
Principal Cyber Threat Intelligence Analyst
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in California.
• Monitor and assess threat intelligence sources to identify new threats and tactics.
• Gather, process, and distribute timely, actionable intelligence.
• Analyze malicious campaigns, threat actors, and unidentified activities.
• Build relationships with external organizations to enhance information sharing.
• Identify gaps in detection and collection, and assist in implementing solutions.
• Create intelligence reports and technical briefings for diverse audiences.
• Collaborate with incident responders, threat emulation engineers, and developers.
• Present complex technical subjects to senior management, stakeholders, and peers.
• Provide subject matter expertise for strategic cybersecurity projects and initiatives.
• Develop security solutions for medium to highly complex information security challenges.
• Assist in incident root-cause analysis and the remediation of control gaps or failures.
• Escalate issues with details on severity, exposure, and action items.
• Mentor junior analysts.
• Maintain expertise in information security and support business lines in developing secure solutions.
• Identify, evaluate, manage, monitor, and report on risks.
• Perform other assigned duties.
• Bachelor’s Degree in Computer Science, Information Systems, or a related field, or equivalent relevant experience.
• 5 to 10 years of experience in analyzing and investigating cybersecurity threats and related incidents.
• Familiarity with the current threat landscape.
• Strong understanding of Cyber Threat Intelligence principles, including IOC types, indicator pivoting, and the strength of indicator attribution.
• Capability to research and operationalize emerging AI technologies to counter AI-enabled adversary techniques and enhance defensive measures.
• Ability to formulate hypotheses from research, validate them using data, and effectively communicate findings.
• Excellent interpersonal, organizational, writing, communication, and briefing skills.
• Enthusiasm for analyzing internal and open-source data for threat information.
• This position is not available for immigration sponsorship.
• Nice to have: experience working remotely with geographically distributed teams.
• Nice to have: expertise in network and host malware detection engineering.
• Nice to have: skills in YARA, infrastructure tracking, reverse engineering, and indicator pivoting.
• Nice to have: experience in tracking apex cyber actors and familiarity with their TTPs and attribution characteristics.
• Nice to have: experience with scripting languages for automation purposes.
• Nice to have: involvement in the information security community through blogs, published papers, or conference presentations.
• Comprehensive benefits package that supports physical, financial, emotional, and social well-being.
• Incentive compensation plan based on company performance, line of business, and/or individual contributions.
• Commitment to equal employment opportunity and an inclusive culture.
Everstream Analytics
NinjaOne
Kodex
Muck Rack
Get handpicked remote jobs straight to your inbox weekly.