Cyber Threat Intel Analyst
The Cyber Threat Intel Analyst tracks, investigates, attributes, and reports on advanced threats targeting cloud, AI, and developer environments. The role requires at least three years of security or threat research experience and strong technical analysis and writing skills.
About the job
Responsibilities
- Synthesize internal and external data to develop comprehensive assessments of threats affecting cloud, AI, and developer environments.
- Analyze and track state-backed and financially motivated attackers targeting cloud ecosystems.
- Communicate novel findings and in-depth analyses of cyber threat activity to multiple audiences and formats.
- Use open and closed data to track infrastructure and malware associated with advanced threat actors.
- Investigate and attribute incidents, campaigns, and actors to understand targets and motivations.
Requirements
- 3+ years of experience in security or threat research, with a record of producing detailed, novel analysis and reporting.
- Ability to correlate multiple independent data sources to build a comprehensive campaign picture.
- Basic to intermediate technical analysis skills, such as infrastructure analysis, malware analysis, or cloud log analysis.
- Strong analytic judgment and familiarity with attribution and evidence-based assessments.
- Ability to write quickly and clearly about technical topics.
Nice-to-haves
- Experience with large-scale telemetry, infrastructure hunting, query languages, and scripting.
- Knowledge of AWS, Google Cloud, Azure, Kubernetes, and modern cloud-native architectures.
- Experience writing finished intelligence reports for multiple audiences.
- Track record of publicly communicating novel and newsworthy findings.
Compensation
- Base salary range: $160,000–$220,000 USD.
- Compensation also includes bonus, equity, and benefits.
Skills
Threat Intelligence, Threat Research, Infrastructure Analysis, Malware Analysis, Cloud Log Analysis, Attribution, Telemetry, Query Languages, Scripting, AWS, GCP, Azure, Kubernetes, Cloud-Native Architecture
Similar jobs
Security Engineering jobsThe Application Security Engineer will embed security practices throughout the SaaS software development lifecycle, including threat modeling, automated testing, vulnerability remediation, and incident response. The role requires 5+ years of application or product security experience and expertise with DevSecOps workflows, web applications, and CI/CD automation.
The GRC Analyst will operate and mature security and compliance programs across major privacy and security frameworks, supporting risk assessments, access reviews, third-party risk, control monitoring, and audits. The role requires 3–5 years of GRC or information security experience and strong cross-functional communication.
Manages FedRAMP compliance for a cloud service provider by implementing security controls, supporting audits and remediation, maintaining SSP documentation, and coordinating authorization activities. Requires 5+ years of IT audit or compliance experience and hands-on FedRAMP ATO leadership.
Develops safety requirements, analyses, and fail-operational architectures for autonomous-vehicle sensing and perception systems. The role requires 3+ years analyzing safety-critical systems and familiarity with functional-safety standards, sensing hardware, perception, and cross-functional systems engineering.
Own the security posture of a fast-growing developer product across application, infrastructure, cloud, and internal systems. The role requires at least three years of relevant engineering or security experience, strong vulnerability judgment, and hands-on JavaScript or TypeScript expertise.