Threat Research Analyst

sigmasoftware2Β· BU007 (oxMCt)
Apply Now β†—

About this role

Company Description

Are you passionate about cybersecurity research and uncovering sophisticated attack patterns? We are looking for a Threat Research Analyst to join a remote team working on advanced application protection solutions for a global Customer in the cybersecurity domain.

In this role, you will investigate suspicious activity, analyze attack vectors, and help improve detection and blocking mechanisms for modern web applications. You will work with monitoring systems, behavioral analytics, and threat intelligence data to proactively identify emerging threats and strengthen platform security.

We at Sigma Software offer the opportunity to work on impactful security products, collaborate with experienced professionals, and grow your expertise in modern cybersecurity technologies while working remotely within European time zones.

CUSTOMER
Our Customer is a global cybersecurity company delivering comprehensive security solutions for businesses, organizations, and digital ecosystems. Operating across multiple industries, the company focuses on preventing cyber threats, identifying vulnerabilities, and protecting web applications from sophisticated automated attacks.Β 

PROJECT
The project is focused on building a security platform that safeguards applications from automated attacks and malicious traffic. The Threat Research team investigates emerging attack techniques, analyzes suspicious behavioral patterns, and develops detection and blocking mechanisms to improve overall protection capabilities.

As part of the team, you will work with logs, dashboards, threat intelligence data, and monitoring systems to uncover new attack vectors and enhance application security in real-world environments.

Job Description

  • Monitor existing threats and investigate suspicious activities using logs, dashboards, and detection systems
  • Analyze attack patterns and build detailed threat scenarios based on collected data
  • Research and respond to reported threats, Customer escalations, and security incidents
  • Improve detection and blocking mechanisms for automated attacks and malicious behaviors
  • Analyze intelligence from competitors, public sources, and industry trends to identify emerging threats
  • Work with monitoring and analytics tools such as Kibana and Elasticsearch
  • Collaborate with engineering and security teams to improve product protection capabilities
  • Document findings, attack methodologies, and investigation results

Qualifications

  • At least 3Β years of commercial experience in cybersecurity, threat research, or related areas
  • Hands-on experience in cybersecurity, threat detection, security research, threat hunting, anti-bot solutions, fraud and abuse detection, application security, or a closely related security domain.
  • Strong understanding of attacker tactics, techniques, and behaviors, including methods used to evade, bypass, or modify attacks to avoid detection.
  • Experience investigating suspicious or malicious activities, with a solid understanding of detection, alerting, and blocking mechanisms.
  • Strong understanding of web technologies and architecture, including:
    • Client-server architecture
    • HTTP/HTTPS protocols
    • REST APIs and web services
    • Request/response lifecycle
    • Headers, cookies, sessions, and authentication mechanisms
  • Understanding of browser technologies and experience investigating:
    • DOM structure and manipulation
    • Browser events
    • XHR and Fetch requests
    • WebSockets
    • Browser APIs
    • Browser security policies and controls
  • Ability to read and analyze JavaScript code, identify application behavior, detect suspicious or incorrect logic, and understand potential remediation approaches. Deep JavaScript development expertise is not required.
  • Working knowledge of HTML and CSS sufficient to investigate and understand web application behavior.
  • Strong practical experience with SQL for data analysis, investigations, and working with large datasets.
  • Hands-on experience using Kibana for log analysis, monitoring, and investigations.
  • Solid understanding of networking fundamentals, including:
    • TCP/IP
    • DNS
    • VPN technologies
    • Proxies
    • Basic network troubleshooting
  • Ability to independently investigate complex technical issues and correlate multiple data points to build a complete attack or incident scenario.
  • Experience using AI-powered tools and chatbots for research and technical investigations, including the ability to write effective prompts and interpret results.
  • Upper-Intermediate (B2) or higher level of English.

WILL BE A PLUS

  • Understanding of Elasticsearch and its ecosystem.
  • Python scripting and automation skills.
  • Experience developing, analyzing, or investigating crawlers, scrapers, or browser automation tools.
  • Experience with deobfuscation and/or reverse engineering techniques.
  • Experience investigating bot traffic, automated attacks, scraping activity, credential stuffing, account takeover attempts, abuse, fraud, or similar threats.
  • Experience with monitoring, analytics, and observability platforms such as Datadog, Imply, Splunk, Microsoft Sentinel, OpenSearch, or similar tools.

Additional Information

PERSONAL PROFILE

  • Strong analytical and investigative mindset
  • Attention to detail and ability to identify unusual behavioral patterns
  • Curiosity about cybersecurity threats and attacker techniques
  • Ability to work independently in a fast-paced environment
  • Strong communication and collaboration skills
  • Proactive approach to problem-solving and continuous learning

Frequently Asked Questions

Is the salary disclosed for the Threat Research Analyst position at sigmasoftware2?
The salary for this Threat Research Analyst role at sigmasoftware2 is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Is the Threat Research Analyst job at sigmasoftware2 remote?
Yes, this Threat Research Analyst position at sigmasoftware2 is remote, with team members based in Masovian Voivodeship, pl, Warsaw, Warsaw, Masovian Voivodeship, Poland. You can work from home or anywhere in the supported regions.
Is the Threat Research Analyst role at sigmasoftware2 full-time or part-time?
This is listed as a Full time position. It is posted as a Threat Research Analyst role in the BU007 (oxMCt) department at sigmasoftware2.
Which team or department does the Threat Research Analyst at sigmasoftware2 belong to?
This Threat Research Analyst position is part of the BU007 (oxMCt) department at sigmasoftware2. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Threat Research Analyst position at sigmasoftware2?
Click the "Apply Now" button on this page. You will be redirected to sigmasoftware2's official application portal hosted on smartrecruiters where you can submit your application directly.
When was the Threat Research Analyst job at sigmasoftware2 posted?
This Threat Research Analyst position at sigmasoftware2 was posted on Sep 4, 2026. Apply as soon as possible β€” early applications are often reviewed first.
Threat Research Analyst
sigmasoftware2
Apply for this role β†—

You'll be redirected to sigmasoftware2's official application page on SmartRecruiters.