Threat Detection Researcher (Cloud)

Reposted 2 Days Ago
Be an Early Applicant
Tel Aviv, ISR
In-Office
6-6 Annually
Senior level
Cloud • Security • Cybersecurity
At Wiz we’re helping customers prevent attacks aimed at stealing data from cloud infrastructure.
The Role
As a Threat Detection Researcher, you will design behavioral baselines, develop detections, investigate attacks in cloud environments, and analyze threats.
Summary Generated by Built In

Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we're now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google’s Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation.

Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We’re honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you’ll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun!

SUMMARY

We're looking for a Threat Detection Researcher to join the Threat Research team and spread the power of Wiz. In this role, you will further develop the Cloud-native Threat Detection domain.

Check out some of our recent research:

  • https://www.wiz.io/blog/detecting-malicious-oauth-applications
  • https://www.wiz.io/blog/tracking-teampcp-investigating-post-compromise-attacks-seen-in-the-wild
  • https://www.wiz.io/blog/wiz-discovers-cloud-email-abuse-campaign

WHAT YOU’LL DO

  • Drive the full lifecycle of security detections - from threat research and data analysis to building and shipping detection logic directly into production.
  • Design behavioral baselines for complex cloud environments using diverse signals, and develop high-fidelity detections based on those baselines.
  • Expand Wiz's detection engine with novel and high-impact telemetry sources, pushing the boundaries of what can be detected in modern cloud environments.
  • Conduct deep technical research into complex cloud services to uncover novel attack vectors.
  • Investigate real-world attacks across cloud environments, identity providers (IDPs), and infrastructure-as-a-service (IaaS) platforms.
  • Hunt and analyze emerging threats and active campaigns targeting the cloud ecosystem.

WHAT YOU’LL BRING

  • 6+ years of hands-on experience in security or threat research, with a proven track record of driving investigations to actionable, real-world impact.
  • Strong self-motivation and ability to independently drive complex research projects from concept to delivery.
  • Clear and effective communicator with excellent collaboration skills, comfortable working across teams and disciplines.
  • Experience conducting data-driven research and working with large-scale telemetry.
  • Proficiency in Python, Go, and query languages (e.g., KQL, SQL)

ADVANTAGE

  • Familiarity with cloud infrastructure (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
  • Background in incident response, red teaming, or threat hunting.
  • Hands-on experience building and shipping security detections as part of a product.
  • Experience writing technical blogs, publishing security research, or speaking at industry conferences.
  • Leveraging AI/LLM-driven tools to enhance detection generation and telemetry analysis.

By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy and that you consent to the retention of your application for consideration for future opportunities at Wiz.

Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship.

Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. 

By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.

Skills Required

  • 6+ years of hands-on experience in security or threat research
  • Strong self-motivation and ability to independently drive complex research projects from concept to delivery
  • Clear and effective communicator with excellent collaboration skills
  • Experience conducting data-driven research and working with large-scale telemetry
  • Familiarity with cloud infrastructure (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures
  • Background in incident response, red teaming, or threat hunting
  • Hands-on experience building and shipping security detections as part of a product
  • Proficiency in Python, Go, and query languages (e.g., KQL, SQL)

Wiz Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Wiz and has not been reviewed or approved by Wiz.

  • Fair & Transparent Compensation Pay bands for remote roles are described as mid–six figures, with additional compensation such as bonuses, commissions, and profit sharing also referenced. Compensation for senior and revenue-linked roles is portrayed as substantial relative to typical tech benchmarks.
  • Healthcare Strength Health coverage is described as robust, spanning medical, dental, vision, life, disability, mental health benefits, and access to flexible spending accounts. The breadth of coverage indicates a comprehensive baseline benefits offering.
  • Leave & Time Off Breadth Time-off policies are framed as flexible, including an unlimited/flexible PTO approach alongside paid holidays and sick time. Flexibility is reinforced by remote programs and a home-office stipend as part of the broader rewards package.

Wiz Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
700 Employees
Year Founded: 2020

What We Do

Every day there’s another cyber-attack on the news. Hackers stole twenty million credit card numbers from a retailer, or they shut down an oil pipeline, or crippled a hospital. These attacks are more than just disruptive; they’re big business for organized crime and rogue states. Wiz is here to prevent them from happening where companies and governments build applications today -- in the cloud. From Barclays to Home Depot, Wiz helps the biggest organizations in the world protect their Amazon, Microsoft, and Google cloud environments. We have only been selling the product for six months, and so far, 10% of the Fortune 500 already use Wiz. But this is just the beginning. Come join the fastest growing enterprise software company in history in one of the fastest growing industries -- the cloud -- and help us make cloud a safe place where creativity and innovative ideas can flourish.

Gallery

Gallery

Similar Jobs

CrowdStrike Logo CrowdStrike

Sr. Intelligence Analyst, Recon+ (Remote, GBR)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
5 Locations
11000 Employees

Snap Inc. Logo Snap Inc.

Business & Growth Product Marketing Lead

Artificial Intelligence • Cloud • Machine Learning • Mobile • Software • Virtual Reality • App development
Hybrid
Tel Aviv, ISR
5000 Employees

Akamai Technologies Logo Akamai Technologies

Senior C++ Low Level Engineer

Cloud • Security • Software • Cybersecurity
In-Office or Remote
2 Locations
10285 Employees

HiBob Logo HiBob

Backend Tech Lead – AI Platform

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
Israel
1350 Employees

Similar Companies Hiring

Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account