Jobiglo

No results.

Security Researcher – Supply Chain Threats

Jobgether · Milan et périphérie

New
Senior 🇬🇧 English
Malware analysis Software development CI/CD DevSecOps SDLC npm PyPI Maven

Job description

About the role

We are seeking an experienced Security Researcher to join a cutting‑edge cybersecurity team in Italy. The role focuses on defending modern software ecosystems by investigating supply‑chain attacks, analysing malware, and creating innovative detection tools.

Key responsibilities

  • Conduct in‑depth research on software supply‑chain threats, emerging attack techniques and advanced adversary behaviours.
  • Analyze, reverse‑engineer and investigate malware, vulnerabilities and malicious packages to develop detection methods.
  • Design, build and maintain open‑source tools that improve detection, analysis and prevention of supply‑chain attacks.
  • Research threat actors and APT groups, documenting tactics, techniques and procedures.
  • Translate technical findings into research reports, whitepapers and documentation for internal and external audiences.
  • Lead research initiatives from concept through implementation, ensuring high quality and innovation.
  • Collaborate with engineering, product and security teams to enhance security methodologies and platform resilience.
  • Monitor evolving cybersecurity trends affecting open‑source and cloud‑native environments.

Required profile

  • Minimum 5 years of experience in cybersecurity research, threat research, malware analysis or vulnerability research.
  • Strong software development background with a track record of delivering production‑quality tools.
  • Deep understanding of the Software Development Lifecycle, DevSecOps and modern CI/CD pipelines.
  • Knowledge of software supply‑chain security and open‑source package ecosystems (npm, PyPI, Maven, etc.).
  • Experience leveraging AI‑powered tools to enhance research and automation.

Required skills

  • Malware analysis
  • Reverse engineering
  • Software development
  • CI/CD
  • DevSecOps
  • SDLC
  • npm
  • PyPI
  • Maven
  • AI‑powered research tools

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Jobgether.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

Published 5 giorni fa

Expires tra 1 mese

16 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Jobgether

Milan et périphérie