Principal Threat Intelligence Analyst
Core
Researching adversary tradecraft, aggregating threat data, and building threat intelligence reports for customers and marketing.
Role type
Principal Threat Intelligence Analyst
Builds
Threat intelligence reports, marketing materials, and a threat intelligence program
Domain
Cybersecurity / Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat intelligence program building, SIEM log analysis, detection engineering (Sigma Rules), threat hunt mission scoping, OSINT gathering and analysis, incident response, malware research, digital forensics, vulnerabilities, exploits, 3rd-party intelligence tools, feeds, and reputation services
Preferred skills
Scripting/development (C/C++, GoLang, Python), Windows/macOS subsystems knowledge, product management, detection logic, antivirus technologies, AI in workflows
Technologies
SIEM tools, Sigma Rules, C/C++, GoLang, Python, Windows, macOS
Responsibilities
Conduct research on emerging adversary tradecraft; Aggregate threat data to build customer reports; Create reports for marketing; Promote reputation via media interaction, public speaking, and blogs; Develop product and threat operations roadmap with Sr. Director; Provide technical leadership to Security team members; Support professional development of researchers through coaching and mentorship; Enhance visibility by ingesting and utilizing IOCs from external sources; Write blog posts and marketing materials regarding threat trends
Seniority
Principal, hands-on IC with mentorship