406,988open jobs
14,118companies
78,699added this week
Browse all
Salary
$42k – $88k per year (Estimated)
Location
Remote (Poland)
Seniority
Senior · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Sigma Software is a technology services company founded in 2002 as the Ukrainian development arm of the Swedish Sigma Group, and now a global organisation with delivery centres in Ukraine, Poland, Sweden, the United States and Latin America. It builds custom software for clients in advertising technology, automotive, aviation, gaming, telecommunications and the public sector, and runs its own product and startup arms alongside the services business. The company is known for keeping its Ukrainian engineering operation running through the war and for a substantial programme of technology work supporting Ukrainian defence and public institutions.

Are you passionate about cybersecurity research and uncovering sophisticated attack patterns? We are looking for a Threat Research Analyst to join a remote team working on advanced application protection solutions for a global Customer in the cybersecurity domain.

In this role, you will investigate suspicious activity, analyze attack vectors, and help improve detection and blocking mechanisms for modern web applications. You will work with monitoring systems, behavioral analytics, and threat intelligence data to proactively identify emerging threats and strengthen platform security.

We at Sigma Software offer the opportunity to work on impactful security products, collaborate with experienced professionals, and grow your expertise in modern cybersecurity technologies while working remotely within European time zones.

CUSTOMER

Our Customer is a global cybersecurity company delivering comprehensive security solutions for businesses, organizations, and digital ecosystems. Operating across multiple industries, the company focuses on preventing cyber threats, identifying vulnerabilities, and protecting web applications from sophisticated automated attacks.

PROJECT

The project is focused on building a security platform that safeguards applications from automated attacks and malicious traffic. The Threat Research team investigates emerging attack techniques, analyzes suspicious behavioral patterns, and develops detection and blocking mechanisms to improve overall protection capabilities.

As part of the team, you will work with logs, dashboards, threat intelligence data, and monitoring systems to uncover new attack vectors and enhance application security in real-world environments.

  • Monitor existing threats and investigate suspicious activities using logs, dashboards, and detection systems
  • Analyze attack patterns and build detailed threat scenarios based on collected data
  • Research and respond to reported threats, Customer escalations, and security incidents
  • Improve detection and blocking mechanisms for automated attacks and malicious behaviors
  • Analyze intelligence from competitors, public sources, and industry trends to identify emerging threats
  • Work with monitoring and analytics tools such as Kibana and Elasticsearch
  • Collaborate with engineering and security teams to improve product protection capabilities
  • Document findings, attack methodologies, and investigation results
  • At least 3 years of commercial experience in cybersecurity, threat research, or related areas
  • Hands-on experience in cybersecurity, threat detection, security research, threat hunting, anti-bot solutions, fraud and abuse detection, application security, or a closely related security domain.
  • Strong understanding of attacker tactics, techniques, and behaviors, including methods used to evade, bypass, or modify attacks to avoid detection.
  • Experience investigating suspicious or malicious activities, with a solid understanding of detection, alerting, and blocking mechanisms.
  • Strong understanding of web technologies and architecture, including:
    • Client-server architecture
    • HTTP/HTTPS protocols
    • REST APIs and web services
    • Request/response lifecycle
    • Headers, cookies, sessions, and authentication mechanisms
  • Understanding of browser technologies and experience investigating:
    • DOM structure and manipulation
    • Browser events
    • XHR and Fetch requests
    • WebSockets
    • Browser APIs
    • Browser security policies and controls
  • Ability to read and analyze JavaScript code, identify application behavior, detect suspicious or incorrect logic, and understand potential remediation approaches. Deep JavaScript development expertise is not required.
  • Working knowledge of HTML and CSS sufficient to investigate and understand web application behavior.
  • Strong practical experience with SQL for data analysis, investigations, and working with large datasets.
  • Hands-on experience using Kibana for log analysis, monitoring, and investigations.
  • Solid understanding of networking fundamentals, including:
    • TCP/IP
    • DNS
    • VPN technologies
    • Proxies
    • Basic network troubleshooting
  • Ability to independently investigate complex technical issues and correlate multiple data points to build a complete attack or incident scenario.
  • Experience using AI-powered tools and chatbots for research and technical investigations, including the ability to write effective prompts and interpret results.
  • Upper-Intermediate (B2) or higher level of English.

WILL BE A PLUS

  • Understanding of Elasticsearch and its ecosystem.
  • Python scripting and automation skills.
  • Experience developing, analyzing, or investigating crawlers, scrapers, or browser automation tools.
  • Experience with deobfuscation and/or reverse engineering techniques.
  • Experience investigating bot traffic, automated attacks, scraping activity, credential stuffing, account takeover attempts, abuse, fraud, or similar threats.
  • Experience with monitoring, analytics, and observability platforms such as Datadog, Imply, Splunk, Microsoft Sentinel, OpenSearch, or similar tools.

PERSONAL PROFILE

  • Strong analytical and investigative mindset
  • Attention to detail and ability to identify unusual behavioral patterns
  • Curiosity about cybersecurity threats and attacker techniques
  • Ability to work independently in a fast-paced environment
  • Strong communication and collaboration skills
  • Proactive approach to problem-solving and continuous learning
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
406,988 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Warsaw
$26k – $68k per year (Estimated) • In office • Bachelor's Degree • Bengaluru
Node JS
SQL
TypeScript
JavaScript
Node JS
Nest.JS
Databases
PostgreSQL
Redis
DevOps
Datadog
GitHub
New Relic
Apply
Remote • Full-Time • Campinas
JavaScript
Node JS
Python
SQL
TypeScript
C#
Java
C#
.NET
Java
Spring Boot
Databases
Apache Kafka
ElasticSearch
Kafka
MySQL
PostgreSQL
RabbitMQ
Redis
Frontend
Angular
React.js
DevOps
Amazon EKS
AWS
AWS Lambda
Azure
CI/CD
GCP
Kubernetes
Apply
$150k – $210k per year • Equity 0.3–1.5% • In office • Full-Time • 3+ years exp • San Francisco
TypeScript
JavaScript
Frontend
React.js
Tailwind CSS
Design
Figma
Apply
$75k – $90k per year • Remote • Full-Time • 4+ years exp
JavaScript
PHP
PHP
WordPress
AI/ML
ChatGPT
Claude
Copilot
Perplexity
Marketing
Ahrefs
GA4
LinkedIn
Screaming Frog
Semrush
Shopify
Apply
$95k – $140k per year • Remote • Full-Time • 5+ years exp
Node JS
PHP
JavaScript
PHP
Laravel
AI/ML
AI Agents
Frontend
GraphQL
Next.js
React.js
Mobile
React Native
DevOps
AWS
Git
GitHub
Apply
Remote • Full-Time • 8+ years exp • Bucharest
Java
Python
Scala
SQL
Databases
Apache Iceberg
Trino
AI/ML
Flink
Spark
DevOps
AWS
CI/CD
Platform Engineering
Apply
Remote • Full-Time • 8+ years exp • Lviv
Java
Python
Scala
SQL
Databases
Apache Iceberg
Trino
AI/ML
Flink
Spark
DevOps
AWS
CI/CD
Platform Engineering
Apply
$63k – $121k per year (Estimated) • Remote • Full-Time • 8+ years exp • Wrocław
Java
Python
Scala
SQL
Databases
Apache Iceberg
Trino
AI/ML
Flink
Spark
DevOps
AWS
CI/CD
Platform Engineering
Apply
Remote • Internship • 3+ years exp • Kyiv
Management
QuickBooks
Xero
Apply
Remote • Full-Time • 3+ years exp • Bucharest
Bash
PowerShell
Python
Databases
ElasticSearch
OpenSearch
AI/ML
Anthropic
Claude
Claude Code
Copilot
LLM
OpenAI
DevOps
Amazon EC2
Amazon S3
Ansible
AWS
Azure
Azure DevOps
CI/CD
Docker
GitHub
Grafana
IAM
Kubernetes
Terraform
Cybersecurity
HashiCorp Vault
Least Privilege
Cryptography
Vault
Apply
Video Content Creator 7 hours ago
Remote • Warsaw
Marketing
Instagram
Apply
Head of Sales 7 hours ago
$76k – $113k per year (Estimated) • Remote • 5+ years exp • Warsaw
Apply
In office • 3+ years exp • Bachelor's Degree • Warsaw
Apply
In office • 5+ years exp • Warsaw
Apply
$92k – $154k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree • Warsaw
DevOps
Incident Management
SLI/SLO/SLA
Apply
See all jobs
This is one of many
406,988 more open roles from verified company boards, updated every day.