採用
Who is Tenable?
Tenable® is the Exposure Management company. 44,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent of the Fortune 500, 45 percent of the Global 2000, and large government agencies. Come be part of our journey!
What makes Tenable such a great place to work?
Ask a member of our team and they’ll answer, “Our people!” We work together to build and innovate best-in-class cybersecurity solutions for our customers; all while creating a culture of belonging, respect, and excellence where we can be our best selves. When you’re part of our #One Tenable team, you can expect to partner with some of the most talented and passionate people in the industry, and have the support and resources you need to do work that truly matters. We deliver results that exceed expectations and we win together!
Your Role:
- Tenable Cloud Security is seeking a Senior Security Researcher
- Risk Researcher to join our highly technical product research team working at the core of our cloud security platform. This is a rare opportunity to join an elite cloud security research team and do work that directly shapes our product. In this role, you will define how cloud risk is understood and modeled, lead the development of novel risk logic and scoring methodologies, and translate complex attack paths into meaningful insights for customers.
You will conduct deep technical research across cloud environments to uncover new attack vectors, analyze real-world exploitation paths, and contribute to building a unified view of risk across identity, infrastructure, and data layers. Your work will directly influence how we prioritize risk, reduce noise, and establish a clear “ground truth” for what truly matters in cloud security.
We are looking for an exceptional, adversary-focused researcher who can bridge cloud security knowledge, threat modeling, and data-driven risk analysis. You are curious, comfortable with ambiguity, and driven to deeply understand how attackers operate in modern cloud environments.
Your Opportunity:
-
Own Risk Across Tenable’s Cloud Security Platform: Define cloud risk by grounding findings in how exposure is actually created and exploited. Collaborate with engineering and product teams to introduce new data sources and signals that validate exposure. Establish a rigorous validation framework for risk logic to minimize noise and ensure high-fidelity alerts. Define the 'Ground Truth' for what constitutes a critical risk versus a theoretical vulnerability.
-
Lead Novel Toxic Combination Logic: Conduct deep technical research to discover novel risks and attack vectors across identity, network, workload, and third-party data to produce attack paths. Work with teams across Tenable to develop and refine the quantitative scoring models that aggregate disparate signals (e.g., CVSS, EPSS, identity permissions) into a unified risk score.
-
Lead Complex Discovery: Build resource, identity, and permission relationships to improve our asset inventory and relationship modeling. Understand customers requirements and ensure deliverables address real needs.
-
Conduct Cloud Threat Modeling: Analyze services and architectures from an attacker’s perspective to define trust boundaries and data flows, and ensure the product covers newly identified attack paths. Present findings in blogs, reports, and leading industry conferences.
-
Research Emerging Cloud Services: Evaluate new cloud services to establish secure configuration and architectural best practices where no prior guidance exists, and partner with PMs to deliver them through the platform.
-
Shape Cloud Security Strategy: Provide a broad technical view across cloud domains to identify strategic gaps and drive product direction and features.
What You'll Need:
-
5+ years of hands-on experience in security research.
-
Deep understanding of attacker mindset, tradecraft, and real-world exploitation techniques. , with a strong focus on exploitation and adversary-driven analysis.
-
Strong technical background in cloud platforms (AWS, Azure, GCP), including how attackers operate within cloud environments.
-
Proven experience designing, building, or validating detection logic.
-
Highly curious, self-driven, and comfortable working in ambiguous, fast-evolving problem spaces.
-
Strong communication skills, both written and verbal, with the ability to clearly articulate complex technical findings.
And Ideally:
-
Experience designing or investigating cloud attack paths and complex “toxic combinations” across services and identities.
-
Background in offensive security, penetration testing, or red teaming.
-
Experience with detection languages or frameworks (Rego, Sigma, YARA or similar).
-
Track record of published research, conference talks, or technical blog posts.
-
Experience working with product teams and delivering value to customers through the product.
We’re committed to promoting Equal Employment Opportunity (EEO) at Tenable - through all equal employment opportunity laws and regulations at the international, federal, state and local levels. If you need a reasonable accommodation due to a disability during the application or recruiting process, please contact Recruiting@Tenable.com* for further assistance.*
Tenable Data Consent Statement
Tenable is committed to protecting the privacy and security of your personal data. This Notice describes how we collect and use your personal data during and after your working relationship with us, in accordance with the General Data Protection Regulation (“GDPR”). Please click here to review.
For California Residents: The California Consumer Privacy Act (CCPA) requires that Tenable advise you of certain rights related to the collection of your private information. Please click here to review.
総閲覧数
0
応募クリック数
0
模擬応募者数
0
スクラップ
0
類似の求人

Senior Administrator - English, Arabic, Microsoft Windows
HCL Technologies ·

Sr Staff Site IT Manager
General Electric · Vandalia

Principal, IT Operations Management
Regeneron · Warren

Sr Supervisor FSQA
Tyson Foods · Obion County Plant - Union City, Tennessee

TC-CS-CDR-Email Security Specialist-Senior
EY ·
Tenableについて

Tenable
PublicTenable Holdings, Inc. is a cybersecurity company based in Columbia, Maryland. Its vulnerability scanner software Nessus, developed in 1998, is one of the most widely deployed vulnerability assessment solutions in the cybersecurity industry.
1,001-5,000
従業員数
Columbia
本社所在地
$2.1B
企業価値
レビュー
3.9
10件のレビュー
ワークライフバランス
3.8
報酬
2.7
企業文化
4.2
キャリア
3.0
経営陣
2.5
72%
友人に勧める
良い点
Flexible work hours and remote options
Supportive and collaborative team
Good benefits and health coverage
改善点
Heavy workload and high stress
Below average compensation and salary
Limited career advancement opportunities
給与レンジ
223件のデータ
Mid/L4
Mid/L4 · Customer Success Manager
25件のレポート
$133,208
年収総額
基本給
$86,152
ストック
$12,762
ボーナス
$12,390
$85,397
$213,851
面接体験
51件の面接
難易度
3.6
/ 5
期間
14-28週間
内定率
37%
体験
ポジティブ 65%
普通 17%
ネガティブ 18%
面接プロセス
1
Phone Screen
2
Technical Interview
3
System Design
4
Behavioral
5
Team Fit
よくある質問
Tell me about a challenging project
System design question
Coding problem
Why this company
ニュース&話題
Tenable Launches Instant OT Discovery to Enhance Cyber-Physical Exposure Management - Machine Maker
Machine Maker
News
·
3d ago
Tenable (TENB) CAO exercises 2,031 RSUs; shares withheld for taxes, holds 71,673 - Stock Titan
Stock Titan
News
·
3d ago
Tenable Holdings: A Cut To $20 Hints At A Tougher Road Ahead - Yahoo Finance
Yahoo Finance
News
·
3d ago
Is Tenable (TENB) Turning OT Discovery Into a Durable Edge in Unified Cyber Exposure Management? - simplywall.st
simplywall.st
News
·
4d ago