Senior Threat Intelligence Analyst
Job Description
With 1,000 employees, over $300M in sales, 1,900+ clients, and rapid year-over-year growth, Recorded Future is the world’s most advanced, and largest, intelligence company!
Senior Threat Intelligence Analyst, Malicious Infrastructure DiscoveryÂ
ARMOR, Insikt Group, Recorded Future
Washington, D.C. / Boston, MA / Remote US / London UKÂ
This Role:
Recorded Future's Insikt Group is seeking a Senior Threat Intelligence Analyst for the Malicious Infrastructure Discovery (MID) sub-team within Advanced Reversing, Malware, Operations, and Reconnaissance (ARMOR). This is a small, distributed team of experienced analysts monitoring and writing detections for malicious infrastructure. The team contributes to the Recorded Future Platform with up-to-date detections and supports our Analyst on Demand service, partners with our state-sponsored and cyber crime teams for technical support, and contributes to strategic research initiatives.
What You’ll Do:Â
- Establish methods of identifying, signaturing, and validating malicious infrastructure used by a variety of threat actors for both commodity and custom malware;
- Conduct in-depth research on novel threats, dissecting the tactics, techniques, and procedures (TTPs) employed by threat actors, and publish research findings to clients and/or Recorded Future's public blog;
- Maintain up-to-date knowledge of developments within the malware landscape and track key developments by following publications, blogs, and mailing lists
- Serve as a subject matter expert on malicious infrastructure hunting to customers and/or the public via media engagements;
- Continuously improve and optimize threat intelligence processes, tools, and methodologies to enhance the team's ability to detect and respond to emerging threats, and proactively identify opportunities for automation and efficiency gains.
- Mentor and guide analysts within the team, fostering a culture of knowledge sharing, skill development, and professional growth, ensuring the team's collective expertise is continually advancing.
- Support the fulfilment of client priority intelligence requirements via Recorded Future’s Analyst on Demand service;
What You’ll Bring (Required):
- A passion for threat hunting and threat intelligence.
- Demonstrative understanding of malicious infrastructure detection to include C2s, botnets, etc. in the context of cyber security, pivoting, network defense, and business risk.
- BA/BS or equivalent experience in Computer Science, Computer Engineering, Information Security, Security Studies, Intelligence, or a related field
- 5+ years of experience in Information Security and/or Threat Intelligence
- Demonstrable experience conducting technical threat analysis and research
- Demonstrable experience with structured analytical techniques, the intelligence cycle, and intelligence writing techniques and methodologies
- Fluency in common CTI research and data analysis platforms/tools such as the Elastic Stack (ElasticSearch, Kibana), Maltego, Shodan, Censys, DomainTools, or other similar tools/datasets
- In-depth understanding of TCP/IP and other networking protocols and network traffic analysis techniques
- Understanding of how malware authors operate, their past activities, TTPs, motivations, etc.
- Experience working directly with clients
- Excellent written and verbal communication; ability to convey complex technical and non-technical concepts in both written and verbal formats
- Practical experience using common threat intelligence analysis models such as MITRE ATT&CK, the Diamond Model, and the Cyber Kill Chain
- Excellent interpersonal and teamwork skills; ability to work with globally distributed team members
Highly Desirable Skills/Experience (not required):
- MA/MS or equivalent experience in Computer Science, Computer Engineering, Information Security, or a related field
- Scripting capabilities (Python preferred)
- Experience writing network and endpoint signature detections using Suricata, Snort, YARA, SIGMA, etc.
- Experience with Windows, iOS, Android, or MacOS malware analysis
- Experience with business risk analysis / communicating business risks to executives
#LI-remote
Why should you join Recorded Future?
Recorded Future employees (or “Futurists”), represent over 40 nationalities and embody our core values of having high standards, practicing inclusion, and acting ethically. Our dedication to empowering clients with intelligence to disrupt adversaries has earned us a 4.8-star user rating from Gartner and 8 of the top 10 Fortune 100 companies as clients.
Want more info?Â
Blog & Podcast: Learn everything you want to know (and maybe some things you’d rather not know) about the world of cyber threat intelligence
Instagram & Twitter: What’s happening at Recorded Future
The Record: The Record is a cybersecurity news publication that explores the untold stories in this rapidly changing field
Timeline: History of Recorded Future
Recognition: Check out our awards and announcements
We are committed to maintaining an environment that attracts and retains talent from a diverse range of experiences, backgrounds and lifestyles. By ensuring all feel included and respected for being unique and bringing their whole selves to work, Recorded Future is made a better place every day.
If you need any accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to our recruiting team at [email protected]Â
Recorded Future is an equal opportunity and affirmative action employer and we encourage candidates from all backgrounds to apply. Recorded Future does not discriminate based on race, religion, color, national origin, gender including pregnancy, sexual orientation, gender identity, age, marital status, veteran status, disability or any other characteristic protected by law.
Recorded Future will not discharge, discipline or in any other manner discriminate against any employee or applicant for employment because such employee or applicant has inquired about, discussed, or disclosed the compensation of the employee or applicant or another employee or applicant.
Explore More
Date Posted
12/14/2023
Views
16
Similar Jobs
Senior Business Analyst - Xpansiv
Views in the last 30 days - 0
Xpansiv promotes its role as an energy market innovator with a global platform for environmental commodities The job posting seeks a Business Analyst ...
View DetailsSenior Design Manager (Infrastructure) - Canonical
Views in the last 30 days - 0
Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...
View DetailsSenior Product Designer - Org & Security - Typeform
Views in the last 30 days - 0
This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...
View DetailsRecovery Analyst Underpayments - Trend Health Partners
Views in the last 30 days - 0
TREND Health Partners seeks an Underpayment Recovery Analyst to optimize client reimbursement through collaboration and detailed claim analysis The ro...
View DetailsSenior Specialist Senior Accountant Shared Financial Services - Make-A-Wish America
Views in the last 30 days - 0
The text describes Make a Wish Foundations mission to grant childrens wishes and their community efforts It outlines job positions with remotehybrid o...
View DetailsFraud Investigation Analyst - Vonage
Views in the last 30 days - 0
The text describes the Trust Safety Teams mission to protect Vonages services from fraud and abuse detailing their proactive monitoring fraud detecti...
View Details