •Research and implement alert handling for new device ingestions, ensuring high-value signal delivery.
  • •Collaborate on the development of internal tools, automation, and detection infrastructure.

Key Requirements

  • •Hands-on experience in scripting languages (PowerShell, Bash, Python) and Python data science libraries (NumPy, Pandas, Matplotlib).
  • •Knowledge of CI/CD pipelines, testing frameworks, and automation principles.
  • •Proficiency in analyzing logs from firewalls, proxies, and security infrastructure to identify anomalies.
  • •Familiarity with event logs, traffic pattern anomalies, and threat hunting methodologies.
  • •Strong understanding of endpoint detection, Linux/Unix and Windows OS internals, vulnerability identification, and workflow automation.
Experience:CybersecurityThreat research
Skills:CommunicationProblem-solvingCollaborationTeamwork
Tech Stack:PowerShellBashPythonNumPyPandasMatplotlibCI/CDLog analysisMemory forensicsReverse engineering

Company Brief

Sophos
Provides enterprise cybersecurity software and services including endpoint protection, network security, cloud security, encryption, and managed threat response to protect organizations from advanced threats and ransomware.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 500M to 1B
Growth: Established Company
Valuation: Unicorn (USD 1B+)
Funding: Private Equity Backed
Headquarters: Abingdon, United Kingdom
Founded: 1985
WebsiteLinkedIn