368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$194k – $233k per year
Location
In office (Sunnyvale)
Seniority
Staff · 10+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Illumio is a pioneer in cybersecurity that specializes in Zero Trust Segmentation and breach containment across hybrid, cloud, and enterprise environments. Its platform provides real-time visibility into application traffic, helping organizations isolate critical workloads and prevent lateral movement of threats like ransomware. By adopting a default untrusted model, Illumio enables major enterprises to maintain operational resilience and stop cyber incidents from turning into widespread disasters.

Onwards Together!

Illumio is the leader in ransomware and breach containment, redefining how organizations contain cyberattacks and enable operational resilience. Powered by the Illumio AI Security Graph, our breach containment platform identifies and contains threats across hybrid multi-cloud environments - stopping the spread of attacks before they become disasters.

Recognized as a Leader in the Forrester Wave™ for Microsegmentation, Illumio enables Zero Trust, strengthening cyber resilience for the infrastructure, systems, and organizations that keep the world running.

Location: 4 on-site days a week in Sunnyvale, CA Headquarters.

Our Team's Vision:

At Illumio, we’re pioneering cybersecurity innovation with our Illumio Insights platform, which leverages a dynamic security graph built from network flows, workload inventories, identity data, threat data, and vulnerability data. This graph enables essential functions such as breach risk detection, network segmentation assessment, active breach identification, and intelligent policy recommendations. To accelerate our product evolution, we’re expanding our Threat Research Team with a dedicated expert who will serve as a long-term subject matter expert (SME) for the Illumio Insights product team.

We’re looking for a talented Senior Threat Researcher to provide ongoing guidance on threats, threat intelligence, attacker behaviors, and TTP mapping. You’ll analyze large-scale security datasets, map real-world adversary activity, identify gaps, and collaborate closely with product teams to translate insights into enhanced detection, data enrichment, and strategic direction. This role bridges threat research, detection engineering, and product innovation, offering a unique opportunity to impact how global organizations defend against advanced cyber threats.

Your Impact:

Threat Research and Analysis

  • Analyze large-scale security datasets to identify attacker behaviors, patterns, TTPs (Tactics, Techniques, and Procedures), and emerging risks.

  • Map observed behaviors to the MITRE ATT&CK framework and real-world adversary tradecraft.

  • Leverage the security graph to model attack paths and uncover opportunities to reduce the risk of lateral movement.

  • Identify gaps in detection coverage, data enrichment, and segmentation effectiveness.

  • Develop and validate hypotheses about evolving threats using research and intelligence sources.

Product Impact and Innovation

  • Partner closely with Product and Engineering teams to translate research findings into concrete improvements:

  • Enhanced detection logic and analytics

  • Improved data tagging, enrichment, and graph quality

  • More actionable customer-facing risk insights

  • Recommend segmentation strategies and policy improvements to strengthen breach containment and limit lateral movement.

  • Contribute to internal threat models and risk frameworks that directly inform product roadmap decisions.

Strategic Guidance and Thought Leadership

  • Provide expert guidance on emerging threats observable in our platform and their implications for customers.

  • Support product, sales, and customer-facing teams with research-backed insights and threat context.

  • Contribute to internal research, patents, and future external publications as the function matures.

  • Track global adversary evolution to help shape long-term detection and risk strategies.

Your Toolkit:

  • 5+ years of experience in threat research, incident response, detection engineering, or adversary emulation.

  • Strong understanding of attacker tradecraft across enterprise, cloud, and hybrid environments.

  • Deep familiarity with the MITRE ATT&CK framework and real-world TTP mapping.

  • Hands-on experience working with security telemetry sources.

  • Excellent written and verbal communication skills, with the ability to translate complex findings into clear, actionable insights.

  • Comfort working in ambiguous environments and helping define new functions.

  • Experience writing detection rules, analytics queries, or conducting threat hunting.

Preferred Qualifications

  • 7-10+ years in threat intelligence or security research roles.

  • Experience analyzing security graphs or graph-based analytics for threat detection.

  • Background in network segmentation, zero-trust architecture, or micro-segmentation.

  • Proven ability to influence product development in a fast-paced environment.

Bonus Points:

  • Previous experience at a cybersecurity product company.

  • Track record of publishing threat research or speaking at industry conferences.

  • Experience integrating external threat intelligence feeds.

  • Relevant certifications (e.g., GCIH, GCFA, or similar).

Who You Are

  • Curious and hypothesis-driven, with a passion for digging into raw data to uncover meaningful signals.

  • Pragmatic - focused on turning research into real product impact and measurable risk reduction.

  • Able to move fluidly between deep technical analysis and high-level business implications.

  • Collaborative and influential, thriving in a fast-paced product development environment where your insights directly shape product direction.

  • Committed to delivering practical defenses that protect customers from sophisticated attacks.

#LI-PO1 #LI-ONSITE

Our Commitment

Illumio believes that an environment of unique backgrounds, experiences, viewpoints, and individual contributions creates a culture of belonging, drives our future, and makes us stronger together in support of our customers and their success.

All official job offers from our company are extended directly by our recruitment team and will be sent through an official E-Signature document for your review and signature. Please be aware that we do not ask for any personal information in the process of extending offers of employment, such as financial details or social security numbers. Upon acceptance of any offer, we will request such information as part of the onboarding process prior to or on your first day of employment, and only after completing a background check through an authorized third-party vendor. If you receive any communication asking for personal details outside of these processes, please contact us immediately to verify the authenticity of the request. Your security is important to us, and we are committed to a safe and transparent hiring experience.

For roles in San Francisco and Los Angeles: Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Illumio will consider for employment qualified applicants with arrest and conviction records.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Sunnyvale
$149k – $201k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • United States
DevOps
AWS
Azure
IAM
Cybersecurity
Microsoft Entra ID
Okta
Zero Trust
Apply
$70k – $126k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Shiloh
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
Defense in Depth
MITRE ATT&CK
Apply
$21k – $49k per year (Estimated) • In office • Full-Time • 10+ years exp • Bengaluru
PowerShell
Python
AI/ML
AWS Bedrock AgentCore
DevOps
Amazon EKS
AWS
Azure
Azure AKS
CI/CD
FinOps
GCP
Google GKE
JFrog Artifactory
Kubernetes
Service Mesh
Terraform
Cybersecurity
Defense in Depth
Zero Trust
Apply
$24k – $58k per year (Estimated) • Remote/Hybrid • Contractor • Moscow
Bash
PowerShell
Python
DevOps
Kali Linux
SLI/SLO/SLA
Cybersecurity
BloodHound
GoPhish
MITRE ATT&CK
Nessus
OpenVAS
OWASP ZAP
Wazuh
Apply
$170k – $250k per year • Remote/Hybrid • Internship • 10+ years exp • Bachelor's Degree • Denver
DevOps
AWS
Azure
Cybersecurity
Zero Trust
Apply
$267k – $320k per year • In office • Full-Time • 10+ years exp • Sunnyvale
AI/ML
Anomaly Detection
LLM
Cybersecurity
Zero Trust
Apply
$233k – $280k per year • In office • Full-Time • 7+ years exp • Sunnyvale
Go
Java
Python
SQL
Java
Gradle
Maven
Spring Boot
Databases
Amazon Redshift
Google BigQuery
DevOps
AWS
Azure
CI/CD
GCP
Git
Jenkins
Cybersecurity
Zero Trust
Apply
$170k – $196k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Sunnyvale
Go
SQL
DevOps
Ansible
AWS
Azure
CloudFormation
GCP
Kubernetes
Rest API
Terraform
Cybersecurity
Zero Trust
Apply
$170k – $196k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Sunnyvale
Go
SQL
DevOps
Ansible
AWS
Azure
CloudFormation
GCP
Kubernetes
Rest API
Terraform
Cybersecurity
Zero Trust
Apply
$157k – $180k per year • In office • Full-Time • 7+ years exp • Sunnyvale
DevOps
Incident Management
PagerDuty
SLI/SLO/SLA
Cybersecurity
Zero Trust
Management
Jira
ServiceNow
Marketing
Salesforce
Zendesk
Apply
Sr. SDET 2 hours ago
$109k – $163k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Sunnyvale
Java
Python
SQL
Java
Spring Framework
Mobile
JUnit
DevOps
CI/CD
Kubernetes
QA
Cypress
JMeter
Postman
Apply
$168k – $356k per year • In office • Full-Time • 8+ years exp • Master's Degree • Sunnyvale
Python
AI/ML
AI Agents
ChatGPT
Gemini
LLM
NLP
RAG
Recommender Systems
Semantic Search
Semantic Search
Vertex AI
Apply
$81k – $155k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Sunnyvale
Apply
$148k – $267k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • 5+ years exp • Sunnyvale • Boston • Austin • Toronto • New York
AI/ML
AI Agents
Claude
Claude Code
Lovable
Replit
Cybersecurity
BeyondTrust
Crowdstrike
CyberArk
Delinea
Microsoft Entra ID
Okta
PCI DSS
SOC 2
Threat Modeling
Apply
$162k – $180k per year • Equity • In office • 5+ years exp • Bachelor's Degree • Sunnyvale
AI/ML
AI Agents
Chain-of-Thought
Fine-tuning
LLM
Prompt Engineering
RAG
Robotics
Digital Twin
Analytics
A/B Testing
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.