Qualys

Senior Security Research Engineer

Qualys  •  Pune, IN (Onsite)  •  2 months ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!

Job

We areseekinga highly skilled and motivated Senior Security Research Engineerto join our Vulnerability Detection Signature Research team. In this role, you will research, develop, and deliver advanced vulnerability detection libraries for VMDR scanning products. You will partner closely with cross-functional teams to solve complex challenges and ensure our customers receiveaccurate, high‑quality vulnerability coverage.

If you havea strong foundationin vulnerability research, hands-on security engineering, and solid coding experience and you enjoy diving deep into technologies to uncoverweaknesses,this role is for you.

Responsibilities:

  • Research, design, and develop new vulnerability detection libraries (signatures) or enhance existing ones for Qualys VMDR Scannerproducts

  • Build detection logic for a wide range of technologies includingdatabases, applications, operating systems, TCP/IP protocols, and network devices

  • Continuously research emerging technologies and collaborate with customers, vendors, and internal stakeholders to extend detection coverage.

  • Automate recurring research, development, andvalidation oftasks.

  • Work closely with Customer Support and Research teams to troubleshoot and resolve customer issues such asfalse positives/negatives

  • Contribute to high‑quality detection content through strong documentation and collaboration.

Qualifications:

  • 4+ years of experience in network and systems security

  • Deep understanding of common protocols: TCP/IP, HTTP, FTP, SSH, SSL/TLS

  • Strong knowledge of common security vulnerabilities (e.g., OWASP Top 10, CVEs) and mitigation techniques.

  • Hands-on experience with Pythonand Bashscripting.

  • Hand-on working experience with containers and orchestration tools (Docker, Kubernetes).

  • Familiarity with network analysis tools and packet capture analysis

  • Proficiencywith regular expressions

  • Ability to prioritize and manage multiple tasks in a fast-paced environment.

  • System administration experience on Windows or Unix/Linuxplatforms.

  • Strong understanding of VPNs, Firewalls, IDS/IPStechnologies.

  • Excellent written and verbal communication skills.

Additional Plus Competencies:

  • Knowledge of Lua (preferred) or Java

  • Experience with virtualization platforms such as VMWare, VirtualBox, XEN, etc.

  • Understanding of cloud platforms (e.g., AWS, Azure, Oracle Cloud).

  • Experience using or developing vulnerability scanners, IDS/IPS, and other security tools.

  • Prior experience building security‑related tools or automation.

  • Industry certifications such as OSCP, CISSP, and GIAC

  • Ability to lead projects independently and work with minimal supervision.

Why Join Us?

  • Work on cutting-edge security research with a talented, collaborative engineering team.

  • Directly influence the security posture of thousands of customers.

  • Opportunities for professional development, certifications, and continuous learning.

  • Inclusive culture that values innovation, ownership, and customer impact.

Qualys

About Qualys

Qualys, Inc. (NASDAQ: QLYS) is a leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings.

The Qualys Enterprise TruRisk Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices.

Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com.

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Foster City, CA
Year Founded
1999
Social Media