Security Researcher

Iru

$90K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3-5 years experience in cybersecurity with a focus on malware analysis and threat research for Windows/macOS.
  • Experience developing file-based and behavioral detections for endpoints (e.g., YARA, Sigma).
  • Solid understanding of the vulnerability research lifecycle and CVE ecosystem.
  • Proficiency with malware analysis tools (e.g., Binary Ninja, WinDbg, Sysinternals, Mac Monitor).
  • Strong understanding of OS internals and endpoint security mechanisms.

Responsibilities

  • Analyze malware and adversarial behavior to identify threat detection opportunities.
  • Develop and enhance detection rules for Windows and macOS integrated into EDR products.
  • Collaborate with engineers to incorporate detection logic into cross-platform security solutions.
  • Contribute to EDR and vulnerability products throughout discovery and disclosure processes.
  • Research and create new methods for vulnerability detection.
  • Monitor emerging threats and trends in the Windows/macOS environments.
  • Advise on product roadmap by providing research-driven insights and detection recommendations.
  • Publish research findings in blog posts and at industry conferences.

Benefits

  • Hybrid work environment (3 days in-office per week).
  • 100% individual and dependent medical, dental, and vision coverage.
  • 401(K) with a 4% company match.
  • 20 days PTO plus annual Iru Wellness Week.
  • Equity for full-time employees.
  • Onsite lunch stipend.
  • Up to 16 weeks of paid leave for new parents.
  • Modern Health mental health benefits for individuals and dependents.
  • Fertility benefits available.
  • Exciting opportunities for career growth.
Full Job Description
The Opportunity

We are looking for a Security Researcher specializing in Windows and macOS threat detection to join our small, focused Threat Intelligence and Research team. In this role, youll research, analyze, and develop robust file-based and behavioral detections targeting malware, threat actors, and attack methodologies across both platforms. Youll be a direct contributor to both our EDR and Vulnerability products - bringing research depth that spans threat detection and the full vulnerability lifecycle. Youll also help raise the teams external profile through published research and conference talks. As part of a small team, youll have significant ownership over your work and a direct impact on the direction of our research and products.

What Youll Do

  • Perform in-depth analysis of malware and adversarial behavior across Windows and macOS to identify detection opportunities.
  • Develop and enhance detection rules and behavioral analytics for both platforms, integrated into our EDR product.
  • Collaborate with engineering teams to incorporate detection logic into our cross-platform security agent.
  • Actively contribute to both our EDR and vulnerability products - spanning threat detection and the full vulnerability lifecycle: discovery, product coordination,CVE publications/submissions, and public disclosure.
  • Research and develop new vulnerability detection methods.
  • Continuously monitor emerging threats and trends across Windows and macOS ecosystems.
  • Contribute to the product roadmap for both EDR and vulnerability products by surfacing research-driven insights and detection capability recommendations.
  • Author blog posts and present findings at industry conferences to contribute to the broader security community.
  • Document and communicate research findings clearly, both internally and externally.


What Youll Bring

  • 3-5 years of experience in cybersecurity, with hands-on focus on malware analysis and threat research across Windows and/or macOS.
  • Proven experience developing file-based and behavioral detections for endpoints (YARA, Sigma).
  • Solid understanding of the vulnerability research lifecycle: discovery through coordinated disclosure and CVE ecosystem.
  • Experience with malware analysis tools and techniques (Binary Ninja, WinDbg, Sysinternals, or Mac Monitor).
  • Strong understanding of OS internals and endpoint security mechanisms on Windows and/or macOS (Endpoint Security APIs).
  • Demonstrated ability to communicate research externally - blog posts, conference talks, or published work.


Preferred Qualifications

  • Experience developing or contributing to EDR or next-gen antivirus products.
  • Experience leveraging AI tools to accelerate threat research, detection development, and analysis workflows.
  • Familiarity with both Windows and macOS threat landscapes and platform-specific attack techniques.
  • Proficiency with security-focused scripting and data analysis (Python, PowerShell, Bash, etc.).
  • Demonstrated ability to assess and prioritize vulnerabilities using industry-standard frameworks and data sources (including advisories, disclosures, severity scoring, and more) with a critical eye for data quality and completeness


Benefits & Perks

Competitive salary

Hybrid work environment (3 days in office per week)

100% individual and dependent medical + dental + vision coverage

401(K) with a 4% company match

20 days PTO

Iru Wellness Week the first week in July

Equity for full-time employees

In-office lunch stipend provided

Up to 16 weeks of paid leave for new parents

Paid Family and Medical Leave

Modern Health mental health benefits for individuals and dependents

Fertility benefits

Working Advantage employee discounts

Onsite fitness center

Free parking

Exciting opportunities for career growth

We are excited to be serving a significant need for a fast-growing market, and are proud of the high-performing team we have brought together so far. If youre someone who wants to engage in new, exciting projects that will challenge your skills in the best way possible, we would love to connect with you.

At Iru, we believe in fostering an inclusive environment in which employees feel encouraged to share their unique perspectives, leverage their strengths, and act authentically. We know that diverse teams are strong teams, and welcome those from all backgrounds and varying experiences.

Similar Jobs

More Jobs at Iru

More Information Technology Jobs

Find similar Security Researcher jobs: