Назад
Company hidden
5 дней назад

Senior Threat Intelligence Analyst (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Threat Intelligence Analyst (Cybersecurity): Tracking adversaries targeting the identity verification ecosystem and turning intelligence into operational decisions with an accent on deep and dark web collection, fraud intelligence, and finished assessments. Focus on building detection and enrichment tooling, applying MITRE ATT&CK and the Diamond Model, and translating ambiguous threat activity into actions for engineers, executives, and partners.

Location: On-site five days per week in McLean, VA or Mountain View, CA, United States

Company

hirify.global provides a digital identity wallet and identity verification platform used by consumers, government agencies, healthcare organizations, and brands.

What you will do

  • Own end-to-end intelligence coverage for threat actors, fraud typologies, and ecosystems targeting hirify.global and its partners.
  • Set intelligence requirements, define collection strategies, identify coverage gaps, and conduct technical collection across deep and dark web forums, illicit marketplaces, encrypted messaging platforms, and closed communities.
  • Hunt for emerging threat activity, tooling, and tactics across internal telemetry and external sources.
  • Produce finished intelligence assessments with clear judgments, confidence levels, assumptions, and recommendations for technical, executive, government, and partner audiences.
  • Translate intelligence into detections, fraud signals, blocklists, enrichment, and platform data in collaboration with detection engineering, data science, and product teams.
  • Improve analytic tradecraft and tooling, mentor analysts, and brief leadership, partners, law enforcement, and information-sharing communities.

Requirements

  • 5+ years of experience in threat intelligence, cyber threat hunting, fraud intelligence, or a closely related discipline, including finished intelligence for decision-makers.
  • 3+ years of hands-on deep and dark web collection involving illicit marketplaces and encrypted communication platforms, with strong tradecraft and operational security practices.
  • Applied experience using MITRE ATT&CK, the Diamond Model, the kill chain, and structured analytic techniques.
  • Ability to turn ambiguous, fragmentary, and conflicting information into clear assessments with appropriately expressed confidence.
  • Exceptional written and verbal communication for both technical and executive audiences, plus the ability to work independently and influence stakeholders outside security.
  • Ability to work on-site five days per week in McLean, Virginia, or Mountain View, California.

Nice to have

  • Experience with identity fraud, account takeover, synthetic identity, document or biometric fraud, or fraud-as-a-service ecosystems.
  • Strong SQL skills and scripting in Python or a similar language for collection, enrichment, and automation.
  • Experience deploying intelligence-driven detections or fraud controls with engineering and data science teams.
  • Analyst mentoring or leadership of intelligence projects, relevant certifications, or proficiency in a foreign language used by threat actor communities.
  • Experience in regulated or government-facing environments or supporting external partners with intelligence products.

Culture & Benefits

  • Full-time, in-office work culture with roles generally based on-site five days per week.
  • Work supporting secure digital identity and identity verification at government, healthcare, and commercial scale.
  • Commitment to equal employment opportunity, dignity, respect, and reasonable accommodation.
  • hirify.global participates in E-Verify.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →