Associate Security Research Engineer
Are you passionate about technology and enjoy explaining complex solutions in a way that everybody gets excited? If so, read on!
About Picus Picus Security is an exposure validation company. One platform proves what attackers can exploit and what your defenses stop, turning every exposure into a defensible decision, autonomously and at the machine speed today's AI threats demand. Picus validates attack surfaces, exposures, and security controls as one continuous loop: validate, decide, fix, re-validate. Instead of ranking findings by severity score, Picus proves which exposures are genuinely exploitable in your environment, including the business-critical, restricted, and air-gapped assets a live exploit can never safely touch, so teams act on what truly matters and resolve each exposure into a clear call to patch, mitigate, monitor, or accept with evidence. The Picus Platform spans Autonomous Penetration Testing, Exposure Validation, and Breach and Attack Simulation, unified by Picus Swarm, a swarm of AI agents that runs the whole validation loop continuously. It reaches across on-prem, hybrid cloud, and endpoint environments, with 75+ integrations that ingest from scanners like Tenable and Wiz and operationalize through your EDR, SIEM, firewall, and ticketing tools. The pioneer of Breach and Attack Simulation, Picus proves and improves the security controls you already own, doubling control effectiveness within three months. Picus holds a 95% recommendation rate, 4.9 on G2, and 4.8 on Gartner Peer Insights, and is the #1 Leader on Frost Radar for Automated Security Validation.
About Role We're growing our Technical Marketing Team to support the high growth and global expansion plans of Picus, and we're opening the door for someone at the start of their research-and-content career. In this role, you'll learn to go deep on real-world threats and turn that research into technical content that shows the market what Picus can actually do, including research papers, offensive and defensive security reports, whitepapers, blogs, solution and integration briefs, battlecards, webinars, demos, and conference presentations. It's a role built for growth in two directions at once: you'll start building your own name in the security community through published work and hands-on research, while contributing to how the market understands the category. Our research is regularly picked up and cited by the wider community, from major news organizations like Reuters, the Associated Press, and Forbes, to specialist security outlets including Dark Reading, BleepingComputer, Infosecurity Magazine, SCWorld, and Help Net Security, as well as community platforms like Hacker News. Our work has also been referenced by industry authorities such as MITRE ATT&CK and Gartner, and cited in high-impact academic journals. As you grow into the role, there will be opportunities to take your work on stage at industry conferences such as Black Hat and GovWare, and at local meetups and user groups. You'll be constantly challenged to develop your knowledge and skills in cybersecurity and share what you learn with the world, doing meaningful research for a fast-growing cybersecurity company. Are you an early-career SOC analyst, junior security consultant, aspiring threat hunter, security engineer, or red/blue/purple team member looking to move into a more research- and publication-focused path? Are you a recent graduate, career-changer, home-lab tinkerer, or CTF player who already writes, shares, or wants to start? Then this role is for you. This position is based in our Ankara office and follows a hybrid work model.
Sourced from a public career listing. Jobverse is an aggregator, not the employer.