Principal Threat Intelligence Analyst, Recorded Future

Salary not provided
Python
macOS
Java
iOS
Go
Android
Excel
C++
C
ELK
Windows
Senior and Expert level
Boston
Recorded Future

Threat intelligence platform

Be an early applicant

Recorded Future

Threat intelligence platform

1001+ employees

B2BSecurityBig dataAnalyticsSaaSCyber SecurityData AnalysisFraud

Be an early applicant

Salary not provided
Python
macOS
Java
iOS
Go
Android
Excel
C++
C
ELK
Windows
Senior and Expert level
Boston

1001+ employees

B2BSecurityBig dataAnalyticsSaaSCyber SecurityData AnalysisFraud

Company mission

To empower customers with real-time threat intelligence so that they can defend their organizations against threats at the speed and scale of the internet.

Role

Who you are

  • BA/BS or equivalent experience in Computer Science, Computer Engineering, Information Security, Security Studies, Intelligence, or a related field
  • 6+ years of experience in Information Security and/or Threat Intelligence
  • Demonstrable experience conducting technical threat analysis and research
  • Demonstrable experience with structured analytical techniques, the intelligence cycle, and intelligence writing techniques and methodologies
  • Proven expertise in clustering and tracking multiple state-sponsored activity groups using techniques such as the Diamond Model of Intrusion Analysis
  • Scripting capabilities in Python (preferred), Go, C, C++, or Java
  • Familiarity with platforms & software such as Maltego, Jupyter Notebook, the ELK Stack, and Excel, among other common cyber threat intelligence research platforms
  • In-depth knowledge of TCP/IP and other networking protocols and datasets relevant to intrusion and network infrastructure analysis
  • Experience developing intelligence requirements
  • Experience working directly with clients
  • Experience with open-source intelligence-gathering tools and techniques
  • Excellent written and verbal communication; ability to convey complex technical and non-technical concepts
  • Excellent interpersonal and teamwork skills; ability to work with globally distributed team members

Desirable

  • MA/MS or equivalent experience in Computer Science, Computer Engineering, Information Security, or a related field
  • Experience writing network and endpoint detection signatures
  • Experience with Windows, iOS, Android, MacOS or malware analysis
  • Proficiency in a high-priority foreign language: preference for Chinese, Russian, Farsi, or Korean

What the job involves

  • As an analyst for Insikt Group’s Strategic and Persistent Threats (SPT) team, you will contribute to APT campaign tracking initiatives, support our Analyst on Demand service, mentor your colleagues on all things intrusion analysis, and represent Insikt Group’s research externally
  • This role supports proactive research and monitoring efforts into threat actor infrastructure, tools, and TTPs, as well as client-driven finished intelligence reports and requirements
  • Your research will be largely focused on state-sponsored threats emanating from China
  • Synthesize multiple technical datasets to derive novel insights and reporting related to state-sponsored APT activity tied to China
  • Establish methods of tracking APT campaigns using a combination of network, intrusion, and malware analysis skills
  • Support the fulfillment of client priority intelligence requirements via Recorded Future’s Analyst on Demand service
  • Mentor your colleagues on intrusion analysis and threat intelligence best practices
  • Identify new datasets to ingest and propose new analytics that can be developed to improve and/or automate portions of the intelligence cycle
  • Serve as a subject matter expert on Chinese state-sponsored threat activity
  • Work with the Advanced Reversing, Malware, Operations, and Reconnaissance team to identify, prioritize, and deploy various detection mechanisms for command & control infrastructure, malware families, and threat actor groups of interest
  • Stay on top of developments within the APT threat landscape and track key developments by following publications, blogs, and mailing lists
  • Represent the SPT team’s research (emphasis on China state-sponsored research) externally to journalists and media (anonymously or otherwise) in collaboration with Recorded Future’s public relations team
  • Work with engineering and data science teams to ensure relevant data and analytics are correctly designed, developed, and deployed in the Recorded Future platform

Our take

Cybersecurity threats are increasingly urgent for businesses, governments, and citizens worldwide, growing in both number and sophistication. Recorded Future has spent over a decade developing a solution to this problem. Its platform leverages billions of data points from across the internet, including dark web sources, state actors, and vulnerability information, to identify and anticipate cybersecurity threats.

While many cybersecurity firms are emerging due to the surging demand, Recorded Future stands out with its market-leading pedigree. Originally funded by In-Q-Tel and Google, its clients include private contractors for the US Intelligence Community, and it has produced influential reports on major cybersecurity issues.

Continuing to expand its capabilities, by adding identity intelligence, attack surface intelligence, and card fraud intelligence. Partnering with companies like Microsoft, it researches new cyber threats. To stay ahead in the evolving cybersecurity field, it must maintain this momentum, and all signs suggest it has the resources, talent, and ambition to succeed.

Freddie headshot

Freddie

Company Specialist

Insights

Top investors

Few candidates hear
back within 2 weeks

17% employee growth in 12 months

Company

Funding (last 2 of 6 rounds)

Oct 2017

$25m

SERIES E

Apr 2015

$12m

SERIES D

Total funding: $58.7m

Company benefits

  • Professional development and career advancement
  • Flexible work environment, be yourself
  • Generous vacation policy
  • Wellness programs
  • Company outings
  • Free snacks, drinks, and coffee in the office
  • Parental leave program
  • Environmentally conscious

Company HQ

Powder House Square, Somerville, MA

Leadership

Chairman at Makewave AB, Interspecrtal, and Qamcom Research and Technology, alongside being a Board Member at Vinnoca and WASP.

Previously the founder & CEO of TIBCO Software. Now a Board Member for the Hult International Business School and the Global Emancipation Network.

Salary benchmarks

We don't have enough data yet to provide salary benchmarks for this role.

Submit your salary to help other candidates with crowdsourced salary estimates.

Share this job

View 14 more jobs at Recorded Future