
Senior Cyber Threat Intelligence Analyst
Posted Jul 28

Posted Jul 28
This is a fully remote position, open to applicants in United States.
• Generate comprehensive cyber threat intelligence, which includes crafting actor profiles, campaign reports, IOC packages, infrastructure attributions, and producing evidence-ready analytical outputs.
• Serve as a senior analyst overseeing multiple active actors and campaigns simultaneously, enhancing quality, sharing tradecraft, and informally assisting fellow analysts through robust analytical execution.
• Spearhead intricate investigations starting from foundational indicators such as domains, IPs, hashes, aliases, or wallets, advancing to attributed actors, clusters, or overall campaign narratives.
• Integrate technical indicators with OSINT, identity signals, infrastructure patterns, and financial-rail activities to create a comprehensive understanding of adversary behavior.
• Manage extensive sets of indicators, cluster infrastructure, and transform fragmented signals into clear, actionable findings that stakeholders can utilize immediately.
• Provide timely, high-confidence intelligence products and briefings to incident responders, threat hunters, investigators, and partner-facing teams.
• Assist in evaluating new analytical tools by testing them against real workflows and identifying areas where they significantly reduce analyst workload or enhance output quality.
• Contribute to the development of improved investigation workflows, analytic standards, and repeatable methods that increase analyst productivity without compromising rigor.
• Over 5 years of experience in cyber threat intelligence, intelligence analysis, incident-driven investigations, or a closely related analytical discipline.
• Proven experience in producing finished intelligence products such as actor profiles, campaign reports, attribution assessments, or infrastructure mapping.
• Extensive knowledge of cyber investigations, infrastructure attribution, campaign analysis, and actor profiling.
• Strong instincts in OSINT, with the capability to resolve identities, aliases, and behaviors from fragmented sources.
• Ability to connect technical findings to financial infrastructures, including wallets, laundering pathways, sanctions exposure, or identity-linked leads when pertinent to the investigation.
• Excellent judgment regarding analytical confidence, evidentiary strength, and the defensibility of reports, referrals, or operational settings.
• A proven record of independently driving complex investigations, enhancing workflows, and elevating the quality of analytical work around you.
• Exceptional written and verbal communication skills, with the ability to present findings effectively to both technical and non-technical audiences.
• Comfort in a fast-paced environment where priorities may shift rapidly and ambiguity is commonplace.
• Proficiency in AI is required.
• Individual compensation is determined based on skills, qualifications, experience, and geographic location.
• Salary ranges are aligned with local market standards for the country where this position is based.
• We do not inquire about candidates' salary history at any point during the hiring process.
• This position may also qualify for participation in TRM's equity plan.
ZeroFox
Kodex
DarkTower
AlertMedia
Get handpicked remote jobs straight to your inbox weekly.