обновлено 2 дня назад
Senior Threat Intelligence Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Threat Intelligence Engineer (Cybersecurity): Building threat intelligence, machine learning detection lifecycles, IOC/IOA pipelines, and SOAR automation for Cloudflare’s security operations with an accent on threat actor analysis, security tool integration, and actionable intelligence. Focus on engineering automated defenses, contextualizing sophisticated cyber threats, and reducing mean time to detect and respond.
Location: Hybrid in Austin, United States. An in-person interview at a office or hub may be required at the offer stage.
Company
operates a large global network that protects and accelerates Internet applications for millions of websites and Internet properties.
What you will do
- Collect and analyze threat intelligence from OSINT, commercial feeds, the dark web, and internal security events.
- Design and maintain machine learning detection use cases across data ingestion, training, deployment, and inference.
- Profile threat actors and map their tactics, techniques, and procedures using MITRE ATT&CK.
- Engineer IOC and IOA ingestion, enrichment, correlation, and contextualization in security platforms.
- Build SOAR automation workflows and playbooks for incident triage, alert enrichment, vulnerability management, and threat response.
- Integrate SIEM, EDR, cloud security, vulnerability scanning, and threat intelligence tools through APIs and Python scripting.
Requirements
- 4+ years of hands-on experience in security engineering, cyber threat intelligence, or security automation.
- Strong proficiency in Python or another scripting/programming language for automation.
- Deep understanding of the cyber kill chain, threat actor TTPs, attack vectors, networking protocols, and operating system internals.
- Experience designing SOAR playbooks, integrating security tools through APIs, and working with threat intelligence platforms and feeds.
- Familiarity with security services and automation in AWS, Azure, or GCP.
- Experience with threat hunting, vulnerability impact analysis, malware analysis, reverse engineering, or Infrastructure-as-Code tools such as Terraform.
Culture & Benefits
- Equity plan participation is available for the role.
- United States employees may receive medical, dental, vision, flexible spending, commuter, family-forming, mental health, and travel medical benefits.
- Financial benefits include disability, life and accident insurance, a 401(k) plan, and employee stock participation.
- Flexible paid time off covers vacation and sick leave, with additional parental, pregnancy health, medical, and bereavement leave programs.
- The role contributes to protecting the free and open Internet through security products and initiatives.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Security Engineer, Public Sector
164 000 - 342 000$
5 дней назад
Security Engineer, Detection & Response (Cybersecurity)
237 600 - 297 000$
18 часов назад
Artificial Intelligence Security Engineer
80 000 - 105 000$
Synthesia
4 дня назад
Security Engineer (AI)
150 000 - 200 000$
5 дней назад
Security Engineer (AI)
105 000 - 123 000$
1 день назад
Staff Security Engineer (Cloud Detection & Response)
189 000 - 303 000$