Base Career helps you apply smarter for this job.
Key skills for this role
Socket is looking for a Threat Researcher to join our growing Threat Intelligence Team. In this role, you’ll tackle cutting-edge threats in the software supply chain, leveraging our proprietary AI-based scanner and building tools to enhance malware analysis. You’ll secure open source ecosystems, strengthen threat detection across multiple programming languages, and conduct research that helps protect developers and organizations worldwide. This is not an entry-level position. This is a hands-on role for someone passionate about threat hunting, security research, automation, and turning insights into actionable defenses.
What You'll Do
Analyze numerous unique threats daily, maintaining a standard of quality that sets the industry benchmark for supply chain security.
Author high-impact technical blog posts on malicious open source code packages and extensions, and publish deep-dive research pieces on malicious campaigns, threat actor profiles, novel attack vectors, and ecosystem-wide trends.
Design and build automated scripts and tools to streamline malware analysis, enhancing our data collection, threat analysis, and threat hunting workflows.
Partner with our engineering team to integrate your research into our core product, turning manual insights into scalable, real-time protection.
Leverage expertise in open source software ecosystems to enhance security across package registries, browser extensions (Chrome/VS Code), and proactively monitor GitHub/GitLab for emerging malicious campaigns.
Track APT (Advanced Persistent Threat) adversaries, characterizing various TTPs (Tactics, Techniques, and Procedures), capabilities, infrastructure, and campaigns.
What You'll Bring
Required:
3+ years of work experience and a master’s degree in computer science, engineering, or a related field (or equivalent experience).
Technical experience across several areas of security operations, including investigations, incident response and management, digital forensics, malware analysis, reverse engineering, threat intelligence, threat hunting, and detection engineering.
Excellent communication skills and the ability to assess the relevance and impact of threats.
Experience building tools for automation, data collection, and threat hunting.
Passion for open source and code.
Preferred:
Familiarity with TypeScript/JavaScript and/or other programming languages and ecosystems protected by Socket.
Experience leveraging LLMs or AI-based tools for threat detection.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
San Francisco, USA
Denmark, USA
, GBR
, USA
, USA
, USA
, USA
, USA
Hiring is a big decision on both sides. Read more about our Hiring Philosophy and how we approach the process at Socket.
Benefits: Our benefits are crafted to support you and your family, so you can take care of what matters most and thrive in and outside of work. We offer:
Market competitive salary bands
Meaningful equity program
Comprehensive health benefits for you and your family (99% coverage)
Flexible time-off, holidays, and winter shutdown to rest & recharge
Paid parental leave
Remote-first, with quarterly team off-sites
At Socket, we
Pursue Excellence: We set ourselves apart by consistently delivering work of exceptional quality and distinction.
Move with urgency and focus: We prioritize swift, decisive action.
Think rigorously: We care about being right and it often takes reasoning from first principles to get there. We value alternative perspectives and have constructive discussions.
Trust and amplify: We overtrust, always assume good intent, and give specific feedback to help each other improve.
Feel a strong sense of ownership: We wear many hats and feel a strong sense of overall ownership of the company and we're non-territorial regarding our nominal domains.
Are customer obsessed: We relentlessly prioritize the needs of our customers, striving to exceed their expectations and delight them at every interaction.
Socket is looking for a Threat Researcher to join our growing Threat Intelligence Team. In this role, you’ll tackle cutting-edge threats in the software supply chain, leveraging our proprietary AI-based scanner and building tools to enhance malware analysis. You’ll secure open source ecosystems, strengthen threat detection across multiple programming languages, and conduct research that helps protect developers and organizations worldwide. This is not an entry-level position. This is a hands-on role for someone passionate about threat hunting, security research, automation, and turning insights into actionable defenses.
What You'll Do
Analyze numerous unique threats daily, maintaining a standard of quality that sets the industry benchmark for supply chain security.
Author high-impact technical blog posts on malicious open source code packages and extensions, and publish deep-dive research pieces on malicious campaigns, threat actor profiles, novel attack vectors, and ecosystem-wide trends.
Design and build automated scripts and tools to streamline malware analysis, enhancing our data collection, threat analysis, and threat hunting workflows.
Partner with our engineering team to integrate your research into our core product, turning manual insights into scalable, real-time protection.
Leverage expertise in open source software ecosystems to enhance security across package registries, browser extensions (Chrome/VS Code), and proactively monitor GitHub/GitLab for emerging malicious campaigns.
Track APT (Advanced Persistent Threat) adversaries, characterizing various TTPs (Tactics, Techniques, and Procedures), capabilities, infrastructure, and campaigns.
What You'll Bring
Required:
3+ years of work experience and a master’s degree in computer science, engineering, or a related field (or equivalent experience).
Technical experience across several areas of security operations, including investigations, incident response and management, digital forensics, malware analysis, reverse engineering, threat intelligence, threat hunting, and detection engineering.
Excellent communication skills and the ability to assess the relevance and impact of threats.
Experience building tools for automation, data collection, and threat hunting.
Passion for open source and code.
Preferred:
Familiarity with TypeScript/JavaScript and/or other programming languages and ecosystems protected by Socket.
Experience leveraging LLMs or AI-based tools for threat detection.
Hiring is a big decision on both sides. Read more about our Hiring Philosophy and how we approach the process at Socket.
Benefits: Our benefits are crafted to support you and your family, so you can take care of what matters most and thrive in and outside of work. We offer:
Market competitive salary bands
Meaningful equity program
Comprehensive health benefits for you and your family (99% coverage)
Flexible time-off, holidays, and winter shutdown to rest & recharge
Paid parental leave
Remote-first, with quarterly team off-sites
At Socket, we
Pursue Excellence: We set ourselves apart by consistently delivering work of exceptional quality and distinction.
Move with urgency and focus: We prioritize swift, decisive action.
Think rigorously: We care about being right and it often takes reasoning from first principles to get there. We value alternative perspectives and have constructive discussions.
Trust and amplify: We overtrust, always assume good intent, and give specific feedback to help each other improve.
Feel a strong sense of ownership: We wear many hats and feel a strong sense of overall ownership of the company and we're non-territorial regarding our nominal domains.
Are customer obsessed: We relentlessly prioritize the needs of our customers, striving to exceed their expectations and delight them at every interaction.
Open-source supply chain security platform that detects and blocks malicious or vulnerable dependencies in software projects before they reach production.
Visit company websiteJobs and hiring trendsFull-time
Mid · 3+ years experience
Remote
Apply faster on company sites with our extension.