Skip to content

Threat Intelligence Researcher (Cloud)

151k – 208kNew York, NYRemote5+ YOE
Summary

Track, analyze, and attribute advanced state-backed and financially motivated threat actors targeting cloud environments. Requires 5+ years in threat research with expertise in malware, infrastructure tracking, and large-scale telemetry analysis.

About the role

What You'll Do

  • Identify, analyze, and track advanced state-backed or financially motivated attackers that target cloud ecosystems.
  • Hunt through a wide range of data sources to identify malicious campaigns targeting Wiz customers.
  • Leverage open and closed-data to track the infrastructure and malware used by advanced actors.
  • Investigate and attribute incidents, campaigns, and threat actors to understand more about the attackers and what motivates them.
  • Communicate novel findings to multiple audiences, including customers and the public.

What You'll Bring

  • 5+ years of experience in security or threat research, with a focus on either advanced state-backed actors or sophisticated financially motivated campaigns.
  • Proven track record of tracking sophisticated threat actors.
  • Ability to find novel and durable ways of identifying and tracking threat actors across multiple data sets.
  • Deep subject matter expertise in at least one actor tracking mechanism (malware, infrastructure, etc).
  • Experience working with large-scale telemetry, especially infrastructure hunting and by pivoting through query languages and scripting.
  • Familiarity with malware analysis and using YARA to hunt for malware.
  • Willingness to take on multiple roles to build out actor tracking.

Advantages

  • Knowledge of how attackers target the major cloud and identity providers (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
  • Experience building tools to exploit data sources in a repeatable and scalable manner.
  • Track record of public communication of novel and newsworthy findings.
  • Background in incident response, threat intelligence, or threat hunting.

Benefits

  • Medical, dental and vision insurance
  • Home Office Setup reimbursement
  • Flexible Spending Accounts
  • Monthly Connectivity reimbursement
  • Employee Assistance Program (EAP)
  • Short- and Long-term Disability Insurance
  • Life & Accident Insurance
  • 401(k) Retirement Savings Plan (with employer match)
  • Flexible paid time off + 11 paid holidays
  • Paid leave programs, including parental, pregnancy health, medical and bereavement leave
Skills
Threat IntelligenceMalware AnalysisYARAAWSGCPAzureKubernetesInfrastructure AnalysisTelemetry AnalysisIncident Response
Similar roles at this salary range
All Security Engineering jobs →
Sigma

Senior Security Engineer

Senior Security Engineer building and scaling security platforms, AI/LLM security controls, detections-as-code, and automation across cloud and SaaS environments. Requires 5+ years hands-on security engineering experience and strong Python/cloud skills.

175k – 220kSan Francisco, CASecurity EngineeringOn-site5+ YOEAWSGCP
Sigma

Senior Security Engineer - Data Security

Senior Security Engineer building and scaling data protection platforms, DLP, DSPM, and AI-driven automation across SaaS, cloud, and data warehouse environments. Requires 5+ years in security engineering and strong software engineering skills.

175k – 220kSan Francisco, CASecurity EngineeringOn-site5+ YOEDLPDSPM
Illumio

Sr. Member of Technical Staff, Cloud Security

Develop containerized microservices in Go on Kubernetes for a distributed cloud security platform processing real-time telemetry from AWS/Azure/GCP. Own full SDLC, operations, and mentor junior engineers.

170k – 196kSunnyvale, CASecurity EngineeringOn-site5+ YOEGoSQL
ezCater

Staff GRC Engineer

Senior individual contributor leading GRC program maturity, control automation, data security governance, and AI governance for a SaaS food tech platform. Requires 8+ years in security compliance with strong automation and cross-functional influence skills.

165k – 210kUnited StatesSecurity EngineeringRemote8+ YOEGRCSOX
Shield AI

Senior Staff Cybersecurity Engineer, Platform Security

Senior technical owner building secure-by-default infrastructure, IaC modules, policy-as-code guardrails, and CI/CD security tooling for cloud and platform engineering teams.

160k – 240kSan Diego, CASecurity EngineeringOn-site7+ YOEGoOPA