📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

This job is no longer available

This job expired on 31/07/2026. It no longer accepts applications.

Security Researcher – Supply Chain & Malware Analysis

Jobgether

Senior 🇬🇧 English
software development Software Development Lifecycle (SDLC) DevSecOps npm PyPI Maven malware analysis

Job description

About the role

We are seeking an experienced Security Researcher to join a cutting‑edge cybersecurity team in Germany. You will work at the intersection of software development, cloud technologies, and threat intelligence to protect modern software ecosystems from emerging threats.

Key responsibilities

  • Conduct in‑depth research on software supply‑chain threats, emerging attack techniques, and advanced adversary behaviors.
  • Analyze, reverse‑engineer, and investigate malware, vulnerabilities, and malicious packages.
  • Design, build, and maintain open‑source tools for detection, analysis, and prevention of supply‑chain attacks.
  • Research threat actors and APT groups, documenting tactics, techniques, and procedures.
  • Translate technical findings into high‑quality research reports, whitepapers, and documentation.
  • Lead research initiatives from concept through implementation, ensuring high standards of quality and innovation.
  • Collaborate with engineering, product, and security teams to enhance detection capabilities and platform resilience.
  • Monitor evolving cybersecurity trends affecting open‑source and cloud‑native environments.

Required profile

  • Minimum 5 years of experience in cybersecurity research, threat research, malware analysis, or vulnerability research.
  • Strong software development background with production‑quality tool delivery.
  • Deep understanding of the Software Development Lifecycle, DevSecOps, and modern CI/CD pipelines.
  • Knowledge of software supply‑chain security and open‑source package ecosystems (npm, PyPI, Maven, etc.).
  • Experience using AI‑powered tools to enhance research and automation.

Required skills

  • Software development
  • AI‑powered research tools
  • Software Development Lifecycle (SDLC)
  • DevSecOps practices
  • CI/CD pipelines
  • npm, PyPI, Maven package management
  • Reverse engineering
  • Malware analysis

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Jobgether.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 4 months ago

33 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Jobgether