# Threat Intelligence Researcher (Cloud)

**Company:** [Wiz](https://hotfix.jobs/companies/wiz)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $160k – $220k/yr
**Experience:** 5+ years
**Skills:** threat intelligence, threat hunting, malware analysis, yara, Cloud Security, AWS, GCP, Azure, Kubernetes, Scripting, query languages, Incident Response, telemetry
**Posted:** 2026-08-04

> Researches and tracks sophisticated state-backed and financially motivated threats targeting cloud environments, using telemetry, infrastructure analysis, malware analysis, and threat intelligence techniques. Requires at least five years of security or threat research experience.

## Job Description

## Responsibilities
- Identify, analyze, and track advanced state-backed and financially motivated attackers targeting cloud ecosystems.
- Hunt through diverse data sources to identify malicious campaigns targeting customers.
- Use open and closed data to track infrastructure and malware associated with advanced threat actors.
- Investigate and attribute incidents, campaigns, and threat actors to understand attacker motivations.
- Communicate novel findings to customers and the public.

## Requirements
- **5+ years of experience** in security or threat research, focused on advanced state-backed actors or sophisticated financially motivated campaigns.
- Proven track record tracking sophisticated threat actors.
- Ability to develop novel and durable methods for identifying and tracking threat actors across multiple datasets.
- Deep subject matter expertise in at least one actor-tracking mechanism, such as malware or infrastructure.
- Experience working with large-scale telemetry, especially infrastructure hunting using query languages and scripting.
- Familiarity with malware analysis and YARA-based malware hunting.
- Willingness to take on multiple roles to build actor-tracking capabilities.

## Nice-to-haves
- Knowledge of attacker targeting of AWS, Google Cloud, Azure, Kubernetes, and modern cloud-native architectures.
- Experience building tools that use data sources in a repeatable and scalable manner.
- Track record of publicly communicating novel and newsworthy findings.
- Background in incident response, threat intelligence, or threat hunting.

## Compensation and Benefits
- Compensation includes base salary, bonus, equity, and benefits.
- US base salary range: **$160,000–$220,000 USD**.
- Benefits are provided for this full-time position.


## Similar roles

- [Program Architect](https://hotfix.jobs/jobs/5384a590-015f-4993-b8ab-c3265b23c189) - Onebrief - Remote - $160k – $200k/yr
- [Security Engineer](https://hotfix.jobs/jobs/be1ae539-4e2e-462f-aedd-c2ac34023a86) - Skydio - San Mateo, CA - $160k – $210k/yr
- [Software Engineer - Secret, Cryptographic and Identity Infrastructure](https://hotfix.jobs/jobs/a918f997-7c56-44bb-9b30-9a92afad2937) - Snowflake - Bellevue, WA - $160k – $230k/yr
- [Security Engineer](https://hotfix.jobs/jobs/3e8573ef-e06e-4e0e-907b-299b0e307a11) - Juicebox - San Francisco, CA - $160k – $250k/yr
- [Security Infrastructure Engineer](https://hotfix.jobs/jobs/1fb7499e-0f95-40d3-bc9b-28f07610453e) - PointOne - New York, NY - $160k – $220k/yr

**Apply:** https://hotfix.jobs/jobs/43eb83d5-1e68-45c1-8f55-ba66f66b7288
**Canonical:** https://hotfix.jobs/jobs/43eb83d5-1e68-45c1-8f55-ba66f66b7288