Conduct in-depth behavioral analysis of Windows threats.
Develop Behavioral rules for various threat behaviors including hands-on keyboard attack, malware payloads, initial attack vectors and Advanced Persistent Threats (APTs).
Produce quality threat analysis reports for both internal and external audience.
Assist in sandbox improvements by analyzing malware that hinders the sandbox environment in running the threat, which deploys various anti-analysis techniques.
Develop Cleanup rules to remove artifacts that are left behind by the behavioral protection rules.
Collaborate with other cross-functional teams to improve behavioral protection capability based on the threat analysis.
Guide and train junior team members in assisting malware analysis, peer code review.
Assist in the development of tools wherever necessary to improve day-to-day task.
Requirements
Strong knowledge of Windows Internals including Memory management, Processes, Threads.
Proficiency in both static and dynamic analysis of threats, using tools such as IDAPro, WinDbg.