
Abuse Research Engineer
Posted Sep 9

Posted Sep 9
This is a fully remote position, open to applicants in United States.
• Execute proactive threat hunting and analyze adversary behavior across Stripe products.
• Develop hypotheses and engage in iterative threat hunting utilizing both internal telemetry and external data.
• Apply and enhance the FT3 taxonomy across various datasets and incidents.
• Integrate, curate, and automate threat feeds within engineering workflows.
• Translate research outcomes into threat advisories and strategic control recommendations for stakeholders in Fraud, Risk, Onboarding, and Security.
• Utilize agentic automated testing frameworks to simulate adversary TTPs, validate controls, and create regression scenarios.
• Collaborate across functions with Fraud Ops, Strategy, Risk, Onboarding, and Security teams.
• Identify product conditions that enable fraud and systematically eradicate vulnerabilities.
• A minimum of 5 years of experience in threat intelligence, threat hunting, or technical incident response within cybersecurity, product abuse, or trust domains.
• At least 5 years of experience in analyzing large, complex datasets using data analytics tools to detect anomalies, map behavioral trends, and address intricate fraud issues.
• B.S. or M.S. in Computer Science, Cybersecurity, or a related technical field, or equivalent practical experience.
• Mastery of Python and SQL, with proven experience in coding and scripting to automate workflows, create investigative tools, or query extensive data pipelines.
• Practical experience in log analysis, digital forensics, and cyber investigative methodologies.
• Excellent communication skills with the ability to convert complex technical research into actionable recommendations and advisories.
• Preferred: Knowledge of financial fraud threat actor motivations, infrastructure, and TTPs.
• Preferred: Familiarity with FT3 or MITRE ATT&CK frameworks.
• Preferred: Experience with Databricks, Trino, PySpark, Pandas, or Scikit-Learn.
• Preferred: Knowledge of Threat Intelligence Platforms, tactical threat feeds, OSINT, and breach intelligence.
• Preferred: Experience with agentic LLM tools, automated testing systems, or control validation frameworks.
• Competitive salary and performance-based incentives.
• Comprehensive health, dental, and vision insurance.
• Generous paid time off and flexible working hours.
• Opportunities for professional development and career advancement.
• Collaborative and inclusive company culture.
Anduril Industries
24-MAG
24-MAG
Get handpicked remote jobs straight to your inbox weekly.