TL;DR
Threat Intelligence Researcher (Cloud): Identifying, analyzing, and tracking advanced state-backed and financially motivated attackers targeting cloud ecosystems with an accent on hunting through data sources and leveraging open/closed-data for infrastructure and malware tracking. Focus on investigating and attributing incidents, campaigns, and threat actors to understand motivations and communicate novel findings.
Location: Remote (USA). Applicants must have the legal right to work in the US without visa sponsorship.
Salary: $160,000—$220,000 USD annual base salary
Company
hirify.global is the fastest-growing startup reinventing cloud security, empowering businesses to thrive in the cloud, and is trusted by over 50% of the Fortune 100.
What you will do
- Identify, analyze, and track advanced state-backed and financially motivated attackers targeting cloud ecosystems.
- Hunt through a wide range of data sources to identify malicious campaigns targeting customers.
- Leverage open and closed-data to track the infrastructure and malware used by advanced actors.
- Investigate and attribute incidents, campaigns, and threat actors to understand their motivations.
- Communicate novel findings to multiple audiences, including customers and the public.
Requirements
- 5+ years of experience in security or threat research, with a proven track record of tracking sophisticated threat actors.
- Ability to find novel and durable ways of identifying and tracking threat actors across multiple data sets.
- Experience working with large-scale telemetry, especially infrastructure hunting and by pivoting through query languages and scripting.
- Familiarity with malware analysis and using YARA to hunt for malware.
- Willingness to take on multiple roles to build out actor tracking.
Nice to have
- Knowledge of major cloud and identity providers (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
- Experience building tools to exploit data sources in a repeatable and scalable manner.
- Track record of public communication of novel and newsworthy findings.
- Background in incident response, threat intelligence, or threat hunting.
Culture & Benefits
- Competitive benefits package including medical, dental, and vision insurance.
- Financial benefits like a 401(k) Retirement Savings Plan with employer match, and disability/life insurance.
- Flexible paid time off plus 11 paid holidays.
- Paid leave programs including parental, pregnancy health, medical, and bereavement leave.
- Home Office Setup and Monthly Connectivity reimbursements.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →