Security Research Engineer

Fortinet
Israel
Workplace: HybridFull timeFunction: Research & Scientific (R&D)Experience: 4+ yearsSkills: ["Team player","Ability to work independently","Professional English"]

Research and prototype server-side and cloud security capabilities to improve detection, classification, and incident prioritization. Analyze emerging attack techniques and behavioral anomalies using EDR/EPP telemetry, logs, and security events. Define and validate security requirements for cloud and server infrastructures, perform root-cause analysis for detection gaps, and support escalations and investigations with expert remediation guidance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Fortinet
Fortinet
9 months ago

Security Research Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Research and prototype server-side and cloud security capabilities to improve detection, classification, and incident prioritization. Analyze emerging attack techniques and behavioral anomalies using EDR/EPP telemetry, logs, and security events. Define and validate security requirements for cloud and server infrastructures, perform root-cause analysis for detection gaps, and support escalations and investigations with expert remediation guidance.
Location: Israel
Workplace: Hybrid
Employment Type: Full time
Job Function: Research & Scientific (R&D)
Seniority: Mid level

Key Responsibilities

  • •Research and prototype new server-side and cloud-based security capabilities to improve detection, classification, and prioritization of security incidents.
  • •Identify and evaluate emerging attack techniques, threat patterns, and behavioral anomalies using EDR/EPP telemetry, logs, and security events.
  • •Define and validate security requirements for cloud and server infrastructures in collaboration with engineering teams.
  • •Perform root cause analysis on detection failures, false positives, and missed attacks.
  • •Participate in escalations and investigations, providing expert analysis and remediation guidance.

Key Requirements

  • •4+ years of experience in threat detection.
  • •Hands-on experience developing and tuning high-fidelity detection content, such as YARA rules.
  • •Understanding Windows internals (process trees, memory artifacts, system calls, audit logs, etc.).
  • •Experience analyzing large-scale telemetry, log data, and detection outputs to identify anomalies and reduce false positives.
  • •Scripting proficiency in Python, PowerShell, and/or Bash, plus familiarity with malware and networking protocols.
Experience:4+ yearsCybersecurityThreat detectionEndpoint security
Skills:Team playerAbility to work independentlyProfessional English
Languages:English
Tech Stack:YARAPythonPowerShellBashWindows internalsEDREPPTelemetryLogsBigtableELKSplunkXDRAVAttack SimulationThreat huntingIncident response

Company Brief

Fortinet
Provides enterprise cybersecurity solutions including data protection, cloud security, network security, and user and entity behavior analytics to help organizations prevent insider threats, secure cloud and on-premises environments, and enforce data loss prevention policies.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Established Company
Funding: Private Equity Backed
Headquarters: Austin, United States
Founded: 1994
WebsiteLinkedIn