Job Closed

This listing is no longer active.

Corinth Consulting Group logo
Corinth Consulting Group

Our Vision is to inspire people to achieve their full potential through daily service, commitment, and innovation.

Advanced Threat Hunter

Threat Intelligence SpecialistSecurity AnalystOtherRemoteSeniorTeam 11-50Since 2012H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

80 days ago

Salary

$100K - $116K / year

Seniority

Senior

Bachelor Degree3 yrs expEnglishAWSLinuxSplunkUnix

Job Description

Advanced Threat Hunter

Corinth Consulting Group

• Provide 12x5 operational coverage and after-hours on-call support to detect, analyze, and mitigate advanced cyber threats • Conduct advanced packet-level traffic analysis and reconstruct network activity to identify anomalies, trends, and threat patterns • Perform in-depth web and application log analysis to identify suspicious or malicious behavior • Search for indicators consistent with advanced persistent threats (APTs) • Perform pattern, trend, and behavior analysis using multiple data sources • Design, deploy, and manage deception technologies (e.g., honeypots, lures, traps) • Conduct forensic analysis and documentation of malware incidents from initial compromise through remediation • Collaborate with SOC teams to assess and monitor key risk areas, including public-facing systems and sensitive databases • Develop and maintain SOPs, provide training, and support implementation of security solutions • Produce clear, comprehensive reports and actionable recommendations based on findings • Identify opportunities to enhance cyber detection capabilities and close security gaps • Support cyber requirements analysis and tracking activities

Job Requirements

  • Demonstrated experience with APT detection and prevention tools such as: FireEye HX, Cisco Advanced Malware Detection, ThreatGrid, Exabeam
  • Strong experience with: Windows servers, domain controllers, databases, Group Policy, and firewall/network filtering
  • Linux/Unix operating systems and file systems
  • Experience performing: NETFLOW and PCAP analysis using tools such as Wireshark, Cisco Stealthwatch, or AWS VPC Flow Logs
  • Real-time security event monitoring and anomaly detection using Splunk
  • Proven experience conducting: Malware forensic analysis (live system, sandbox, static, and memory/RAM analysis)
  • Full lifecycle malware investigation and documentation
  • BA/BS or minimum of three (3) years of experience in forensics and incident response
  • Minimum two (2) years of hands-on experience with Splunk and Wireshark
  • At least two (2) active cybersecurity certifications, such as: Security+, CISSP, GCIH, GCIA, GREM, GSEC, GCED, GCFA, GSLC, GSNA, GAWN, GPPA, GSE
  • Strong analytical, problem-solving, and investigative skills
  • Ability to clearly document and communicate technical findings to diverse audiences
  • Experience working in high-visibility, mission-focused environments
  • Strong collaboration skills with SOC and engineering teams

Benefits

  • Multiple medical plan options
  • Dental and vision coverage
  • Health savings and flexible spending accounts
  • Employer-sponsored life and disability insurance
  • Access to wellness and health advocacy resources
  • 401(k) retirement savings plan with company match and immediate vesting
  • Paid holidays
  • Paid time off (PTO)
  • Sick leave
  • Paid volunteer time
  • Parental leave
  • Other leave programs
  • Employee Assistance Program (EAP) offering confidential counseling and support services
  • Professional development and training opportunities

Related Job Pages

More Threat Intelligence Specialist Jobs

Scratch Financial logo

All Source Intelligence Analyst

Scratch Financial

Scratch Financial is the world's simplest patient financing solution.

OtherRemoteTeam 11-50Since 1912H1B Sponsor

Company Description NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our global theme park destinations, consumer products, and experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, NBC Sports, Telemundo, NBC Local Stations, Bravo, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through our powerhouse film and television studios, including Universal Pictures, DreamWorks Animation, and Focus Features, and the four global television studios under the Universal Studio Group banner, and operate industry-leading theme parks and experiences around the world through Universal Destinations & Experiences, including Universal Orlando Resort, home to Universal Epic Universe, and Universal Studios Hollywood. NBCUniversal is a subsidiary of Comcast Corporation. Visit www.nbcuniversal.com for more information. Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world. Job Description The NBCUniversal Global Response and Intelligence Center (GRIC), located at NBCUniversal headquarters at 30 Rockefeller Center, New York, NY, is a 24x7 incident response center, managing and coordinating crisis response on behalf of NBCUniversal assets worldwide. The Intelligence Analyst will be part of NBCUniversal's Global Security Operations team, reporting directly to the GRIC Manager for Global Intelligence Analysis. The GRIC is comprised of a GRIC Vice President, Intelligence Analysts and 24x7 Security Operations Officers monitoring worldwide incidents. The Intelligence Analyst anticipates, assesses, and communicates threats against NBCUniversal executives, staff, talent, events, businesses, and/or facilities. The Intel Analyst reviews information from open/public sources, official sources, and professional contacts, and conducts timely, accurate, relevant, and creative assessments of international security issues. He/she produces a range of written and verbal analyses for employees, correspondents, production staff and management of NBCUniversal, supporting the company's security and crisis management operations worldwide. PRINCIPAL RESPONSIBILITIES: - Conducts comprehensive all-source collection, analysis, and production of tactical and strategic risk assessments of foreign and domestic threats against NBCUniversal assets. - Assesses potential threats to local/regional offices, events and assets and communicates the information in a timely and accurate manner. - Maintains currency on national and international intelligence topics, including but not limited to terrorist threats, political instability, and regional emerging threats. - Develops sophisticated risk assessments for NBCUniversal executives, staff, talent, and businesses. - Develops actionable proactive intelligence to mitigate threats and support corporate decision-making during a crisis. - Assists in analyzing the impact of events or threats to NBCUniversal assets through collaboration with other business units, such as News, Productions and Sports. Builds, maintains, and leverages relationships with key external agencies, local/federal law enforcement, intelligence/military agencies and other public and private entities. - Builds relationships with other corporate and government intelligence teams to share intelligence methodologies and analysis to better support the wide variety of our company's business groups. - Prepares appropriate risk assessments and properly communicates to the GRIC Vice President and/or relevant stakeholders on all matters of impact or potential impact in a timely manner. Qualifications QUALIFICATION/ REQUIREMENTS - Bachelor's degree required; field of study such as political science, international relations, national security studies, history, comparative and/or regional studies; advanced degree preferred - 2+ years of analytic experience with an intelligence agency, federal government agency, the military, think tank, risk management consultancy, and/or corporate investigations firm - Experience, analyzing risk, authoring reports, and conducting briefings that provide stakeholders with proactive, actionable insight about security concerns - Regional expertise in international affairs or counterterrorism in Middle East, Latin America, Eastern Europe or Asia desired. Foreign area knowledge and understanding of international affairs gained through study, travel, or work abroad - Excellent written and verbal communication and presentation skills PREFERRED SKILLS - Advanced open-source research skills; knowledge of social media resources for proactive intelligence collection - Proficient in Spanish, Arabic or other foreign language desirable - Demonstrated research and critical thinking skills to identify, collect, synthesize, and evaluate large amounts of data and draw logical and actionable conclusions. - Ability to work a flexible schedule and sometimes extended schedule during crisis periods, to include weekends and holidays. - Ability to operate under stress, multi-task in a fast-paced environment, sometimes under ambiguous circumstances - Self-motivated, strong organizational and multitasking skills, detail-oriented - Equally comfortable working independently or collaboratively on a project, often under compressed timelines - Experience briefing senior management on sensitive threat related matters - Strong professional ethics and ability to maintain absolute discretion, confidentiality, and trust Additional Information Hybrid: This position currently has a hybrid schedule, which requires contributing from the office a minimum of four days per week. The Company reserves the right to change in-office requirements at any time. This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary: 75,000 - $95,000 Additional Information As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law. If you are a qualified individual with a disability or a disabled veteran and require support throughout the application and/or recruitment process as a result of your disability, you have the right to request a reasonable accommodation. You can submit your request to AccessibilitySupport@nbcuni.com.

New York
$75K - $95K / year
Job Closed
United Airlines logo

Senior Analyst - Cyber Threat Intel (Remote)

United Airlines

United Airlines is a publicly-traded, global airline operating over 4,500 flights every day to more than 335 airports on five continents. In the past, the company has supported fle

Achieving our goals starts with supporting yours. Grow your career, access top-tier health and wellness benefits, build lasting connections with your team and our customers, and travel the world using our extensive route network. Come join us to create what’s next. Let’s define tomorrow, together. Description Connecting People. Uniting the World. There’s never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly. We’re on a path to becoming the best airline in aviation history. Join our Cybersecurity and Digital Risk (CDR) team to help lead the industry in cyber safety, security and resilience. United's CDR team plays a critical role in protecting our operations by enabling secure and resilient systems, managing threats and vulnerabilities, and ensuring swift response and recovery. Our mission is to seamlessly embed cybersecurity and digital risk management into every aspect of our business. We help drive progress and growth through trusted digital solutions, safeguarding assets and empowering our team, all while promoting a cyber-safe and secure environment that supports resilient airline operations. United offers a competitive benefits package aimed at keeping you happy, healthy, and well-traveled. From employee-run "Business Resource Group" communities to world-class benefits like parental leave, 401(k), and privileges like space-available travel, United is truly a one-of-a-kind place to work. Are you ready to travel the world and help us keep our airline cyber safe? Apply today! Job overview and responsibilities - Leads the collection, analysis, assessment, and dissemination of open source, and classified information regarding cyber threats and potential attacks within the scope of the United Airlines Cyber Intelligence program - This role works with internal business partners and external industry colleagues to identify threats to United and formulate risk assessments, priority intelligence, threat intelligence reports and requests for intelligence information to drive cyber-safe solutions and reduced the cyber-attack surface - Prioritize and analyze cybersecurity threats and vulnerabilities to ensure rapid detection, response and remediation to evolving threat actor tactics, techniques and procedures - Define and develop processes and tools to track cyber threat intelligence analysis, detection, reporting, documenting, and threat actor profiles - Consult with outside parties such as U.S. Government agencies, third-party vendors, and experts to identify and prioritize threats and protections needed - Evaluate and recommend strategic changes to improve the collection, maintenance, and utilization of threat intelligence indicators for threat detection engineering enhancements - Engage, collaborate and partner with leadership, key collaborators and broader security team on key initiatives to drive day-to-day security operations - Act as a trusted advisor to internal and external partners (division leadership, peers, employees) Qualifications What’s needed to succeed (Minimum Qualifications): - Bachelor's degree or 4 years of relevant work experience in Computer Science or other STEM field - 3+ years of related experience - Proficient with cybersecurity tools for areas such as network topologies, intrusion detection, incident response - In-depth knowledge of the intelligence cycle - Proficient at interpreting and applying finished and raw intelligence - Skill in communicating with all levels of management (e.g., interpersonal skills, approachability, effective listening skills, appropriate use of style and language for the audience) - Ability to perform in a dynamic environment to strict deadlines, with the ability to address multiple activities concurrently - Skills to drive cross-functional initiatives to completion, preferably in complex business environments - Ability to communicate in a manner which is understandable by non-technical audiences - Ability to achieve objectives by contributing information and recommendations to strategic plans, identifying trends and driving change - Must be legally authorized to work in the United States for any employer without sponsorship - Successful completion of interview required to meet job qualification - Reliable, punctual attendance is an essential function of the position What will help you propel from the pack (Preferred Qualifications): - Bachelor's degree or 4 years of relevant work experience in Intelligence or Cybersecurity - CISSP, GCTI, CCIP, Security+ - 6+ years of related experience in the aviation industry or government - Comfortable with scripting or programming languages (C/Python/Ruby/JavaScript) - Hands-on experience with processing and analyzing cyber threat intelligence for a large organization Job Posting Expires 4/18/2026 The base pay range for this role is $112,480.00 to $146,540.00. The base salary range/hourly rate listed is dependent on job-related, factors such as experience, education, and skills. This position is also eligible for bonus and/or long-term incentive compensation awards. You may be eligible for the following competitive benefits: medical, dental, vision, life, accident & disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) and flight privileges. United Airlines is an Equal Opportunity Employer. We recruit, employ, train, compensate, and promote without regard to race, color, religion, national origin, gender identity, sexual orientation, disability, age, veteran status, or any other protected category under applicable law. We provide reasonable accommodations for applicants and employees with disabilities. To request an accommodation, contact JobAccommodations@united.com

United States
$112K - $146K / year
Mercor logo

Bilingual AI Red-Team Analyst

Mercor

Cincinnatus is an enterprise staffing company that partners with leading technology companies to source and employ highly skilled professionals for full-time and long-term contingent roles. Cincinnatus serves as the employer of record for these engagements, providing W-2 employment, payroll, benefits, and compliance, while placing employees directly within client teams to work on high-impact initiatives. Roles hired through Cincinnatus are not project-based or freelance engagements. They are structured, role-based positions that typically involve full-time or fixed-term commitments, close collaboration with a client's internal teams, and integration into standard enterprise workflows. Cincinnatus is a legal entity separate from Mercor. While opportunities may be discovered through Mercor's platform, employment, onboarding, payroll, and benefits for these roles are administered by Cincinnatus. Equal Employment Opportunity Cincinnatus is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or any other legally protected characteristic. Cincinnatus is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans throughout the job application process.

OtherRemoteH1B No Sponsor

Role Description Mercor connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors include Benchmark, General Catalyst, Peter Thiel, Adam D'Angelo, Larry Summers, and Jack Dorsey. Position: AI Red Team Specialist Type: Full-time or Part-time Contract Work Compensation: $50/hour Location: Remote; Geography restricted to USA, Japan Commitment: 20+ hours/week Role Responsibilities - Red team conversational AI models and agents to identify jailbreaks, prompt injections, and misuse cases. - Generate high-quality human data by annotating failures, classifying vulnerabilities, and flagging systemic risks. - Apply structure by following taxonomies, benchmarks, and playbooks to maintain consistent testing. - Document reproducibly to produce reports, datasets, and attack cases that customers can act on. - Work independently and asynchronously to meet deadlines while improving AI model performance. Qualifications - Must-Have: - Fluent Language Skills Required: Native-level fluency in English & Japanese. - Prior experience in red teaming (AI adversarial work, cybersecurity, socio-technical probing). - Ability to explain risks clearly to technical and non-technical stakeholders. - Adaptability to move across projects and customers. - Preferred: - Experience in Adversarial ML: jailbreak datasets, prompt injection, RLHF/DPO attacks, model extraction. - Background in Cybersecurity: penetration testing, exploit development, reverse engineering. - Expertise in Socio-technical risk: harassment/disinfo probing, abuse analysis, conversational AI testing. - Skills in Creative probing: psychology, acting, writing for unconventional adversarial thinking. Requirements - Hourly contractor, Paid weekly via Stripe Connect. Application Process - Upload resume - AI interview based on your resume - Submit form For details about the interview process and platform information, please check: Interview Process Details For any help or support, reach out to: support@mercor.com PS: Our team reviews applications daily. Please complete your AI interview and application steps to be considered for this opportunity.

United States + 1 moreAll locations: United States | Japan
$50 / hour
Job Closed
Vantage Data Centers logo

Threat Intelligence Engineer, Global

Vantage Data Centers

Experience | Scalability | Efficiency By Design

OtherRemoteTeam 1,001-5,000Since 2010H1B Sponsor

About Vantage Data Centers Vantage Data Centers powers, cools, protects and connects the technology of the world’s well-known hyperscalers, cloud providers and large enterprises. Developing and operating across North America, EMEA and Asia Pacific, Vantage has evolved data center design in innovative ways to deliver dramatic gains in reliability, efficiency and sustainability in flexible environments that can scale as quickly as the market demands. Position Overview This role can be based in any of our US locations: Denver, CO; Phoenix, AZ; Quincy, WA; Santa Clara, CA; or Ashburn, VA or remotely in the US. Vantage is seeking a highly analytical Threat Intelligence Engineer to support our cybersecurity and geopolitical risk programs through proactive threat identification, analysis, and escalation. You will join the Cybersecurity & Threat Intelligence team in monitoring emerging threats, assessing risk, and delivering clear, actionable intelligence that informs decision‑making across the business. In this role, you will evaluate alerts from intelligence platforms, track threat actors and campaigns, and provide contextual analysis during active security incidents. You will leverage OSINT techniques, maintain awareness of global geopolitical developments, and assess third‑party risks that could impact our data center operations. You will also produce well‑structured intelligence reports and communicate findings to both technical and executive audiences. As the data center industry continues to expand rapidly, so do the threats targeting critical infrastructure. This position offers a unique opportunity to help shape Vantage’s intelligence‑driven approach to protecting our global operations and ensuring we stay ahead of an evolving threat landscape. Essential Job Functions - Perform triage of threat intelligence alerts across cyber, geopolitical, reputational, and operational domains - Conduct follow‑up analysis on threat actors, including tactics, techniques, operations, and intent, and assess potential impact to the company - Monitor geopolitical developments and evaluate downstream risk to business operations, personnel, vendors, and assets - Conduct open‑source intelligence (OSINT) investigations into threats targeting the company, its sites, and third parties - Perform continuous risk assessments related to cyber events, threat actor activity, and emerging threat trends - Conduct continuous risk assessments of third‑party entities, including vendors and partners, based on cyber, reputational, and geopolitical factors - Perform triage of Data Loss Prevention (DLP) alerts - Produce written intelligence products that clearly articulate risk, context, and impact to technical and non‑technical stakeholders - Manage and maintain threat intelligence tools to ensure effective monitoring, alerting, and investigative workflows Duties - Monitor and triage alerts from threat intelligence platforms and escalate issues based on severity, credibility, and business impact - Track and analyze threat actors, campaigns, and operations, including cybercrime, hacktivism, insider threats, and nation‑state activity - Conduct risk assessments evaluating threats, vulnerabilities, likelihood, and potential business impact - Support incident response activities by providing threat context, attribution analysis, and external threat monitoring during active incidents - Utilize OSINT techniques to identify, assess, and monitor threats across social media, forums, news, and other open sources - Assess and monitor third‑party risk exposure related to cyber incidents, geopolitical developments, or reputational issues - Maintain situational awareness of global geopolitical events and translate those developments into actionable business risk insights - Produce clear, concise, and well‑structured intelligence reports tailored to executive, security, and cross‑functional audiences - Present findings and intelligence assessments verbally and in writing to internal stakeholders - Participate in post‑incident reviews and lessons‑learned activities to improve intelligence processes, tooling, and analytical tradecraft Job Requirements Skills - High proficiency in open‑source intelligence (OSINT) methodologies and tradecraft - Deep knowledge of OSINT techniques, tools, and investigative resources - Strong understanding of threat actor tactics, techniques, and strategies, and how they translate to real‑world risk - Demonstrated ability to perform threat triage and analytical prioritization - Experience assessing cyber, geopolitical, and reputational risk in a business context - Exceptional analytical and critical‑thinking skills - Exceptional writing abilities, with experience producing executive‑ready intelligence products - Strong communication skills, including the ability to brief complex threats clearly and concisely - High degree of adaptability in fast‑changing threat environments - Strong investigative mindset and attention to detail - Willingness and aptitude for continuous learning and skill development - Experience triaging and analyzing data loss prevention alerts Experience - Five or more years of hands‑on experience in threat intelligence and open‑source intelligence (OSINT) - Demonstrated experience conducting threat actor analysis, campaign tracking, and operational intelligence - Experience performing risk assessments related to cyber incidents, geopolitical developments, and third‑party exposure - Hands‑on experience using threat intelligence platforms such as Recorded Future and LifeRaft Navigator - Experience supporting incident response efforts with intelligence analysis and external threat monitoring - Prior exposure to data loss prevention alert triage - Master’s degree in a relevant discipline such as cybersecurity, intelligence studies, international relations, or a related field Additional Details - Salary Range: $95,000 - $125,000 Base + Bonus (this range is based on Colorado market data and may vary in other locations) - This position is eligible for company benefits including but not limited to medical, dental, and vision coverage, life and AD&D, short and long-term disability coverage, paid time off, employee assistance, participation in a 401k program that includes company match, and many other additional voluntary benefits. - Compensation for the role will depend on a number of factors, including your qualifications, skills, competencies, and experience and may fall outside of the range shown. We operate with No Ego and No Arrogance. We work to build each other up and support one another, appreciating each other’s strengths and respecting each other’s weaknesses. We find joy in our work and each other, actively seeking opportunities to inject fun into what we do. Our hard and efficient work is rewarded with an above market total compensation package. We offer a comprehensive suite of health and welfare, retirement, and paid leave benefits exceeding local expectations. Throughout the year, the advantage of being part of the Vantage team is evident with an array of benefits, recognition, training and development, and the knowledge that your contribution adds value to the company and our community. Don't meet all the requirements? Please still apply if you think you are the right person for the position. We are always keen to speak to people who connect with our mission and values. Vantage Data Centers is an Equal Opportunity Employer Vantage Data Centers does not accept unsolicited resumes from search firm agencies. Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired; such resumes will be deemed the sole property of Vantage Data Centers. We’ll be accepting applications for at least one week from the date this role is posted. If you're interested, we encourage you to apply soon—we’re excited to find the right person and will keep the role open until we do!

United States
$95K - $125K / year
Job Closed