Threat Intelligence Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Threat Intelligence Engineer (Cybersecurity): Operationalizing cyber threat intelligence and building engineering solutions for security systems with an accent on threat feed management, IOC analysis, and security platform integrations. Focus on automating indicator ingestion, engineering detection and prevention mechanisms, and producing actionable intelligence for active threats.
Location: Austin, Texas, United States
Company
is a publicly traded interactive entertainment company developing and publishing console, PC, and mobile games through Rockstar Games, 2K, and Zynga.
What you will do
- Operate the cyber threat intelligence program by managing threat feeds, parsing indicators of compromise, and maintaining data quality.
- Analyze emerging threats and adversary tactics, techniques, and procedures to support detection and prevention engineering.
- Ingest and operationalize threat intelligence across SIEM, EDR, firewall, and related security platforms.
- Build and maintain APIs, scripts, and playbooks for automated indicator ingestion, correlation, and dissemination.
- Support the deployment, configuration, maintenance, and tuning of threat intelligence platforms and security engineering tools.
- Produce intelligence alerts, technical briefs, and tactical reports for security and technology teams.
Requirements
- 2–4 years of cybersecurity experience, including 1–2 years in threat intelligence, security engineering, or security operations.
- Understanding of network fundamentals, operating system internals, attack vectors, and the cyber threat landscape.
- Experience with APIs, JSON, XML, STIX/TAXII, and systems integration.
- Ability to analyze open-source intelligence, technical reports, and internal logs to identify malicious activity.
- Familiarity with MITRE ATT&CK and the Cyber Kill Chain.
- Hands-on experience with SIEM systems, threat intelligence platforms, or EDR solutions, plus strong written and verbal communication skills.
Nice to have
- Proficiency with Python, PowerShell, or Bash for automation and analysis.
- Relevant certifications such as Security+, CySA+, GSEC, or GCTI.
- Experience securing and monitoring AWS, Azure, or GCP environments.
- Basic knowledge of malware analysis or reverse engineering.
Culture & Benefits
- Creative, innovative, collaborative, and growth-oriented work environment.
- Medical, dental, and vision coverage, including HSA and FSA options.
- 401(k) with company match, employee stock purchase plan, commuter benefits, and wellness programs.
- Learning and development opportunities, charitable giving match, fitness allowance, and employee discounts.
- Game events, company socials, team challenges, free games, and stocked pantries.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →