
Counter-Threat Intelligence Engineer
Posted Aug 26

Posted Aug 26
This is a fully remote position, open to applicants in United States.
β’ Gather, assess, and implement strategic, tactical, and operational threat intelligence from reliable internal and external sources.
β’ Conduct authorized adversary-focused research and ethical hacking to confirm vulnerabilities, identify attack pathways, and suggest enhancements for defense across endpoints, cloud services, applications, identity platforms, networks, and third-party integrations.
β’ Collaborate with Security Operations to develop, fine-tune, and authenticate detections, playbooks, threat hunting hypotheses, and response workflows across data log pipelines, SIEM, XDR, EDR, vulnerability management, and associated security tools.
β’ Assist in Continuous Threat Exposure Management by defining assets, identifying vulnerabilities, prioritizing findings based on business risk, validating exploitability, and coordinating remediation efforts.
β’ Generate actionable threat intelligence reports, briefings, and technical recommendations for security analysts and senior leaders.
β’ Contribute to incident response investigations by enriching threat context, analyzing malware and phishing, conducting infrastructure research, reconstructing attack timelines, and identifying lessons learned.
β’ Stay updated on threat actor tactics, vulnerability exploitation trends, cloud and identity attacks, risks to the education sector, data protection concerns, and the use of automation and artificial intelligence by attackers.
β’ Advise on defensive priorities, improvements in detection, considerations for risk acceptance, and escalation procedures in line with company policies, standards, and governance expectations.
β’ Work in partnership with Security Operations, IT Operations, Risk, Legal Compliance, Product, Engineering, and business stakeholders to minimize the attack surface and reduce measurable risk.
β’ A minimum of 5 years of progressive experience in cybersecurity.
β’ At least 2 years in threat intelligence, ethical hacking, penetration testing, detection engineering, security operations, incident response, vulnerability management, or a closely related position.
β’ Certified Ethical Hacker (CEH) certification is highly preferred; alternative certifications or equivalent practical experience may be accepted, including OSCP, GPEN, CompTIA PenTest+, CPENT, eJPT, GCTI, and CTIA.
β’ Proficient understanding of the cyber kill chain, MITRE ATT&CK, common attack methodologies, malware and phishing behaviors, cloud and identity threats, vulnerability exploitation, attacker infrastructure, and defensive measures.
β’ Practical experience with SIEM, XDR/EDR, vulnerability scanners, threat intelligence platforms, cloud security tools, identity logs, endpoint telemetry, network telemetry, and ticketing/workflow systems.
β’ Capability to produce clear summaries of threat intelligence, detection recommendations, executive briefings, remediation guidance, and technical documentation.
β’ Experience in conducting authorized security testing, adversary emulation, attack surface analysis, detection validation, or threat hunts.
β’ Bachelorβs degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related domain is preferred; relevant professional experience and certifications may be taken into account.
β’ High judgment, strong ethics, discretion with sensitive information, a collaborative communication style, and a commitment to safeguarding confidential, proprietary, student, customer, associate, and business data.
β’ Preferred: experience in educational technology, SaaS, cloud-first, remote-first, or regulated settings.
β’ Preferred: familiarity with building threat hunting content, Sigma/YARA rules, KQL/SPL queries, detection-as-code, or automation for enrichment and triage.
β’ Knowledge of Python, PowerShell, Bash, APIs, or SOAR-style workflows.
β’ Familiarity with data privacy, secure software development, third-party risk, ISO 27001, SOC 2, NIST CSF, or NIST SP 800-series guidelines.
β’ A dependable cable or fiber-optic broadband internet connection with a minimum speed of 10 Mbps download and 5 Mbps upload is required for remote work.
β’ Ability to actively engage in video interviews and ongoing virtual meetings with the camera on.
β’ Must refrain from using note-taking tools, reference materials, or AI-powered tools during interviews or selection processes without prior written consent, subject to accommodation exceptions.
β’ A remote-first work environment that offers flexibility and fosters a balance between work and personal life.
β’ Reimbursement for home or remote office setup costs.
β’ Support for reliable internet requirements for remote work (minimum 10 Mbps download and 5 Mbps upload).
Canadian Solar Inc.
Canadian Solar Inc.
TOPPAN Group
Canadian Solar Inc.
Get handpicked remote jobs straight to your inbox weekly.