Responsibilities
• Investigate advanced and persistent attacks using data analysis and data science tools
• Analyze customers' web traffic to detect unidentified threats and reduce false positives using Elasticsearch and BigQuery
• Research, design, and continuously enhance detection mechanisms to stay ahead of evolving threats
• Provide real-time technical support to global customers, delivering professional and timely incident responses
• Produce clear, insightful incident reports
• Collaborate cross-functionally with R&D and Research teams to optimize the company\'s detection and mitigation capabilities
• Design, plan, and implement internal automation projects to improve team efficiency
• Work in a shift-based schedule, including weekends
Requirements
• At least 4 years of experience in data analysis in cybersecurity or fraud detection domains
• Strong SQL skills: complex queries, aggregations, GROUP BY, ORDER BY, filters, window functions (e.g., RANK()), CTEs, and subqueries
• Technical understanding of web technologies and client–server architecture (APIs, HTTP, basic HTML/JavaScript)
• Experience with SIEM systems (experience with the Elastic Stack would be an advantage)
• Strong troubleshooting and problem-solving skills
• Experience in customer support, including direct communication with clients; professionalism and politeness are essential
• Strong English communication skills
• Experience in a Cybersecurity Analyst/Researcher role, ideally supporting external customers in threat detection and response would be a plus
• Experience in web security and security research: web application security, bot management, fraud detection would be a plus
• Experience with research methodologies (hypothesis testing, verification and research plan) would be a plus
• Python and JavaScript knowledge would be a plus
• Experience with BigQuery/Snowflake would be a plus
• Proficiency in building dashboards using BI tools (Snowflake, Looker, Kibana, JSM) would be a plus.