- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 1 day ago
- Work mode
- In office
- Education
- Degree in Electronic Engineering, Computer Science, Cybersecurity or related field, or equivalent experience
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Role Overview
HP's Security Lab in Bristol is seeking a Threat Research Engineer to investigate current and future attack trends targeting endpoint devices, ranging from operating system malware to hardware and firmware vulnerabilities. This role integrates hands-on malware analysis with clear communication of complex security findings internally and externally, influencing HP's security research strategy.
Key Responsibilities
- Research and document developments in endpoint security threats, including OS-level and hardware/firmware attacks, such as bootkits, ransomware, and stealth attacks.
- Analyze real-world attacks to evaluate risk, maturity, and impact; identify mitigations through HP or industry methods.
- Gather and analyze data from public disclosures, technical reports, and attacker methods to produce evidence-based threat assessments.
- Stay current on cyber threat environments and cutting-edge defensive endpoint security technologies.
- Translate intricate technical concepts into clear, accessible materials for varied audiences, including technical teams, marketing, and external partners.
- Create external-facing content such as blog posts, technical papers, conference submissions, and client briefings.
- Engage effectively with customers, industry partners, analysts, and media, tailoring communications for technical accuracy and audience understanding.
Required Qualifications
- Strong understanding of OS architectures (Windows, Linux) and endpoint security technologies.
- Experience with reverse engineering tools and attack kill chain analysis frameworks.
- Proficient in analyzing malware, exploits, vulnerabilities, and proof-of-concept attacks.
- Ability to research and synthesize public information about cyber threats.
- Familiarity with scripting languages such as Python; C or C++ programming is an advantage.
- Capability to produce clear, structured technical reports and documentation.
- Excellent written and verbal communication skills aimed at both technical and non-technical stakeholders.
- Experience publishing technical analyses or external threat research content is highly preferred.
Additional Preferred Skills
- In-depth knowledge of systems security engineering.
- Understanding of hardware and firmware architectures including x86, ARM, UEFI, PCIe, and DMA.
- Knowledge of kernel and hypervisor security mechanisms.
- Exposure to enterprise device security and management.
- Background in penetration testing or exploit frameworks like Metasploit.
- Experience with malware analysis, vulnerability research, and attack demonstration.
- Proven ability to communicate offensive security and platform security topics effectively.
- Academic degree in Electronic Engineering, Computer Science, Cybersecurity, or related field, or equivalent experience.
About HP
HP is a global leader operating in over 170 countries, committed to fostering innovation and professional growth. The company's culture promotes diversity, inclusion, and equal opportunity for all employees and applicants, respecting all backgrounds and characteristics protected by law.
HP values collaboration and encourages contributions from varied perspectives to drive new solutions and career development.
Equal Opportunity Statement
HP provides equal employment opportunities without regard to race, religion, sex, national origin, disability status, protected veteran status, age, or any other legally protected characteristics. Applicants are assured confidentiality and no adverse treatment will occur based on voluntarily provided personal information.
Minimum education
Bachelor's Degree