Back to Search Results

Principal Researcher

Post Date

Jul 23, 2026

Location

San Jose,
California

ZIP/Postal Code

95131
US
Sep 24, 2026 Insight Global

Job Type

Perm

Category

Network Engineer

Req #

DGW-a4a32d7f-3afd-403b-b414-cb88926a9af5

Pay Rate

$200k - $215k (estimate)

Job Description

What you will do
• Reverse engineer IoT botnet malware families (Mirai lineage, Go-based L7 flooders, multi-architecture binaries) to understand attack behavior at the implementation and network level. You will reconstruct command structures, decode obfuscation, recover control flows from stripped binaries, and build precise models of how attacks manifest on the wire
• Perform dynamic malware analysis in sandboxed and purpose-built lab environments to validate static analysis and observe runtime behavior
• Design and contribute to novel detection and mitigation approaches based on malware internals and traffic behavior
• Collaborate with AI/ML teams to integrate automated analysis into research workflows. This is not passive tool usage—you will actively shape how automation is applied to real malware analysis problems
• Partner with product engineering to translate research into shipped detection capabilities
• Lead external-facing research: threat reports, technical blogs, and conference presentations. At principal level, you own the narrative and direction of research output
• Engage directly with customers in post-incident analysis, architectural guidance, and strategic threat briefings—clearly explaining both attacker behavior and defensive actions
• Work alongside senior researchers focused on IoT botnets and large-scale DDoS systems, contributing to and benefiting from a deeply technical peer environment

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Required Skills & Experience

• Strong foundation in binary reverse engineering using tools such as Ghidra or IDA, including static analysis across multiple architectures and experience with stripped binaries and compiler-generated code; you should be comfortable working close to raw assembly and control flow, not dependent on tooling abstraction
• Hands-on experience with dynamic malware analysis in sandbox or isolated lab environments, using runtime observation to validate and extend static findings
• Working proficiency in Python and Go
• Strong understanding of network protocols at the implementation level, including the ability to interpret PCAPs and reconstruct protocol behavior
• Familiarity with DDoS botnet architectures (e.g., Mirai lineage or equivalent), ideally with direct analysis of binaries rather than secondary reporting. Experience tracking variant evolution across malware families is a strong plus

Nice to Have Skills & Experience

• Experience with high-performance packet processing or mitigation systems at the network and transport layers
• Experience analyzing Go binaries in depth
• Exposure to malware source code
Experience applying ML-assisted or vector-based approaches to malware classification, clustering, or lineage attribution

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.