via ats_greenhouse · 8 giugno 2026 ·6 giorni fa

Malware Analyst Tech Lead

nozominetworks
Milan
16 lavori a Milan — e altri nelle vicinanze.
Carica il tuo CV e scopri quali ti si addicono davvero.
Carica il CV

<div class="content-intro"><p>Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.</p>
<p>We defend some of the world’s largest organizations and critical infrastructure in more than 68 countries and we’re just getting started. Our AI-powered cybersecurity platform secures operational technology (OT) and Internet of Things (IoT) infrastructures for enterprises and government entities across energy, manufacturing, transportation, resources, and critical infrastructure.</p></div><p><span data-contrast="auto">As Nozomi Networks continues to expand our product portfolio and global presence, our Security Research department is looking for a Malware Analysis Tech Lead to guide and grow the team responsible for reverse engineering malicious samples, developing high-quality detection signatures, producing actionable threat intelligence, and sharing research findings with customers, partners, and the broader cybersecurity community.</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<p><span data-contrast="auto">This is a hands-on leadership role for someone who combines deep technical expertise in malware analysis and detection engineering with the ability to mentor others, set technical direction, and communicate complex findings clearly. You will lead a team focused on identifying, analyzing, and tracking advanced threats, with a particular emphasis on creating reliable detections that strengthen our products and help protect critical infrastructure around the world.</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<p><span data-contrast="auto">You could be the next “Nozomier”! If this sounds like you, read on.</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<p><strong><span data-contrast="auto">In this role, you will:</span></strong><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Lead the team creating and curating various detection rules within our product, acting as a manager and as an individual contributor</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Help the support team address the customer feedback associated with these detections</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Perform threat intelligence operations to collect and maintain all the required knowledge to respond efficiently to advanced threats</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="4" data-aria-level="1"><span data-contrast="auto">Contribute to the technical material shared with the public</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="5" data-aria-level="1"><span data-contrast="auto">Embody the Nozomi Networks Cultural Pillars and our mission to protect what matters most with transparency and trust</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<p><strong><span data-contrast="auto">To be successful in this opportunity, you should have:</span></strong><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Industry experience as an IT manager</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Ability to perform reverse engineering using debuggers, understanding specifics of MZ-PE and ELF executables</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Experience in creating some of these signatures: YARA, SNORT or SURICATA, STIX, and SIGMA</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="4" data-aria-level="1"><span data-contrast="auto">Experience speaking at cybersecurity conferences presenting findings in a clear way</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="5" data-aria-level="1"><span data-contrast="auto">Familiarity with the MITRE ATT&amp;CK framework and cyber kill chains</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="6" data-aria-level="1"><span data-contrast="auto">Understanding of the OSI model and an ability to use Wireshark</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="7" data-aria-level="1"><span data-contrast="auto">Basic experience with Python</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="4" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="8" data-aria-level="1"><span data-contrast="auto">Attitude to operate in environments including data covered by non-disclosure agreements and a high level of confidentiality</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<p><strong><span data-contrast="auto">These qualifications would be a strong plus:</span></strong><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></p>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="5" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Proven experience in reverse engineering using analysis tools like IDA PRO, Ghidra, OllyDBG, x64dbg, radare2, etc</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="5" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Fundamental understanding of attributes of binary files such as executable structures and packers</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="5" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Previous professional experience as a Detection Engineer, SOC Analyst or a Threat Hunter</span><span data-ccp-props="{"134233117":true,"134233118":true}"> </span></li>
</ul><div class="content-conclusion

Il mercato per questo tipo di ruolo

Offerte simili
16
offerte a Milan
Tempo pieno
73%
delle offerte in Italia
Remote possibile
9%
delle offerte
nozominetworks

3 open positions · Mendrisio, Milan

📊 Job market · Italia
10.467
active jobs
8.9%
Remote
Ø 3d
avg. online

Domande frequenti

Quante offerte ci sono a Milan?
Attualmente 16 posizioni a Milan su AlmostHired, in 5 aziende diverse. I nostri dati sono aggiornati quotidianamente.
Le posizioni in Italia offrono lavoro da remoto?
9% delle offerte in Italia permettono il lavoro da remoto, parziale o totale. Per filtrare specificamente le posizioni remote, usa AlmostHired.
Come faccio a sapere se sono adatto a questa offerta?
Carica il tuo CV — la nostra IA confronta il tuo profilo con i requisiti del lavoro e ti dà un match score preciso, con competenze corrispondenti e mancanti.