Windows Security Researcher

Lacework

Lacework

Herzliya, Israel
Posted on Jan 15, 2026

Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Windows Security Researcher to contribute to the success of our rapidly growing business.

You will seize the unique opportunity to join our leading research team, renowned for its discoveries of critical system vulnerabilities, exploits, malware campaigns, and techniques. In this role, you will spearhead the creation of innovative capabilities for our endpoint security platform, empowering our customers and incident response teams to stay ahead of the evolving threat landscape.

As a Windows Security Researcher, you will:

  • Conduct cutting-edge research: Perform offensive and defensive low-level research focused specifically on Windows systems.

  • Drive product innovation: Collaborate closely with research and development teams to enhance our FortiEDR Windows endpoint solution, ensuring robust protection against emerging cyber threats.

  • Investigate threats: Conduct in-depth investigations of real-world attacks that target Windows systems.

  • Develop Proof of Concepts (POCs): Create comprehensive POCs for a variety of exploits and malware, as well as POCs for effective defense mechanisms against these threats.

  • Fortify defenses: Meticulously recreate and analyze security issues and bugs to ensure a proactive approach to cybersecurity.

We Are Looking For:

An insightful and influential collaborator to join our team. We encourage you to apply for this position if you have the following qualities:

  • 5+ years of low-level security research experience (specifically in malware research and/or exploit development).

  • A creative thinker and a strong team player.

  • Extensive in-depth knowledge of Windows OS internals (both user and kernel)

  • Experience with C/C++ (Win32) and Python.

  • Experience with kernel development.

  • A good understanding of attack methods, tools, and techniques.

  • Proven experience in running end-to-end research POCs from ideas to customer solutions, including design, execution, analysis, and conclusions.

  • Experience with EDR/XDR/AV product R&D – Advantage.

  • Experience in reverse engineering – Advantage.

  • Knowledge of Linux/macOS internals – Advantage.

  • Familiarity with Elastic Stack or databases Advantage.

Why Join Us:

At Fortinet, we embrace diversity and inclusivity. We encourage applications from diverse backgrounds and identities. Explore our welcoming work environment designed for a rewarding career journey with an attractive Total Rewards package to support you with your overall health and financial well-being. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.

We will only notify shortlisted candidates.

Fortinet will not entertain any unsolicited resumes, please refrain from sending them to any Fortinet employees or Fortinet email aliases. Should any Agency submit any resumes to Fortinet, these resumes if considered, will be assumed to have been given by the Agency free of any related fees/charges.

#LI-Hybrid


Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Windows Security Researcher to contribute to the success of our rapidly growing business. You will seize the unique opportunity to join our leading research team, renowned for its discoveries of critical system vulnerabilities, exploits, malware campaigns, and techniques. In this role, you will spearhead the creation of innovative capabilities for our endpoint security platform, empowering our customers and incident response teams to stay ahead of the evolving threat landscape.