Назад
обновлено 7 часов назад

Security Engineer - Threat Intel

320 000 - 405 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer - Threat Intel (Cybersecurity/AI): Building threat intelligence tooling, automated indicator pipelines, and durable detections for a frontier AI lab with an accent on nation-state threats, malware analysis, and cloud security. Focus on developing intelligence-driven hunts, translating adversary research into detection logic, and operationalizing findings across endpoint, cloud, identity, and SaaS telemetry.

Location: New York City, NY; San Francisco, CA; or Washington, DC.

Annual salary: $320,000–$405,000 USD

Company

Anthropic develops reliable, interpretable, and steerable AI systems intended to be safe and beneficial for users and society.

What you will do

  • Research, track, and report on threat actors and campaigns targeting AI labs, cloud infrastructure, and the technology sector.
  • Build automated tooling and data pipelines that collect, enrich, correlate, and operationalize indicators of compromise.
  • Execute intelligence-driven threat hunts across endpoint, cloud, identity, and SaaS telemetry, turning findings into durable detections.
  • Analyze malware, phishing infrastructure, and attacker tooling to extract indicators, TTPs, and attribution signals.
  • Partner with Detection Engineering and Incident Response to create detection rules, hunting hypotheses, and incident context.
  • Curate external intelligence and maintain information-sharing relationships with peer companies, ISACs, and government partners.

Requirements

  • 5+ years of hands-on experience in cyber threat intelligence, threat hunting, or intrusion analysis against sophisticated adversaries.
  • Deep knowledge of nation-state or advanced criminal threat actors, including their tooling, infrastructure, tradecraft, and targeting.
  • Production-quality Python or similar programming experience, including automation and data pipelines.
  • Experience with malware analysis, passive DNS, certificate pivoting, NetFlow, and log analysis.
  • Experience authoring detection logic with YARA, Sigma, Snort/Suricata, or SIEM-native queries.
  • Bachelor’s degree or equivalent education, training, or professional experience in a relevant field.

Nice to have

  • Experience defending AWS/GCP, Kubernetes, ML infrastructure, developer tooling, or software supply chains.
  • Experience applying LLMs or other AI tooling to intelligence collection, enrichment, and analysis.
  • Public research, conference talks, or open-source contributions in cyber threat intelligence.

Culture & Benefits

  • Collaborative work across research, engineering, policy, and business teams.
  • Flexible working hours, generous vacation and parental leave, and competitive benefits.
  • Optional equity donation matching and office-based collaboration spaces.
  • Visa sponsorship is available, subject to role and candidate eligibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →