Fortra Logo

Fortra

Senior Cybersecurity Researcher

Posted 14 Days Ago
Be an Early Applicant
Hybrid
Canada
Senior level
Hybrid
Canada
Senior level
The Senior Cybersecurity Researcher will enhance detection capabilities, perform threat hunting, provide incident response support, and mentor junior team members.
The summary above was generated by AI

Whether you’re an experienced professional or just getting started, your contributions matter at Fortra. If you’re passionate about tackling meaningful challenges alongside talented team members committed to helping each other succeed, all while having lots of fun, we want to hear from you. We offer competitive benefits and salaries, personal and professional development opportunities, flexibility, and much more! 

At Fortra, we’re breaking the attack chain. Ready to join us? 

Fortra is looking for a seasoned and proactive Senior Cybersecurity Researcher to join our front-line cyber defense team. This is a critical, hands-on role for a technical expert who can hit the ground running with detection engineering. You'll be responsible for engineering and enhancing our detection capabilities across both our Data Loss Prevention (DLP) and Endpoint Detection & Response (EDR) platforms.

Your mission will be to proactively hunt for, identify, and build high-fidelity detections to stop advanced threats and prevent data exfiltration. If you excel at reverse-engineering application behavior, understanding how data moves, and building robust rules to stop attackers in their tracks, this role is for you.

WHAT YOU'LL DO

  • Build & Tune Detections: Design, develop, test, and maintain sophisticated detection rules and policies within our EDR and DLP solutions to identify malicious activity and data exfiltration patterns.
  • Technical Analysis: Conduct deep-dive analysis of application, operating system, and network behaviors. You'll use tools like Procmon, Sysmon, Wireshark, and others to understand underlying functions and identify opportunities for detection.
  • Threat Hunting: Proactively hunt for advanced persistent threats (APTs), insider threats, and novel data exfiltration techniques across the enterprise.
  • Code & Automate: Utilize Python, JSON, and XML to create, manage, and automate detection logic, policies, and response actions.
  • Framework Alignment: Develop and map detection logic against industry-standard frameworks, with a heavy emphasis on the MITRE ATT&CK framework, to ensure comprehensive coverage of adversary tactics and techniques.
  • Incident Response Support: Act as a senior technical escalation point for the Security Operations Center (SOC), providing expert analysis on complex alerts and security incidents.
  • Mentorship: Mentor junior analysts and engineers, sharing your expertise in threat detection and system analysis to elevate the team's overall capability.
  • Other duties as assigned.

QUALIFICATIONS

  • 5-7+ years of experience in a senior cybersecurity role such as Detection Engineering, Threat Hunting, or a Senior SOC Analyst position.
  • Expert-level, hands-on experience with either a major EDR platform or an enterprise DLP solution.
  • Strong proficiency in scripting and data interchange formats, specifically Python, JSON, and XML, for building and managing detection logic.
  • Demonstrated expertise in profiling applications and system-level processes using tools like Sysmon and the Sysinternals suite (Procmon, ProcExp, etc.).
  • A deep, practical understanding of modern data exfiltration techniques (e.g., DNS tunneling, data staging, hiding in legitimate traffic) and the attacker lifecycle.
  • Proven ability to apply the MITRE ATT&CK framework to threat modeling and detection engineering in a practical, measurable way.
  • A self-starter mentality with the ability to operate independently and drive projects to completion with minimal supervision.

PREFERRED QUALIFICATIONS

  • Relevant industry certifications (e.g., GIAC GCIH, GCFA, GREM, CISSP).
  • Experience with cloud environments (AWS, Azure, GCP) and their native security tooling.
  • Proficiency with SIEM query languages like Splunk SPL or Kusto Query Language (KQL).
  • Experience with macOS.
  • Experience with network forensics and packet analysis.
  • Contributions to the security community (e.g., open-source tool development, research papers, blog posts).

3421

Visit our website to learn more about why employees choose to work for Fortra. Remember to connect with us on LinkedIn.
As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, veteran or disability status.

Top Skills

Dlp
Edr
JSON
Mitre Att&Ck
Procmon
Python
Sysmon
Wireshark
XML

Similar Jobs

38 Minutes Ago
Remote or Hybrid
Canada
Junior
Junior
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
As an iOS Software Engineer, you will build high-quality applications, collaborate with teams, and ensure code quality while learning iOS technologies.
Top Skills: GitiOSSwiftSwiftuiXcode
4 Hours Ago
Hybrid
Toronto, ON, CAN
Junior
Junior
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
The Packaging Engineer will organize and execute packaging design and development projects, manage supplier relations, and create technical reports while collaborating with cross-functional teams.
Top Skills: Chemical EngineeringMechanical EngineeringPackaging Science
4 Hours Ago
Hybrid
Toronto, ON, CAN
Mid level
Mid level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
This role focuses on implementing operational excellence through Continuous Improvement (CI) processes, facilitating training, and managing digital initiatives to enhance manufacturing performance.
Top Skills: Continuous Improvement ToolsDigital FactoryLean Six SigmaMarcoShoplogixTpm

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account