refresh

트렌딩 기업

트렌딩 기업

채용

채용Tenable

Senior Security Researcher - Risk

Tenable

Senior Security Researcher - Risk

Tenable

Israel - Office - Tel Aviv

·

On-site

·

Full-time

·

3w ago

Who is Tenable?

Tenable® is the Exposure Management company. 44,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent of the Fortune 500, 45 percent of the Global 2000, and large government agencies. Come be part of our journey!

What makes Tenable such a great place to work?

Ask a member of our team and they’ll answer, “Our people!” We work together to build and innovate best-in-class cybersecurity solutions for our customers; all while creating a culture of belonging, respect, and excellence where we can be our best selves. When you’re part of our #One Tenable team, you can expect to partner with some of the most talented and passionate people in the industry, and have the support and resources you need to do work that truly matters. We deliver results that exceed expectations and we win together!

Your Role:

  • Tenable Cloud Security is seeking a Senior Security Researcher
  • Risk Researcher to join our highly technical product research team working at the core of our cloud security platform. This is a rare opportunity to join an elite cloud security research team and do work that directly shapes our product. In this role, you will define how cloud risk is understood and modeled, lead the development of novel risk logic and scoring methodologies, and translate complex attack paths into meaningful insights for customers.

You will conduct deep technical research across cloud environments to uncover new attack vectors, analyze real-world exploitation paths, and contribute to building a unified view of risk across identity, infrastructure, and data layers. Your work will directly influence how we prioritize risk, reduce noise, and establish a clear “ground truth” for what truly matters in cloud security.

We are looking for an exceptional, adversary-focused researcher who can bridge cloud security knowledge, threat modeling, and data-driven risk analysis. You are curious, comfortable with ambiguity, and driven to deeply understand how attackers operate in modern cloud environments.

Your Opportunity:

  • Own Risk Across Tenable’s Cloud Security Platform: Define cloud risk by grounding findings in how exposure is actually created and exploited. Collaborate with engineering and product teams to introduce new data sources and signals that validate exposure. Establish a rigorous validation framework for risk logic to minimize noise and ensure high-fidelity alerts. Define the 'Ground Truth' for what constitutes a critical risk versus a theoretical vulnerability.

  • Lead Novel Toxic Combination Logic: Conduct deep technical research to discover novel risks and attack vectors across identity, network, workload, and third-party data to produce attack paths. Work with teams across Tenable to develop and refine the quantitative scoring models that aggregate disparate signals (e.g., CVSS, EPSS, identity permissions) into a unified risk score.

  • Lead Complex Discovery: Build resource, identity, and permission relationships to improve our asset inventory and relationship modeling. Understand customers requirements and ensure deliverables address real needs.

  • Conduct Cloud Threat Modeling: Analyze services and architectures from an attacker’s perspective to define trust boundaries and data flows, and ensure the product covers newly identified attack paths. Present findings in blogs, reports, and leading industry conferences.

  • Research Emerging Cloud Services: Evaluate new cloud services to establish secure configuration and architectural best practices where no prior guidance exists, and partner with PMs to deliver them through the platform.

  • Shape Cloud Security Strategy: Provide a broad technical view across cloud domains to identify strategic gaps and drive product direction and features.

What You'll Need:

  • 5+ years of hands-on experience in security research.

  • Deep understanding of attacker mindset, tradecraft, and real-world exploitation techniques. , with a strong focus on exploitation and adversary-driven analysis.

  • Strong technical background in cloud platforms (AWS, Azure, GCP), including how attackers operate within cloud environments.

  • Proven experience designing, building, or validating detection logic.

  • Highly curious, self-driven, and comfortable working in ambiguous, fast-evolving problem spaces.

  • Strong communication skills, both written and verbal, with the ability to clearly articulate complex technical findings.

And Ideally:

  • Experience designing or investigating cloud attack paths and complex “toxic combinations” across services and identities.

  • Background in offensive security, penetration testing, or red teaming.

  • Experience with detection languages or frameworks (Rego, Sigma, YARA or similar).

  • Track record of published research, conference talks, or technical blog posts.

  • Experience working with product teams and delivering value to customers through the product.

We’re committed to promoting Equal Employment Opportunity (EEO) at Tenable - through all equal employment opportunity laws and regulations at the international, federal, state and local levels. If you need a reasonable accommodation due to a disability during the application or recruiting process, please contact Recruiting@Tenable.com* for further assistance.*

Tenable Data Consent Statement

Tenable is committed to protecting the privacy and security of your personal data. This Notice describes how we collect and use your personal data during and after your working relationship with us, in accordance with the General Data Protection Regulation (“GDPR”). Please click here to review.

For California Residents: The California Consumer Privacy Act (CCPA) requires that Tenable advise you of certain rights related to the collection of your private information. Please click here to review.

총 조회수

0

총 지원 클릭 수

0

모의 지원자 수

0

스크랩

0

Tenable 소개

Tenable

Tenable

Public

Tenable Holdings, Inc. is a cybersecurity company based in Columbia, Maryland. Its vulnerability scanner software Nessus, developed in 1998, is one of the most widely deployed vulnerability assessment solutions in the cybersecurity industry.

1,001-5,000

직원 수

Columbia

본사 위치

$2.1B

기업 가치

리뷰

3.9

10개 리뷰

워라밸

3.8

보상

2.7

문화

4.2

커리어

3.0

경영진

2.5

72%

친구에게 추천

장점

Flexible work hours and remote options

Supportive and collaborative team

Good benefits and health coverage

단점

Heavy workload and high stress

Below average compensation and salary

Limited career advancement opportunities

연봉 정보

223개 데이터

Mid/L4

Mid/L4 · Customer Success Manager

25개 리포트

$133,208

총 연봉

기본급

$86,152

주식

$12,762

보너스

$12,390

$85,397

$213,851

면접 경험

51개 면접

난이도

3.6

/ 5

소요 기간

14-28주

합격률

37%

경험

긍정 65%

보통 17%

부정 18%

면접 과정

1

Phone Screen

2

Technical Interview

3

System Design

4

Behavioral

5

Team Fit

자주 나오는 질문

Tell me about a challenging project

System design question

Coding problem

Why this company