Cloudflare Logo

Cloudflare

Security Researcher & Analyst, Application Security

Job Posted 15 Hours Ago Posted 15 Hours Ago
Be an Early Applicant
Hybrid
2 Locations
Mid level
Hybrid
2 Locations
Mid level
The role involves researching security vulnerabilities, reverse engineering exploits, conducting penetration tests, developing security tools, and communicating findings on cybersecurity trends.
The summary above was generated by AI

Available Location: Lisbon, Portugal or London, UK About the department
Cloudflare's Application Security department builds and runs the software that detects and mitigates malicious, abusive, and fraudulent HTTP requests going through Cloudflare network before they reach our customer sites. We achieve this by harnessing the vast amount of internet traffic data available to us to create and manage products including WAF, Bot Management, Fraud Detection and more. We use state of art Artificial Intelligence and Machine Learning techniques in security attack detection and mitigation. The team is a multidisciplinary team where system and software engineers, security researchers and analysts, and data scientists work together to identify active adversaries or attackers, and design and implement machine learning models and engineering solutions to protect customers from these security attacks.
What you'll do

  • Hands-on experience working with threat detection and prevention product engineering teams, recognizing vulnerabilities and configuring mitigations or managing risks in existing and new products.
  • Apply a deep understanding of security vulnerabilities in web application and application security.
  • Reverse and research n-day exploits, proactively detect patterns of bot and fraud attacks, review false positive and false negative reports, and recommend security configurations.
  • Excellent at communicating the details about security forensics to technical and non-technical audiences. Including writing public facing research blogs.
  • Authoring periodic report on trends on Internet traffic and security attack insights
  • Experience with modern cloud-based technologies used to deliver rapidly-changing products at scale.
  • Conduct penetration testing to identify security gaps and potential exploits across applications and services.
  • Develop, maintain, and enhance security dashboards to monitor and analyze attack trends, bot activity, and fraud detection metrics.
  • Leverage strong coding skills to build and automate security tools, improve system engineering workflows, and develop new security rules and heuristics.


Examples of desirable skills, knowledge and experience

  • A degree in computer science, IT, systems engineering, or related qualification.
  • 4 years of work experience with incident detection, incident response, forensics, reverse engineering, security research or similar.
  • Ability to work under pressure in a fast-paced environment.
  • Strong attention to detail with an analytical mind and outstanding problem-solving skills. Excellent organizational skills.
  • Great awareness of cybersecurity trends and hacking techniques.
  • Demonstrated results in identifying, tracking and resolving issues to resolution in the areas of cybersecurity.
  • Strong written and verbal communication skills.
  • Experience in OWASP, security standards and best practice
  • Strong SQL experience.
  • Proficiency in penetration testing methodologies, tools, and vulnerability assessment techniques.
  • Experience in building security dashboards using tools like Grafana or similar visualization platforms.
  • Strong programming experience with expertise in Python, Go, Rust, or JavaScript to develop security tools and automation.
  • Prior experience or interest in Web Security, HTTP protocols, Python, Jupyter Notebook, and JavaScript is a huge plus!
  • Knowledge and experience with machine learning, statistical inference, and AI in general is a huge plus


Bonus Points

  • Knowledge and experience with columnar database like Clickhouse
  • Familiarity writing and optimizing advanced SQL queries
  • Good Linux/UNIX systems knowledge
  • Presented in security conferences such as Blackhat, Defcon, Bsides etc.

Top Skills

AI
Cloud Technologies
Go
Grafana
Http Protocols
JavaScript
Machine Learning
Python
Rust
SQL

Cloudflare Austin, Texas, USA Office

405 Comal St, Austin, TX, United States, 78702

Similar Jobs at Cloudflare

8 Hours Ago
Hybrid
Lisbon, PRT
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Senior Security Systems Reliability Engineer, you'll ensure secure, reliable infrastructure by designing, managing, and supporting security technologies, engaging in risk management, and improving automation processes.
Top Skills: AnsibleAWSAzureCi/CdCloudflareGCPIamKubernetesLinuxPythonTerraform
3 Days Ago
Hybrid
5 Locations
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
As an Application Security and Performance Consultant, you will provide technical execution and advisory services, ensuring customer value from Cloudflare products, and will manage projects for implementation and migration.
Top Skills: Api GatewayAPIsBashBot ManagementCertificates ManagerDdos ProtectionDnsHTTPJavaScriptPage ShieldPythonRate LimitingSslTcp/IpTerraformTlsWaf
4 Days Ago
Hybrid
Lisbon, PRT
Mid level
Mid level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Network Security Engineer, you'll resolve technical issues, help customers mitigate threats, and improve Cloudflare products. Strong networking and scripting skills required.
Top Skills: BashCloudflareCurlDigGitIptablesJavaScriptOpensslOsi ModelPacket Capture AnalysisPythonSQLTcpTracerouteUdp

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account