Multi-year experience in cybersecurity research Hands-on experience investigating malicious components in software supply chains Deep understanding of package ecosystems (PyPI, npm, Maven) Programming ability in Python, Java, or JavaScript Experience using LLMs for security research, code analysis, or threat detection Track record of building or improving automated security detection systems Comfortable working in fast-paced environments Strong communication skills for remote team collaboration