Palo Alto Networksposted 1 day ago
$174,000 - $295,000/Yr
Full-time • Senior
Santa Clara, CA

About the position

As a Principal Product Security Researcher at Palo Alto Networks, you will play a high visibility and impactful role in addressing the latest security threats. Your responsibilities will include discovering and creating proof of concepts for new security vulnerabilities in Palo Alto Networks products and cloud offerings, advancing the state of the art in security research and bug hunting, evaluating the security of products’ code and architecture, and serving as a subject-matter expert in product security.

Responsibilities

  • Discover and create proof of concepts for new security vulnerabilities in Palo Alto Networks products and cloud offerings.
  • Advance the state of the art in security research and bug hunting by developing novel methods for vulnerability discovery.
  • Evaluate the security of Palo Alto Networks products’ code and architecture and propose changes to improve their security posture.
  • Perform root-cause analysis of vulnerabilities and work closely with product teams to develop and review secure solutions.
  • Serve as a product security subject-matter expert when collaborating with Palo Alto Networks leadership and industry partners.

Requirements

  • Proven track record of discovering and exploiting impactful vulnerabilities in software (e.g. CVEs, bug bounties, talks).
  • Expert in secure programming, penetration testing, and security architecture in cloud native environments (e.g. GCP, AWS).
  • Strong familiarity with cloud security, Linux, low level operating system concepts, and networking.
  • Strong analytical and problem-solving skills, with the ability to work both independently and collaboratively with diverse stakeholders.
  • Excellent written and verbal communication skills, preferably demonstrated through technical blogs, write-ups, and talks.
  • Experience writing SAST rules and fuzzing/instrumenting complex applications to discover vulnerabilities is a plus.
  • Participation in Capture the Flag (CTF) events, a local OWASP chapter, or similar security-focused communities is a plus.
  • BS or MS Degree in Engineering or Computer Science, related to computer security, application security, information security, network security, or cryptography or equivalent military experience is preferred.

Benefits

  • FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees.
  • Mental and financial health resources.
  • Personalized learning opportunities.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service