Technical Threat Investigator, Threat Intel Engineering
Core
Conduct deep, end-to-end investigations into sophisticated threat actors and model misuse to proactively identify malicious activity and drive detection, disruption, and safety improvements.
Role type
Senior IC Technical Threat Investigator (Threat Intel Engineering)
Builds
Lightweight tooling, scripts, automations, and agentic workflows to scale investigative throughput and reduce manual effort.
Domain
Cybersecurity / Threat Intelligence / AI Safety
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat intelligence, incident response, offensive security, adversary behavior modeling, infrastructure analysis, OSINT, telemetry analysis, scripting, automation, AI-assisted workflows
Preferred skills
Experience investigating model misuse, platform abuse, and adversarial activity in complex environments
Technologies
OSINT, telemetry systems, vendor data, in-house safety systems
Responsibilities
Conduct deep, end-to-end investigations into sophisticated threat actors interacting with models and products. Model attacker behavior and anticipate misuse patterns. Leverage internal telemetry and OSINT to produce high-confidence findings. Translate findings into concrete improvements across detection and safety pipelines. Build tooling and automations to scale investigative throughput. Prototype solutions in emerging problem spaces. Partner with Security, Safety Systems, and Product Policy teams.
Seniority
Senior, hands-on IC