Security Engineer, Threat Intelligence
Core
Track nation-state and advanced criminal actors targeting frontier AI infrastructure, build threat intelligence pipelines, and convert findings into operational detections for gigawatt-scale compute environments.
Role type
Senior Threat Intelligence Engineer (AI Infrastructure)
Builds
End-to-end threat intelligence program, detection pipelines, and agentic triage stacks for AI compute infrastructure
Domain
Cybersecurity / Threat Intelligence / AI Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Nation-state threat tracking, Python automation, malware analysis, detection logic authoring (YARA/Sigma/SIEM), intelligence-to-detection translation, external intelligence relationship management
Preferred skills
Defense of large-scale GPU/AI compute, LLM application for intelligence acceleration, public research in CTI
Technologies
Python, YARA, Sigma, SIEM, OT telemetry, commercial intelligence feeds
Responsibilities
Track nation-state and advanced criminal actors targeting AI infrastructure; Build and run pipelines to collect, enrich, and correlate indicators; Drive intelligence-led hunts across enterprise, cloud, and data center telemetry; Perform hands-on malware and attacker-tooling analysis; Curate inbound intelligence from commercial, open source, and government sources; Maintain external intelligence-sharing relationships (ISACs, peers, government)
Seniority
Senior, hands-on IC