Elastic Security is hiring a VP of Threat Research to own the research agenda for what the platform detects, prevents, and publishes. Reporting directly to the GM of Elastic Security, this is a senior individual-contributor leadership role shaping direction across detection engineering, threat research, endpoint protection, and security ML. It is also a highly visible, outbound role representing Elastic with customers, at conferences, with press and analysts, and in the security research community.
Stack
Responsibilities
- ▹Define the research and detection agenda across SIEM, endpoint, threat research, and security ML
- ▹Set the quality bar for what Elastic detects, prevents, and publishes
- ▹Decide where the team should invest next: malware detection, ransomware and memory protections, AI-driven security
- ▹Shape the publishing strategy for Elastic Security Labs (original research, malware analysis, conference content)
- ▹Act as the external face of the organization with customers, analysts, press, and the security community
- ▹Partner with engineering, product, and delivery leadership to turn research priorities into shipped protections
- ▹Advance Elastic's point of view on open, transparent security, including public detections and explainable AI-driven protections
- ▹Lead thinking on how AI changes threat research and attacker behavior
Requirements
- ▹Deep credibility in threat research, detection engineering, endpoint security, or security ML
- ▹Hands-on technical experience doing the work, not only leading teams
- ▹Ability to operate as a senior IC leader who sets direction through technical depth and judgment
- ▹Strong public communication skills and enthusiasm for customer engagement, speaking, and industry visibility
- ▹A clear belief in open, transparent security and the value of publishing detections and research openly
- ▹Strong judgment and the ability to lead through influence, expertise, and vision
- ▹Experience setting strategy across technical security domains
- ▹A thoughtful point of view on AI in security, including both its promise and its risks
- ▹Willingness to travel regularly for customer meetings and conferences
Nice to have
- ▹Experience leading or contributing to publicly recognized threat research or detection content
- ▹Familiarity with open detection ecosystems, GitHub-based research workflows, or community-driven security programs
- ▹Experience spanning both endpoint protections and SIEM detections
- ▹Background working with malware models, behavioral detections, or small language models in security use cases
- ▹Existing presence in the security community through talks, publications, or media engagement
Soft skills
What we offer
- ▹Base-salary compensation (no variable component)
- ▹Participation in Elastic's stock program
- ▹Company-matched 401(k) with dollar-for-dollar matching up to 6% of eligible earnings
- ▹Health coverage for you and your family in many locations
- ▹Flexible calendar and locations for many roles
- ▹Generous annual vacation days
- ▹Employer donation matching up to $2,000 (or local currency equivalent)
- ▹Up to 40 hours per year for volunteer projects
- ▹Minimum 16 weeks of parental leave
- ▹USD $312,000–$493,600 (select locations $374,600–$592,600) base salary range
About the company
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to help organizations accelerate the results that matter.
Similar jobs

Software Development Engineer

Director of Privacy and Data Governance

System FPGA Engineer

Technical Growth Content Specialist

Field CISO / Technical Evangelist
