Senior/Staff Security Engineer, Threat Intelligence
Core
Producing actionable threat intelligence to detect and defend against nation-state and advanced criminal actors targeting frontier AI labs.
Role type
Senior/Staff Security Engineer (Threat Intelligence)
Builds
Automated pipelines for collecting, enriching, and operationalizing indicators of compromise into detection and alerting stacks.
Domain
Cybersecurity, Threat Intelligence, AI Safety
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cyber threat intelligence, threat hunting, intrusion analysis, Python engineering, automation, data pipelines, malware analysis, infrastructure analysis, log analysis, detection logic authoring (YARA, Sigma, Snort/Suricata)
Preferred skills
Threat intelligence community networking, cloud-native defense (AWS/GCP, Kubernetes, ML infrastructure), LLM application for intelligence acceleration, public research or open-source contributions in CTI
Technologies
Python, YARA, Sigma, Snort, Suricata, SIEM, AWS, GCP, Kubernetes
Responsibilities
Research and report on threat actors targeting AI labs and cloud infrastructure; Build and maintain tooling to operationalize indicators of compromise; Execute intelligence-driven threat hunts across endpoint, cloud, and identity telemetry; Perform technical analysis of malware and attacker tooling; Partner with Detection Engineering to translate intelligence into detection rules; Curate and triage inbound intelligence from commercial and government feeds; Contribute to enterprise threat models and risk assessments; Build external intelligence-sharing relationships with ISACs and government partners
Seniority
Senior/Staff, hands-on IC