Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Security Research Engineer--Duo Security

AT Duo Security
Duo Security

Security Research Engineer--Duo Security

Ann Arbor, MI

Application window is expected to close 10/04/2024.

Duo + Cisco = Disco!

With the Most Loved Company in Security and the global leader in network technology joining forces, there are more exciting opportunities than ever to be at the forefront of securing the cloud.

Our mission is simple: democratize security by making it easy and effective for everyone. We're transforming security from the ground up by solving the world's most pressing geopolitical challenge - safe, secure information access. We engineer our business to enable our customers to easily address their ever-evolving security challenges.

We believe that impactful work is rewarding work and that our team is at its best when everyone feels empowered to bring their whole self to work. We learn together by hiring for cultural contribution, not cultural fit, and recognize that diversity in background and thought are essential to building high-impact teams.

Want more jobs like this?

Get jobs in Ann Arbor, MI delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.


We invest in growth and learning opportunities and encourage our people to never stop learning. We foster collaboration and believe in being recognized (and rewarded!) for hard work. We champion a healthy work-life balance. We're kinder than necessary.

Together we build for the future by designing simple solutions for complex problems.

What You'll Do:

As a Security Research Engineer on the Duo AI & Security Research team, you will help keep our products on the leading edge of identity security. You will work with Data Scientists and Machine Learning Engineers to develop effective threat detection systems. You will contribute threat insights to improve our existing Duo Trust Monitor and Risk Based Authentication products, while working to identify and respond to threat actor campaigns affecting Duo customers. Your security expertise combined with a product-oriented approach will help Duo deliver best-in-class security outcomes.

Responsibilities include:

  • Serve as an internal authority on identity threats such as phishing, adversary-in-the-middle, and session hijacking attacks to aid in product development.
  • Actively hunt for identity threats in Duo customer telemetry and develop effective countermeasures.
  • Support detection engineers in designing logic to detect and remediate sophisticated identity threats, including development of AI models.
  • Establish, maintain, and monitor internal fixed intelligence repositories containing malicious IPs and device identifiers.
  • Coordinate bidirectional intelligence sharing with our security research partners in Cisco Talos, including publication of threat advisories and public blogs.
  • Keep abreast of current trends in the identity threat landscape.
  • Organize and participate in red teaming and threat emulation exercises to better understand adversarial techniques and evaluate product efficacy.

Minimum Experience for this role:

  • 6+ years professional experience in security research, threat intelligence analysis, cyber operations, or similar.
  • 4+ years querying and analyzing data using query languages like SQL.
  • 4+ years of scripting or software engineering experience with a common programming language, preferably Python.
  • Experience contributing to automated defensive systems through detection engineering or security product development.

Preferred Skills and Experience:

  • Investigation and response to identity and access threats, especially those affecting multi-factor authentication.
  • Contributions to a customer-facing defensive security or threat detection and response product.
  • Publication of research and intelligence reports such as public threat advisories.
  • Familiarity with identity security protocols such as SAML and WebAuthn.
  • Collaboration with data scientists and/or detection engineers.
  • Facilitation of red team exercises, penetration testing, or "Capture the Flag" competitions.
  • Participation in the development of machine learning and AI systems.

Why Cisco Secure:

We're global, we're adaptable, we're diverse, and our security portfolio is as extensive as it is groundbreaking. Have you heard of Threat, Detection & Response, Zero Trust by Duo, Common Services Engineering, or Cloud & Network Security? Those are only a few of our product teams! The only thing we're missing is YOU.

Join an enterprise security leader with a start-up culture, committed to driving innovation and giving you the opportunity to make an impact. We #InnovateToWin and we know we're better together, that's why we're dedicated to inclusivity, collaboration, and diversity in everything we do.

We're proud to be the Best Small and Mid-Size Enterprises Security Solution Cisco Secure continues to grow and evolve year after year with 100% of Fortune 100 Companies using our products, and we're excited to see the new heights we'll reach with your passion for security, your customer focus, and your desire to change things up!

There are so many amazing reasons to join Cisco. Learn more here!

Message to applicants applying to work in the U.S. and/or Canada:

When available, the salary range posted for this position reflects the projected hiring range for new hire, full-time salaries in U.S. and/or Canada locations, not including equity or benefits. For non-sales roles the hiring ranges reflect base salary only; employees are also eligible to receive annual bonuses. Hiring ranges for sales positions include base and incentive compensation target. Individual pay is determined by the candidate's hiring location and additional factors, including but not limited to skillset, experience, and relevant education, certifications, or training. Applicants may not be eligible for the full salary range based on their U.S. or Canada hiring location. The recruiter can share more details about compensation for the role in your location during the hiring process.

U.S. employees have access to quality medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, short and long-term disability coverage, basic life insurance and numerous wellbeing offerings. Employees receive up to twelve paid holidays per calendar year, which includes one floating holiday, plus a day off for their birthday. Employees accrue up to 20 days of Paid Time Off (PTO) each year and have access to paid time away to deal with critical or emergency issues without tapping into their PTO. We offer additional paid time to volunteer and give back to the community. Employees are also able to purchase company stock through our Employee Stock Purchase Program.

Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components. For quota-based incentive pay, Cisco typically pays as follows:

.75% of incentive target for each 1% of revenue attainment up to 50% of quota;

1.5% of incentive target for each 1% of attainment between 50% and 75%;

1% of incentive target for each 1% of attainment between 75% and 100%; and once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.

For non-quota-based sales performance elements such as strategic sales objectives, Cisco may pay up to 125% of target. Cisco sales plans do not have a minimum threshold of performance for sales incentive compensation to be paid.

Client-provided location(s): Ann Arbor, MI, USA
Job ID: duo_security-1426275
Employment Type: Other

Perks and Benefits

  • Health and Wellness

    • FSA
    • HSA
    • Health Insurance
    • Dental Insurance
    • Vision Insurance
    • Life Insurance
    • Short-Term Disability
    • FSA With Employer Contribution
    • Health Reimbursement Account
    • HSA With Employer Contribution
    • Mental Health Benefits
  • Parental Benefits

    • Non-Birth Parent or Paternity Leave
    • Birth Parent or Maternity Leave
    • Adoption Leave
    • Adoption Assistance Program
    • Family Support Resources
  • Work Flexibility

    • Flexible Work Hours
    • Remote Work Opportunities
    • Hybrid Work Opportunities
    • Work-From-Home Stipend
  • Office Life and Perks

    • Company Outings
    • Casual Dress
    • Snacks
    • Some Meals Provided
  • Vacation and Time Off

    • Paid Holidays
    • Paid Vacation
    • Personal/Sick Days
    • Leave of Absence
    • Volunteer Time Off
  • Financial and Retirement

    • Performance Bonus
    • Stock Purchase Program
    • 401(K) With Company Matching
    • 401(K)
    • Company Equity
    • Relocation Assistance
    • Financial Counseling
  • Professional Development

    • Learning and Development Stipend
    • Promote From Within
    • Mentor Program
    • Shadowing Opportunities
    • Access to Online Courses
    • Lunch and Learns
    • Tuition Reimbursement
    • Internship Program
    • Work Visa Sponsorship
    • Leadership Training Program
    • Associate or Rotational Training Program
  • Diversity and Inclusion

    • Diversity, Equity, and Inclusion Program
    • Employee Resource Groups (ERG)

Company Videos

Hear directly from employees about what it is like to work at Duo Security.