Senior Security Researcher
Core
Providing threat intelligence support, attribution, and actor modeling for proactive security research and reactive incident response engagements.
Role type
Senior Security Researcher (Threat Intelligence & Attribution)
Builds
Actionable threat intelligence, attribution reports, and customer briefings on attacker activity.
Domain
Cybersecurity, Threat Intelligence, Adversary TTP Analysis
Required skills
Adversary attribution and modeling, Diamond Model application, TTP characterization, Log analysis (KQL/Kusto, SQL), SIEM/Cloud/Endpoint telemetry analysis, Incident response support, Malware triage, Automation/Data science/AI tooling for triage
Preferred skills
Detection engineering, Hunting query development, Cloud and identity-based intrusion analysis (token theft, OAuth abuse), SaaS-native tradecraft
Technologies
KQL, Kusto, SQL, SIEM, Cloud telemetry, Identity telemetry, Endpoint telemetry
Responsibilities
Ingest, model, and document intelligence collected during engagements; Deliver threat intelligence briefings to external customers and internal stakeholders; Support notifications regarding imminent or ongoing attacker activity; Characterize adversary infrastructure and operational campaigns; Produce actionable intelligence that changes investigation outcomes or hardens networks.
Seniority
Senior, hands-on IC