Назад
Company hidden
обновлено 2 дня назад

Senior Threat Intelligence Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Threat Intelligence Engineer (Cybersecurity): Building threat intelligence, machine learning detection lifecycles, IOC/IOA pipelines, and SOAR automation for Cloudflare’s security operations with an accent on threat actor analysis, security tool integration, and actionable intelligence. Focus on engineering automated defenses, contextualizing sophisticated cyber threats, and reducing mean time to detect and respond.

Location: Hybrid in Austin, United States. An in-person interview at a hirify.global office or hub may be required at the offer stage.

Company

hirify.global operates a large global network that protects and accelerates Internet applications for millions of websites and Internet properties.

What you will do

  • Collect and analyze threat intelligence from OSINT, commercial feeds, the dark web, and internal security events.
  • Design and maintain machine learning detection use cases across data ingestion, training, deployment, and inference.
  • Profile threat actors and map their tactics, techniques, and procedures using MITRE ATT&CK.
  • Engineer IOC and IOA ingestion, enrichment, correlation, and contextualization in security platforms.
  • Build SOAR automation workflows and playbooks for incident triage, alert enrichment, vulnerability management, and threat response.
  • Integrate SIEM, EDR, cloud security, vulnerability scanning, and threat intelligence tools through APIs and Python scripting.

Requirements

  • 4+ years of hands-on experience in security engineering, cyber threat intelligence, or security automation.
  • Strong proficiency in Python or another scripting/programming language for automation.
  • Deep understanding of the cyber kill chain, threat actor TTPs, attack vectors, networking protocols, and operating system internals.
  • Experience designing SOAR playbooks, integrating security tools through APIs, and working with threat intelligence platforms and feeds.
  • Familiarity with security services and automation in AWS, Azure, or GCP.
  • Experience with threat hunting, vulnerability impact analysis, malware analysis, reverse engineering, or Infrastructure-as-Code tools such as Terraform.

Culture & Benefits

  • Equity plan participation is available for the role.
  • United States employees may receive medical, dental, vision, flexible spending, commuter, family-forming, mental health, and travel medical benefits.
  • Financial benefits include disability, life and accident insurance, a 401(k) plan, and employee stock participation.
  • Flexible paid time off covers vacation and sick leave, with additional parental, pregnancy health, medical, and bereavement leave programs.
  • The role contributes to protecting the free and open Internet through security products and initiatives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →