Senior Security Researcher
Core
Providing threat intelligence support, attribution, and actor modeling for proactive security research and reactive incident response engagements.
Role type
Senior Security Researcher (Threat Intelligence & Attribution)
Builds
Actionable threat intelligence, attribution reports, and customer briefings on attacker activity.
Domain
Cybersecurity, Threat Intelligence, Adversary TTP Analysis
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Adversary attribution and modeling, Diamond Model application, TTP characterization, Log analysis (KQL/Kusto, SQL), SIEM/Cloud/Endpoint telemetry analysis, Incident response support, Malware triage, Automation/Data science/AI tooling for triage
Preferred skills
Detection engineering, Hunting query development, Cloud and identity-based intrusion analysis (token theft, OAuth abuse), SaaS-native tradecraft
Technologies
KQL, Kusto, SQL, SIEM, Cloud telemetry, Identity telemetry, Endpoint telemetry
Responsibilities
Ingest, model, and document intelligence collected during engagements; Deliver threat intelligence briefings to external customers and internal stakeholders; Support notifications regarding imminent or ongoing attacker activity; Characterize adversary infrastructure and operational campaigns; Produce actionable intelligence that changes investigation outcomes or hardens networks.
Seniority
Senior, hands-on IC