Senior Cyber Threat Intelligence Engineer

11 hours, 12 minutes ago
Full-time
Senior
Data Science and Analytics
SoFi

SoFi

SoFi specializes in providing a comprehensive financial platform that empowers individuals to achieve their financial goals through services such as student loan refinancing, debt consolidation, home buying assistance, and investment opportunities, all...

Capital Markets
1K-5K
Founded 2011
$2900M raised

Description

  • Collect, normalize, enrich, and tag indicators of compromise from commercial vendors, open-source intelligence, and partners.
  • Operationalize threat intelligence into actionable decisions across the security control stack.
  • Assess intelligence quality and reduce noise through lifecycle management of intelligence indicators.
  • Design, develop, and maintain pipelines to ingest intelligence into the Threat Intelligence Platform (TIP).
  • Develop automation to enrich and integrate intelligence and improve TIP efficiency and scalability.
  • Build reporting capabilities to ingest and disseminate articles, vendor feeds, and threat alerts relevant to the environment.
  • Prepare actionable flash reports, threat briefings, and detailed profiles on threat actor motivations and capabilities.
  • Coordinate with the Security Operations Center, Insider Threat, Fraud Risk, and other stakeholders to prioritize alerts and mitigate emerging threats.
  • Gather stakeholder requirements to prioritize feeds and enrichments that support business needs.
  • Track threat actors, malware families, and vulnerabilities relevant to operations and align intelligence priorities to enterprise risks.

Requirements

  • Proven experience engineering solutions in cybersecurity and/or threat intelligence.
  • Hands-on experience coding in Python and ability to learn vendor-specific query languages.
  • Experience automating basic file processing, data manipulation, and data collection tasks.
  • Practical knowledge of MITRE ATT&CK, Cyber Kill Chain, or the Diamond Model of Intrusion Analysis.
  • Experience using SIEM or log management tools.
  • Ability to differentiate true and false positives, assess feed credibility, and apply intelligence to operational goals.
  • Industry-recognized threat intelligence certifications such as C|TIA, GIAC GCTI, or GIAC GCIH are preferred.
  • Experience managing intelligence feeds using STIX and TAXII is preferred.
  • Familiarity with malware analysis, reverse engineering concepts, network traffic analysis, and HTTP header analysis is preferred.

Benefits

  • Base pay range is provided for the role, with final offer determined by experience, skills, and location.
  • Access to SoFi’s comprehensive and competitive benefits package.
  • Reasonable accommodations are available for candidates with physical or mental disabilities during the application or interview process.
  • SoFi is an equal employment opportunity employer.
  • Qualified applicants with arrest and conviction records will be considered in accordance with the San Francisco Fair Chance Ordinance.
  • Remote work is not available from Hawaii or Alaska due to insurance coverage issues.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Prolific 51-250 Professional Services

Prolific is hiring a Senior Security Engineer to support security operations, cloud security, and compliance for a platform handling sensitive data at scale.

AWS CI/CD Datadog DevSecOps GCP Kubernetes Penetration Testing SIEM Terraform
10 hours, 12 minutes ago

Specialist Solutions Architect - Cloud Infrastructure & Security

Databricks 1K-5K IT Services

Databricks is seeking a Specialist Solutions Architect focused on Cloud Infrastructure and Security to help customers design, deploy, and secure Databricks environments across public cloud platforms.

Apache Spark AWS Azure Databricks Encryption GCP Hadoop Java Kafka Network Security OAuth Python SAML Scala SQL Terraform
10 hours, 12 minutes ago

Senior Security Engineer/ Security Manager (Crypto/ Web3)

Hyphen Connect 1-10 staffing & recruiting

Security Engineer role at a decentralised exchange focused on building secure, scalable on-chain trading infrastructure that combines institutional-grade systems with a simple, safe user experience.

Ansible Blockchain CI/CD DevSecOps Penetration Testing Terraform
10 hours, 57 minutes ago

Senior IT Security Engineer

Ensono 1K-5K IT Services

Ensono is hiring a Senior Information Security Engineer to design, implement, and maintain enterprise security solutions while leading incident response and supporting global cybersecurity and compliance efforts.

Carbon Black HIPAA Penetration Testing SIEM Splunk
10 hours, 57 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers