Principal Threat Researcher, Cloudflare

$193-260k

+ Equity

Python
Expert level
Remote in EU
Cloudflare

Web performance and security platform

Job no longer available

Cloudflare

Web performance and security platform

1001+ employees

B2BEnterpriseAnalyticsSaaSCyber Security

Job no longer available

$193-260k

+ Equity

Python
Expert level
Remote in EU

1001+ employees

B2BEnterpriseAnalyticsSaaSCyber Security

Company mission

Cloudflare's mission is to help build a better Internet that is bold and ambitious.

Role

Who you are

  • Strong candidates will have excellent OSINT research skills, substantial experience in Threat Intelligence (in particular, expertise in APTs), a strong technical foundation, practical knowledge of intelligence report writing, demonstrable ability to drive concurrent, interdepartmental projects to completion, and ability to work well in a group of distributed remote team members
  • Deep understanding of the cyber threat landscape and the intelligence lifecycle
  • Proven expertise in tracking and clustering multiple threat groups using techniques such as the Cyber Kill Chain or Diamond Model of Intrusion Analysis
  • Experience with open source intelligence gathering tools and techniques
  • Experience tracking and analyzing cyber campaigns utilizing structured analytical techniques involving numerous sources of threat intelligence and varied forms of threat data
  • Understanding of the latest security trends as they relate to cyber threat adversary operations and motivating factors
  • Exceptional analytical and critical thinking skills
  • Experience in network and/or host-based intrusion analysis
  • Proficiency in one of the following: Packet, and/or Metadata analysis
  • Strong knowledge of networking protocols (e.g., TCP/IP) and datasets relevant to intrusion and network infrastructure analysis
  • Experience using a comprehensive data analysis platform, with ability to recognize patterns and transform data into useful information
  • Advanced communication (written and verbal) and presentation skills, both internally to CXO level and externally to clients
  • In-depth knowledge of technical reporting and editing
  • Ability to synthesize technical information and document it, in both a technical and non-technical manner, through written, graphical and verbal representation
  • One of the following:
  • BA/BS or equivalent in Computer Science, Computer Engineering, Information Security, Computer Security, Information Systems, Intelligence, or related discipline, OR
  • Military training and experience in Cyber Intelligence, General Intelligence Studies, Security Studies, or related discipline
  • At least 10 years experience in one or more of the following:
  • Intrusion analysis
  • Cyber threat hunting
  • Cyber threat intelligence
  • Incident response
  • Network defense
  • Endpoint forensics
  • Malware analysis
  • Excellent teamwork and interpersonal skills with ability to collaborate with a globally distributed team
  • Willing and eager to share knowledge and mentor colleagues on intrusion analysis and threat intelligence best practices

Desirable

  • MA/MS or equivalent in Computer Science, Computer Engineering, Information Security, Computer Security, Information Systems, Intelligence, or related discipline
  • Expert knowledge of state-sponsored APT groups in Eastern Europe
  • Foreign language proficiency with preference for Russian
  • Reverse engineering, malware triage, or forensic analysis
  • Prior intelligence community background

What the job involves

  • Cloudflare is a system spanning the globe, on a mission to make the internet better, safer, and more powerful everyday
  • To help fulfill this mission, we are seeking a talented Principal Threat Researcher to join us in growing our Cloudforce One Organization, where you will be instrumental in building a proactive and threat intelligence-driven approach to protecting Cloudflare and its customers from sophisticated and ever-evolving global threat actors
  • This position requires an innovative, OPSEC-savvy, self-starting, and detail-oriented problem solver with a passion for identifying, tracking, and defeating sophisticated cyber threats
  • As a Principal Threat Researcher, you will monitor cyber threat activity, trends, and methodologies across multiple platforms, supporting both client requests and proactive internal research
  • You will serve a leading role in the discovery and analysis of cyber threat adversaries, their Tactics, Techniques, and Procedures (TTPs), along with applying knowledge of transnational issues and geopolitical developments to understand adversary actions and anticipate their next moves
  • Work will involve developing and maintaining sources of threat intelligence to enable analysis, as well as examine and mitigate threats in real-time, leveraging emerging technologies to develop advanced tactical and strategic countermeasures
  • You will also collaborate with engineering teams to ensure relevant data and analytics are incorporated in internal platforms to improve and/or automate threat research workflows
  • In this role, you will obtain key threat intelligence information, synthesizing both technical and non-technical datasets to derive unique insights and author timely reporting related to adversary activity
  • Reporting will range from brief descriptions of threat actors and their activity to finished intelligence products for clients and the general public
  • This will include proposing subject matter for proactive reporting on threat actor TTPs and trends, as well as leading corresponding reporting efforts
  • Additionally, Principal Threat Researchers will support priority intelligence requirements, ensuring Cloudforce One focuses resources and efforts on our clients' most relevant and crucial intelligence needs

Our take

Cloudflare is a multi-service global network that provides web security and infrastructure, DDoS mitigation services, and a content delivery network. Founded in 2009, Cloudflare has risen to become an industry giant, with around 25 million global internet properties on its network.

Cloudflare has been responsible for a number of admirable initiatives, offering free web protection to human rights groups, journalists, artists, and US election websites. This goes some way to counteracting the flak Cloudflare has received in some circles for the controversial groups and users who use its services. This chequered history, however, has not affected its over 80% market share in the content delivery network field.

This is perhaps in part because it has proven sharp at staying abreast of the rapidly morphing tech and digital space and customer demands. For example, Cloudflare is shifting to 100% renewable energy usage to create a zero-emissions internet, and in 2020 released a feature that would help users navigate data privacy regulations by selecting where their data is stored.

The cloud infrastructure market reached $53 billion in 2022. While the Big 3 (Amazon, Microsoft, and Google) own 65% of the market, that still leaves billions of dollars left for companies such as Cloudflare. Its ambitious and successful work is likely to continue being a crucial feature of the web, but in 2023, placed it in the crosshairs of hackers looking to exploit its infrastructure. The beginning of 2024 saw Cloudflare vow to bolster its security and patch vulnerabilities.

Steph headshot

Steph

Company Specialist

Insights

Led by a woman

Few candidates hear
back within 2 weeks

16% employee growth in 12 months

Company

Company benefits

  • Minimum 8 weeks of paid parental leave
  • Equal opportunity employer
  • Unlimited paid time off policy
  • Work from home opportunities
  • Medical, Dental & Vision Insurance
  • Life Insurance, Disability Insurance
  • 401(k) plans
  • Family planning and fertility program
  • Gym discounts
  • Commuter Benefits Program

Company values

  • Principled - We create our products and features with a global mindset and democratize important and innovative technologies that drive adoption of the latest standards
  • Curious - Our team is made up of pioneering innovators that approach new challenges with interest and a desire to learn
  • Transparent - We hold ourselves accountable when we make mistakes—and we do everything we can to learn from them

Company HQ

China Basin, San Francisco, CA

Founders

Lee Holloway

(Lead Engineer)

Lee started their career as an Engineer at Homewarehouse for a year before working at Unspam Technologies for 4 years. They co-created Project Honey Pot in 2004 and Cloudflare in March 2009, serving as Lead Engineer of both to present.

Michelle Zatlyn

(President & COO)

Having worked for Investor Economics and I Love Rewards for a combined 4 years, Michelle worked at Toshiba for 3 years as a Product Manager. She then co-founded Cloudflare in 2009 as COO, and has served as President since 2020. She is also a Board Member at Atlassian.

Matthew studied for an MBA at Harvard Business School before co-founding Unspam Technologies in December 2001, and Cloudflare as CEO in March 2009.

Share this job

View 113 more jobs at Cloudflare