# Threat Intelligence Analyst, Threat Disruption

**Company:** [xAI](https://hotfix.jobs/companies/xai)
**Location:** Bastrop, TX, London, United Kingdom
**Role:** Security Engineering
**Skills:** SQL, Command Line, Scripting, Artificial Intelligence, Threat Intelligence, Platform Manipulation, Account Compromise, Influence Operations, Fraud, Incident Response
**Posted:** 2026-08-06

> Investigates sophisticated threat actors and executes large-scale disruption operations involving platform abuse, account compromise, influence campaigns, and fraud. The role requires strong SQL, scripting, analytical, communication, and urgent incident-response skills.

## Job Description

## Responsibilities
- Identify and counter sophisticated threat actors who are highly motivated to evade detection.
- Conduct first-principles investigations into platform manipulation, account compromises, influence operations, fraud, monetization abuse, scam networks, and other policy violations.
- Design and execute large-scale enforcement operations removing adversary-controlled accounts.
- Clearly and concisely communicate investigative findings and enforcement outcomes.
- Partner with operations, engineering, product, and policy teams.
- Rapidly and rigorously handle urgent incidents escalated by leadership.

## Requirements
- Self-starter mindset with the ability to take initiative and drive work forward independently.
- Deep commitment to analytical rigor and operational excellence.
- Exceptional attention to detail.
- Excellent written and verbal communication skills.
- Ability to learn quickly and adapt in a fast-paced environment.
- Maturity and discretion when handling sensitive information, with the ability to remain calm and effective during urgent incidents.
- Strong proficiency in SQL for querying large, complex datasets.
- Comfort operating in the command line, writing scripts, and leveraging AI tools to amplify impact and scale work.
- Flexibility to work across time zones, including weekends and holidays, as part of an on-call rotation.
- Strong respect for users’ freedom of speech and privacy.

## Nice-to-haves
- Experience investigating platform manipulation, account compromise, influence operations, or fraud.
- Experience turning investigations into production changes and enforcement outcomes.
- Experience in a 24/7 on-call rotation, including owning urgent incidents and briefing leadership.

## Compensation and benefits
- Base salary plus equity.
- Comprehensive medical, vision, and dental coverage.
- Access to a 401(k) retirement plan.
- Short- and long-term disability insurance.
- Life insurance and other discounts and perks.

## Similar jobs

- [Security Engineer, Threat Intelligence](https://hotfix.jobs/jobs/a9d333c0-2242-416f-a470-d3a19f982046) - Fluidstack - New York, NY - $220k – $280k/yr
- [Security Scientist](https://hotfix.jobs/jobs/36a4a0c9-f833-41fb-bd29-ad40c4d5050f) - Figma - Remote - $140k – $348k/yr
- [Security Engineer](https://hotfix.jobs/jobs/061a2617-4d6a-4cf3-96a0-ad832100d55f) - hud - San Francisco, CA
- [Abuse Research Engineer](https://hotfix.jobs/jobs/2f1effd6-b955-48c7-9d30-3d0aed220264) - Stripe - Remote
- [Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e5c4fc22-2c3a-4334-8eae-e8ab5bcf2a8a) - Anthropic - San Francisco, CA - $300k – $320k/yr

**Apply:** https://hotfix.jobs/jobs/2d90ea6e-43b9-4745-8012-9f2559590d0f
**Canonical:** https://hotfix.jobs/jobs/2d90ea6e-43b9-4745-8012-9f2559590d0f