> Markdown version of [/jobs/ext/1216011-threat-detection-researcher-windows-linux-macos](https://www.wearedevelopers.com/jobs/ext/1216011-threat-detection-researcher-windows-linux-macos). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Threat Detection Researcher (Windows/Linux/MacOS) - **Company:** Wiz Inc. - **Location:** New York, NY, United States - **Experience:** Expert - **Salary:** $200,000.0 - $250,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Amazon Web Services, Apple Mac Systems, Microsoft Azure, C++ (Programming Language), Cloud Computing, Continuous Integration, Linux, Intrusion Detection and Prevention, Python (Programming Language), Cloud Services, Reverse Engineering, AI Infrastructure, Google Cloud, Malware, Cyber Threat Analysis, Kubernetes - **Published:** July 9, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ff3b274d9ac925ed ## About the Role * 6+ years of experience in security or threat research in which you conducted deep research with actionable conclusions and impacts * Intimate knowledge of OS internals (Windows/Linux/MacOS) and networking * Familiarity with cloud services, Kubernetes, cloud environment architecture, and the major cloud providers (AWS, GCP, Azure) * Proficiency in Python for tool development and automation (knowledge of Go, Rust, or C/C++ - an advantage) * Experience delivering security detections in customer-facing product(s) * The ability to learn independently, to be self-driven and goal-oriented * Excellent communication and teamwork skills ADVANTAGE * Hands-on experience with malware analysis/reverse engineering/vulnerability research * Familiarity with notable threat actors and threat intelligence analysis * IR/red-team/threat-hunting experience * Experience leveraging AI to supercharge research and detection workflows * Deep knowledge of modern threat classes (Supply Chain, CI/CD, or threats targeting AI infrastructure and agentic frameworks), Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship. ## Description * Develop detections and tools to protect customers from cloud threats * Investigate attacks on cloud environments and malware targeting cloud and AI workloads * Hunt and analyze real-world attacks and emerging cloud and AI threats * Collaborate closely with the R&D team to transform research insights into product features * Work with customers in response to requests related to suspicious activity or potential incidents * Create best practices and security policies based on research findings * Deliver external-facing content (blog posts and talks at security conferences) based on security insights and novel research ## Related Videos - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Training Bots on Deliveroo Data, Alexa Can Swear and Mushroom Electronics - Julia Kordick](https://www.wearedevelopers.com/videos/1839-training-bots-on-deliveroo-data-alexa-can-swear-and-mushroom-electronics-julia-kordick) - [From Build to Breach: Hacking Kubernetes Through the Supply Chain](https://www.wearedevelopers.com/videos/100183-from-build-to-breach-hacking-kubernetes-through-the-supply-chain) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)