Senior Threat Intelligence Researcher
Core
Lead deep-dive investigations into emerging and known cyber threats, synthesize complex data into actionable intelligence, and develop hunting strategies to counteract evolving threat actor tactics.
Role type
Senior Threat Intelligence Researcher
Builds
High-level threat briefings, risk assessments, internal Knowledge Base, IOCs collections, and automated OSINT tooling.
Domain
Cybersecurity, Threat Intelligence, OSINT, Malware Analysis
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Threat intelligence and threat hunting, knowledge of cyber threat landscape and TTPs, strong analytical skills for pattern recognition, Python programming, SQL and NoSQL databases, YARA rule creation and validation, MITRE ATT&CK, CISA KEV, EPSS, AMITT, MISP Galaxy
Preferred skills
Malware analysis (static and dynamic), sandboxing, debugging, technical writing and content development
Technologies
Python, SQL, NoSQL, YARA, MITRE ATT&CK, CISA KEV, EPSS, AMITT, MISP Galaxy, OSINT tools, dark web forums, passive DNS, SSL certificates
Responsibilities
Triage and evaluate findings from OSINT and dark web forums; Transform raw data into high-level threat briefings and risk assessments; Curate and expand internal Knowledge Base and IOCs collections; Monitor adversary behaviors to identify shifts in recruitment, target selection, and operations; Identify and map threat actor footprints via domain registrations, SSL certificates, and passive DNS; Collaborate with Detection Engineering to translate findings into hunting logic; Build and automate scrapers, monitors, and data-visualization tools.
Seniority
Senior, hands-on IC