Threat Researcher

3 weeks, 6 days ago
Full-time
Senior
Data Science and Analytics
GreyNoise

GreyNoise

GreyNoise provides cybersecurity solutions to help SOC teams identify and prioritize relevant threats by analyzing internet noise, leading to increased efficiency and improved security posture.

Internet Software & Services
51-250
Founded 2017
$26M raised

Description

  • Conduct hypothesis- and lead-driven hunting across first-party data and telemetry to identify novel malicious activity and campaigns.
  • Cluster, track, attribute, research, and disrupt malicious cyber threats.
  • Develop and integrate intelligence sources, data, tools, systems, and tradecraft to build comprehensive threat pictures.
  • Produce and share actionable threat intelligence with customers and the public.

Requirements

  • Deep understanding of computer networking fundamentals and protocols.
  • Advanced ability to analyze network traffic, including full PCAP at macro and packet levels.
  • Expertise with offensive tooling, tradecraft, and exploitation methods targeting network edge devices.
  • Experience conducting open-source and commercial intelligence research.
  • Experience with hardware and embedded systems.
  • Experience using query languages such as SQL.
  • Experience creating and tuning detection rules using tools such as Suricata and YARA.
  • Experience with binary analysis and reverse engineering.
  • Experience with cyber threat intelligence frameworks and analytical tradecraft.
  • Experience using graph-based threat analysis tools such as Synapse.
  • Experience applying AI, including prompt engineering and harness engineering.
  • Experience presenting at relevant security or intelligence conferences.
  • US work authorization is required; US-based roles are fully remote within the United States.

Benefits

  • Equity in a high-growth, Series A startup.
  • 100% employer-covered health, dental, vision, and life insurance.
  • 6% 401(k) employer match, fully vested from day one.
  • Flexible paid time off, with a recommended minimum of 120 hours annually.
  • Remote-first work culture with optional attendance at the Washington, DC-area headquarters.
  • Apple Mac laptop and $500 equipment-accessories stipend.
  • Four months of paid parental leave, plus two months of optional unpaid leave.
  • $1,500 annual professional development budget.
  • Company offsites and monthly local team events.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Middle Information Security Access Specialist

GR8 Tech 251-1K IT Services

GR8_TECH is hiring an IAM and access management professional to secure and automate employee access across its global B2B iGaming technology organization.

Active Directory AWS Azure
1 day ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by handling fraud and insider-threat cases from initial signal through resolution, protecting the company and its customers.

Python SIEM SQL
1 day ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by resolving fraud and insider-threat cases and protecting the company and its customers.

Python SIEM SQL
1 day ago

Cyber Threat Intelligence Analyst

Toyota Tsusho Systems 51-250 IT Services

Toyota Tsusho Systems US, Inc., a Toyota group technology and mobility company, is hiring a CTI Analyst to conduct cyber threat intelligence operations, malware and TTP research, and supporting engineering that strengthens global security defenses.

Cybersecurity
2 days ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers