Related skills
azure aws sql python siem๐ Description
- Hunt and map threat actors; translate intelligence into detections and defenses.
- Build a comprehensive Universe of Threats by tracking phishing, scams, impersonation, and fraud.
- Lead proactive threat intel lifecycle with industry partnerships and trusted authorities.
- Investigate attacker infrastructure across domains, DNS, TLS logs, cloud, and telecom.
- Coordinate threat actor takedowns with providers to disrupt operations.
- Improve intel workflows with OSINT tools, enrichment, data analysis, and case management.
๐ฏ Requirements
- 5+ years total experience; 2โ3+ years in senior threat intel, brand protection, or cyber investigations.
- Hands-on tracking of criminal ecosystems; move indicators to campaigns/actor level.
- Familiarity with DNS, domain patterns, certificate transparency, and cloud hosting abuse (AWS/GCP/Azure/VPS).
- Experience using OSINT tooling, SQL, Python, notebooks, SIEM or SOAR, OpenCTI, and case management systems.
- Ability to translate complex threats into clear business risk for technical teams.
- Strong written/verbal communication; accountable in ambiguous situations.
๐ Benefits
- Challenging, high-impact work to grow your career.
- Performance-based compensation with equity, bonuses, and 401(k) matching.
- 100% paid health insurance for employees; 90% coverage for dependents.
- Lifestyle wallet for wellness, learning, and more.
- Employer-paid life & disability insurance, fertility benefits, and mental health benefits.
- Time off: holidays, PTO, sick time, parental leave, and more.
- Exceptional office experience with catered meals, events, and workspace.
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest โ finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!