Job Closed
This listing is no longer active.
The endpoint to cloud security company purpose-built for the intersection of enterprise and personal data.
Staff Threat Intelligence Researcher
Location
Alabama + 28 moreAll locations: Alabama | Florida | Idaho | Iowa | Kansas | Kentucky | Louisiana | Maine | Montana | Nebraska | New Hampshire | New Mexico | North Carolina | North Dakota | Ohio | Oklahoma | Michigan | Minnesota | Mississippi | Missouri | South Carolina | South Dakota | Tennessee | Utah | Vermont | Virginia | West Virginia | Wisconsin | Wyoming
Posted
88 days ago
Salary
$130K - $149K / year
Seniority
Lead
Job Description
Staff Threat Intelligence Researcher
Lookout
• Identify, analyze and track advanced nation state and financially motivated threat actors and their tactics, techniques, and procedures (TTPs). • Develop strategies to hunt mobile threats targeting enterprises and individuals. • Reverse-engineer and analyze capabilities of mobile malware. • Investigate adversary command-and-control and phishing infrastructure. • Conduct independent research and report findings to Threat Intelligence customers. • Mine internal and external data sources to identify new campaigns, malware families, and malicious actors. • Devise and implement new detection rules and develop innovative and efficient ways to expand and finetune coverage. • Prepare and deliver public media reports and present findings at conferences. • Participate in activities involving customers, prospects, and partners.
Job Requirements
- Experience in threat hunting across multiple datasets, security tools such as VirusTotal, Validin, and Shodan and leveraging big data technologies (e.g., Lucene, ElasticSearch, AWS Athena).
- Experience in reverse engineering software (mobile app reversing preferred).
- Ability to articulate technical findings both in written reports and presentations.
- Experience using some of the following tools: JEB, IDA Pro, Ghidra, Hopper, Frida, Wireshark, DirBuster.
- Ability to read code in Java and C; ARM Assembly, ObjectiveC and Swift is a bonus.
- Experience in conducting OSINT investigations.
- Ability to create research tools in Python.
- Experience with threat intelligence file types, tools and terminology such as MITRE ATT&CK, STIX, YARA, MISP, OpenCTI and the Intelligence Cycle.
- Interest in geopolitical dynamics and the ability to apply that context to inform intelligence analysis and threat hunting activities.
- Curiosity and a strong drive to understand how both state and criminal actors operate.
Related Guides
Related Categories
Related Job Pages
More Threat Intelligence Specialist Jobs
Staff Threat Intelligence Researcher
Lookout IncLookout, Inc. is a globally recognized cybersecurity leader delivering advanced protection for the most vulnerable element of any enterprise security strategy — human error and manipulation. Cloud-native by design, the Lookout platform offers rapid, scalable deployment and simplified security operations, defending the frontline of human-centric attacks—the mobile device. Learn more at www.lookout.com and follow us on the Lookout Blog , LinkedIn , and X .
Please note that for this role, we are only considering residents of: AL, AR, FL, ID, IN, IA, KS, KY, LA, ME, MI, MN, MS, MO, MT, NE, NH, NM, NC, ND, OH, OK, SC, SD, TN, UT, VT, WV, WI, and WY. Lookout, Inc. is the endpoint to cloud security company purpose-built for the intersection of enterprise and personal data. We safeguard data across devices, apps, networks and clouds through our unified, cloud-native security platform — a solution that's as fluid and flexible as the modern digital world. By giving organizations and individuals greater control over their data, we enable them to unleash its value and thrive. Lookout is trusted by enterprises of all sizes, government agencies and millions of consumers to protect sensitive data, enabling them to live, work and connect — freely and safely. To learn more about the Lookout Cloud Security Platform, visit www.lookout.com and follow Lookout on our blog, LinkedIn and Twitter. We are looking for a Staff Security Researcher to join our Threat Intelligence team, a group of top-tier security researchers working to identify, investigate, and track targeted attacks on users of mobile devices. As a member of this team you will use an extensive arsenal of detection tools including the largest collection of mobile apps containing 200M+ Android and iOS apps to find and research mobile malware and hunt down malicious actors, their infrastructure, tooling and techniques. What you’ll do: - Identify, analyze and track advanced nation state and financially motivated threat actors and their tactics, techniques, and procedures (TTPs). - Develop strategies to hunt mobile threats targeting enterprises and individuals. - Reverse-engineer and analyze capabilities of mobile malware. - Investigate adversary command-and-control and phishing infrastructure. - Conduct independent research and report findings to Threat Intelligence customers. - Mine internal and external data sources to identify new campaigns, malware families, and malicious actors. - Devise and implement new detection rules and develop innovative and efficient ways to expand and finetune coverage. - Prepare and deliver public media reports and present findings at conferences. - Participate in activities involving customers, prospects, and partners. What we’re looking for: - Experience in threat hunting across multiple datasets, security tools such as VirusTotal, Validin, and Shodan and leveraging big data technologies (e.g., Lucene, ElasticSearch, AWS Athena). - Experience in reverse engineering software (mobile app reversing preferred). - Ability to articulate technical findings both in written reports and presentations. - Experience using some of the following tools: JEB, IDA Pro, Ghidra, Hopper, Frida, Wireshark, DirBuster. - Ability to read code in Java and C; ARM Assembly, ObjectiveC and Swift is a bonus. - Experience in conducting OSINT investigations. - Ability to create research tools in Python. - Experience with threat intelligence file types, tools and terminology such as MITRE ATT&CK, STIX, YARA, MISP, OpenCTI and the Intelligence Cycle. - Interest in geopolitical dynamics and the ability to apply that context to inform intelligence analysis and threat hunting activities. - Curiosity and a strong drive to understand how both state and criminal actors operate. The US base salary range for this full-time position is available below. We offer base + bonus + equity + benefits. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Remote - US $130,000—$149,000 USD
Staff Threat Intelligence Researcher
LookoutThe endpoint to cloud security company purpose-built for the intersection of enterprise and personal data.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are looking for a Staff Security Researcher to join our Threat Intelligence team, a group of top-tier security researchers working to identify, investigate, and track targeted attacks on users of mobile devices. As a member of this team you will use an extensive arsenal of detection tools including the largest collection of mobile apps containing 200M+ Android and iOS apps to find and research mobile malware and hunt down malicious actors, their infrastructure, tooling and techniques. - Identify, analyze and track advanced nation state and financially motivated threat actors and their tactics, techniques, and procedures (TTPs). - Develop strategies to hunt mobile threats targeting enterprises and individuals. - Reverse-engineer and analyze capabilities of mobile malware. - Investigate adversary command-and-control and phishing infrastructure. - Conduct independent research and report findings to Threat Intelligence customers. - Mine internal and external data sources to identify new campaigns, malware families, and malicious actors. - Devise and implement new detection rules and develop innovative and efficient ways to expand and finetune coverage. - Prepare and deliver public media reports and present findings at conferences. - Participate in activities involving customers, prospects, and partners. Qualifications - Experience in threat hunting across multiple datasets, security tools such as VirusTotal, Validin, and Shodan and leveraging big data technologies (e.g., Lucene, ElasticSearch, AWS Athena). - Experience in reverse engineering software (mobile app reversing preferred). - Ability to articulate technical findings both in written reports and presentations. - Experience using some of the following tools: JEB, IDA Pro, Ghidra, Hopper, Frida, Wireshark, DirBuster. - Ability to read code in Java and C; ARM Assembly, ObjectiveC and Swift is a bonus. - Experience in conducting OSINT investigations. - Ability to create research tools in Python. - Experience with threat intelligence file types, tools and terminology such as MITRE ATT&CK, STIX, YARA, MISP, OpenCTI and the Intelligence Cycle. - Interest in geopolitical dynamics and the ability to apply that context to inform intelligence analysis and threat hunting activities. - Curiosity and a strong drive to understand how both state and criminal actors operate. Benefits - Base salary range: $130,000 — $149,000 USD. - Base + bonus + equity + benefits. - Individual pay determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Company Description Lookout, Inc. is the endpoint to cloud security company purpose-built for the intersection of enterprise and personal data. We safeguard data across devices, apps, networks and clouds through our unified, cloud-native security platform — a solution that's as fluid and flexible as the modern digital world. By giving organizations and individuals greater control over their data, we enable them to unleash its value and thrive. Lookout is trusted by enterprises of all sizes, government agencies and millions of consumers to protect sensitive data, enabling them to live, work and connect — freely and safely. To learn more about the Lookout Cloud Security Platform, visit www.lookout.com and follow Lookout on our blog , LinkedIn and Twitter .
• Conduct concise geopolitical research and analysis to identify trends and risks that affect various sectors and regions. • Monitor global events, political developments, and economic conditions, providing timely updates to our internal teams. • Collaborate with cross-functional teams to integrate geopolitical insights into broader strategic plans. • Provide expert commentary on geopolitical issues for internal and external stakeholders. • Prepare clear, actionable briefs and reports tailored to client needs and interests.
Cybersecurity Threat Intelligence Analyst
VantorVantor is a spatial intelligence company specializing in advanced software and systems that connect sensors across air, space, and ground domains to create a unified, AI-ready “l
Vantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate what’s happening now and shape what’s coming next. Vantor is a place for problem solvers, changemakers, and go-getters—where people are working together to help our customers see the world differently, and in doing so, be seen differently. Come be part of a mission, not just a job, where you can: Shape your own future, build the next big thing, and change the world. To be eligible for this position, you must be a U.S. Person, defined as a U.S. citizen, permanent resident, Asylee, or Refugee. Export Control/ITAR: Certain roles may be subject to U.S. export control laws, requiring U.S. person status as defined by 8 U.S.C. 1324b(a)(3). Please review the job details below. Primary Duties and Responsibilities - Collaborate with other threat analysts to identify and understand threats to Vantor. - Investigate and analyze dark web and security-related events using cybersecurity toolsets. - Identify and respond to cyber threats occurring within Vantor environments. - Write and compile threat research documents for distribution to stakeholders. - Communicate findings to technical and executive teams. - Have demonstrated ability to produce written intelligence products. - General familiarity with the US intelligence community writing styles. - Follow up with Vantor teams through issue resolution and provide recommendations to minimize risk. - Collaborate with cybersecurity and threat response teams and provide Tier 3 support when needed. - Research emerging Indicators of Compromise (IoCs), exploits, and vulnerabilities to enhance protection for our networks. - Must take a proactive approach in improving and enhancing team deliverables and research methodologies. - Collect and correlate threat intelligence from OSINT and third-party tools to create actionable intelligence. - Understand Malware lifecycles and communicate effectively in writing and briefings. Required Qualifications - Must be a U.S. Citizen - Must have the ability to obtain a security clearance - 5+ years' experience in a cybersecurity-related role with experience in threat intelligence gathering and analysis. - Working knowledge of Information Security best practices, policies, standards, and baselines, including industry standards and guidelines from NIST, CIS, and OWASP. - A Bachelor's degree in a related science with a focus on information security or related disciplines - IT Security Certifications such as Security+, CySA+, CISSP, CEH, or other equivalent certifications. - Strong communication, collaboration, and analytical skills. Preferred Qualifications - Experience with industry standard security tools. - Experience with OSINT and other intelligence gathering toolsets. - Technical working experience/knowledge of operating systems, databases, web applications, mobile devices, middleware, and other computing devices/software components. - Knowledge and experience related to the space industry and its technology stack. #LI-MG1 Pay Transparency: In support of pay transparency at Vantor, we disclose salary ranges on all U.S. job postings. The successful candidate’s starting pay will fall within the salary range provided below and is determined based on job-related factors, including, but not limited to, the experience, qualifications, knowledge, skills, geographic work location, and market conditions. Candidates with the minimum necessary experience, qualifications, knowledge, and skillsets for the position should not expect to receive the upper end of the pay range. ● The base pay for this position within Colorado is: $102,000.00 - $170,000.00 annually. ● The base pay for this position within New Jersey is: $102,000.00 - $170,000.00 annually. ● The base pay for this position within Delaware is: $102,000.00 - $170,000.00 annually. ● The base pay for this position within the Washington, DC metropolitan area is: $113,000.00 - $188,000.00 annually. ● The base pay for this position within California is: $117,000.00 - $171,600.00 annually. For all other states, we use geographic cost of labor as an input to develop market-driven ranges for our roles, and as such, each location where we hire may have a different range. Benefits: Vantor offers a competitive total rewards package that goes beyond the standard, including a robust 401(k) with company match, mental health resources, and unique perks like student loan repayment assistance, adoption reimbursement and pet insurance to support all aspects of your life. You can find more information on our benefits at: https://www.Vantor.com/careers The application window is three days from the date the job is posted and will remain posted until a qualified candidate has been identified for hire. If the job is reposted regardless of reason, it will remain posted three days from the date the job is reposted and will remain reposted until a qualified candidate has been identified for hire. The date of posting can be found on Vantor's Career page at the top of each job posting. To apply, submit your application via Vantor's Career page. EEO Policy: Vantor is an equal opportunity employer committed to an inclusive workplace. We believe in fostering an environment where all team members feel respected, valued, and encouraged to share their ideas. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender identity, sexual orientation, disability, protected veteran status, age, or any other characteristic protected by law.

