Counter-Threat Intelligence Engineer
Core
Engineer who combines threat intelligence, ethical hacking, and security engineering to identify, validate, and counter cyber threats impacting learners, educators, and business operations.
Role type
Senior IC counter-threat intelligence engineer (offensive security & detection)
Builds
Actionable defenses, detection logic, threat hunting hypotheses, and remediation strategies for endpoints, cloud, applications, and identity platforms
Domain
Cybersecurity, threat intelligence, ethical hacking, adversary emulation
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat intelligence analysis, ethical hacking, adversary emulation, detection engineering, incident response, vulnerability management, risk assessment, technical reporting, cross-functional collaboration
Preferred skills
Education technology experience, SaaS/cloud-first environments, threat hunting content creation, Sigma/YARA rules, KQL/SPL queries, detection-as-code, automation scripting (Python/PowerShell/Bash), compliance frameworks (ISO 27001/SOC 2/NIST)
Technologies
SIEM, XDR, EDR, vulnerability scanners, threat intelligence platforms, cloud security tools, identity logs, endpoint telemetry, network telemetry, ticketing/workflow platforms
Responsibilities
Collect and operationalize threat intelligence from internal and external sources; perform authorized ethical hacking and adversary emulation to validate exposures; partner with Security Operations to tune detections and response workflows; support Continuous Threat Exposure Management by scoping assets and prioritizing findings; produce actionable threat intelligence reports and executive briefings; contribute to incident response investigations with threat context and malware analysis; maintain awareness of emerging threat actor tradecraft and AI/automation usage in attacks
Seniority
Senior, hands-on IC