NetWrix

Security Researcher

NetWrix$90K — $110K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 1-3 years of hands-on experience in security research, red teaming, or identity security with a focus on Active Directory and Entra ID.
  • Familiarity with common AD/Entra ID misconfigurations and privilege escalation techniques.
  • Strong problem-solving skills with the ability to analyze and hypothesize about unfamiliar systems.
  • Comfortable using AI tools for automating analysis and creating proof of concepts.
  • Effective cross-functional communicator capable of collaborating with engineering and product teams.
  • Proficient in at least one programming or scripting language such as C#, PowerShell, or Python.

Responsibilities

  • Conduct hands-on research to identify security misconfigurations in Active Directory and Entra ID.
  • Develop proof-of-concept exploits and testing methodologies for research validation.
  • Collaborate with product and engineering teams to translate research insights into product enhancements.
  • Publish technical findings on the Netwrix Blog and Attack Catalog.
  • Contribute tools and documentation to the Netwrix open source GitHub repository.
  • Present research at industry conferences as experience and opportunities arise.

Benefits

  • Opportunity to co-present at major industry conferences like BlackHat, Defcon, and RSA.
  • Work in a collaborative and innovative security research team.
  • Engagement in open-source projects, enhancing your personal and professional portfolio.
  • Active involvement in blogs, publications, and community sharing of findings.
Full Job Description
Position Overview

Netwrix is seeking a Security Researcher with expertise in Active Directory and Entra ID to join our security research team. This role focuses on hands-on research into Active Directory and Entra ID security: finding misconfigurations, privilege escalation paths, and attack techniques. You'll build and validate proof-of-concepts, work closely with product teams, and grow your research and public speaking profile as part of the team.

Key Responsibilities

  • Conduct hands-on research into Active Directory, Windows and Entra ID, identifying misconfigurations, privilege escalation paths, and attack techniques.
  • Build proof-of-concept exploits and testing methodologies to validate research findings. Using AI tools to speed up research and prototyping (vibe coding a POC, automating repetitive analysis, etc.) is welcome and encouraged.
  • Work with engineering and product teams to help translate research into product improvements.
  • Contribute to the Netwrix Blog and Attack Catalog with technical write ups of findings.
  • Contribute to our open source GitHub repository, including tools such as the free version of PingCastle.
  • Opportunity to co present or present research at industry conferences (BlackHat, Defcon, RSA, etc.) as your experience grows.

Required Qualifications

  • 1 to 3 years of hands on experience in security research, red teaming, penetration testing, or a closely related identity security role, with a focus on Active Directory, Entra ID, Windows, or related identity platforms.
  • Working knowledge of common AD/Entra ID misconfigurations, privilege escalation paths, and attack techniques, or a strong foundation and a track record of picking these up fast.
  • Strong problem solving skills, with the ability to take an unfamiliar system or attack surface and break it down into testable hypotheses.
  • Comfortable using AI tools to speed up research work, whether that's automating repetitive analysis, scripting tooling, or quickly putting together a proof of concept.
  • Able to work cross functionally with engineering and product teams.
  • Good verbal and written communication skills in English.
  • Proficiency in at least one programming or scripting language (C#, PowerShell, Python, etc.).

Preferred Qualifications

  • Some experience discovering or analyzing vulnerabilities, misconfigurations, or attack paths, whether in identity systems specifically or security research more broadly.
  • A tool, script, or side project you've built to solve a security problem, even a small one. We're interested in how you think, not just what you've published.
  • Interest in or early experience presenting technical work, whether that's internal talks, meetups, local conferences, or writing technical blog posts.
  • Familiarity with hybrid identity security concepts, including AD to Entra ID synchronization.
  • Understanding of authentication protocols (Kerberos, NTLM, OAuth, OpenID Connect) and directory replication mechanisms.
  • Prior contributions to open source security tooling.

About NetWrix

NetWrix is a software company that provides solutions for IT security and compliance. The company's products help organizations to detect and prevent security threats, as well as to comply with various regulations and standards. NetWrix serves a wide range of industries, including healthcare, finance, and government. The company was founded in 2006 and is headquartered in Sunrise, Florida.
Learn more about NetWrix
Size
200 employees
Industry

Similar Jobs

More Jobs at NetWrix

More Information Technology Jobs

Find similar Security Researcher jobs: