Senior Threat Intelligence Analyst, Hacks

Lever, Inc.

España

A distancia

EUR 80.000 - 120.000

Jornada completa

Hace 6 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Supera los filtros ATS

Descripción de la vacante

Lever, Inc. is seeking a Senior Threat Intelligence Analyst based in Spain to lead the response to major cryptocurrency hacks, focusing on blockchain tracing, incident handling, and AI-enhanced analysis.

You will coordinate cross‑functional teams across time zones and manage contractor resources during critical incidents. The role emphasizes ownership of investigations, rapid customer communications, and publishing technical research on significant exploits, with opportunities to influence

Formación

  • 5+ years of blockchain intelligence or cyber threat analytics experience.
  • Experience owning high-stakes incident response and reporting under pressure.
  • Strong blockchain tracing across Bitcoin, EVM, TRON, Solana ecosystems.

Responsabilidades

  • Lead response to major hacks and coordinate triage, investigations, and post-incident reporting.
  • Ensure hacks are identified and communicated to customers within hours of public reporting.
  • Maintain comprehensive hack intelligence including addresses, dates, amounts and attack types.
  • Collaborate with Data Science and Engineering to track stolen funds across chains and services.
  • Develop AI-assisted tools and workflows to automate parts of hack analysis and response.
  • Conduct root-cause analysis of exploits and publish technical research.

Conocimientos

Blockchain tracing
Incident response
AI in analytics
Communication skills
Team leadership
Solidity reverse engineering
Contractor management
Threat intelligence

Descripción del empleo

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Threat Intelligence Analyst, Hacks based in Spain.

As a Senior Threat Intelligence Analyst, you will lead the intelligence function focused on cryptocurrency hacks and security incidents. You will own the end-to-end response to major hacks, from initial detection and investigation through attribution and reporting. The role combines blockchain intelligence, cyber threat analysis, incident response, and applied AI. You will work closely with data science and engineering teams to improve automated tracing and investigative workflows. You will also coordinate a small contractor team operating across time zones and support rapid customer communications during critical incidents. This is a high-ownership role in a fast-moving environment where your analysis can directly support efforts to disrupt illicit activity.

Accountabilities
  • Lead the response to major cryptocurrency hacks, coordinating triage, investigations, internal stakeholders, customer communications, and post-incident reporting.
  • Ensure significant hacks are identified, investigated, and made visible to customers within hours of credible public reporting, including through around-the-clock coverage.
  • Maintain complete and accurate hack intelligence, including affected entities, theft addresses, dates, stolen amounts, and attack types.
  • Design and improve systems with Data Science and Engineering teams to track and attribute stolen funds as they move across blockchains and services.
  • Develop AI-assisted tools, agents, and workflows that automate parts of hack analysis and incident response while maintaining rigorous human quality control.
  • Conduct root-cause analysis of significant exploits and produce detailed technical research and publications.
  • Develop methods to identify vulnerable contracts and potential threats before exploitation and contribute those insights to relevant products.
  • Manage contractors and coordinate operating rhythms across teams and time zones, including weekly team syncs, monthly metrics reviews, and incident war rooms.
  • Collaborate with teams covering cyber threat intelligence, nation-state activity, investigations, data science, engineering, and communications.
Requirements:
  • 5+ years of professional experience in blockchain intelligence, cryptocurrency investigations, cyber threat intelligence, incident response, or a closely related discipline.
  • Demonstrated experience owning high-stakes incident response, including war rooms, investigation leadership, incident reporting, and communications under pressure.
  • Strong blockchain tracing capabilities across major networks such as Bitcoin, EVM-compatible chains, TRON, and Solana, including experience with bridges, cross-chain swaps, and mixers.
  • Strong understanding of DeFi, bridge, and cryptocurrency exchange exploits, as well as attacker behavior following the theft of funds.
  • Practical experience applying AI to analytical workflows, including building or using AI-assisted and agentic systems, validating outputs, identifying failure modes, and applying appropriate human oversight.
  • Experience managing contractors or leading a small team in a fast-moving operational environment.
  • Excellent written and verbal communication skills, with the ability to produce both technical investigations and concise executive-level briefings.
  • Highly hands‑on and accountable, with a willingness to take ownership of complex analytical work rather than focusing solely on coordination.
  • Familiarity with smart‑contract reverse engineering, particularly Solidity, is a plus.
  • Experience working at a security auditor, blockchain analytics organization, or similar intelligence‑focused environment is advantageous.
  • Experience tracking or investigating activity associated with specific, well‑known hacker groups is also a plus.
Benefits:
  • Opportunity to work on complex problems at the intersection of AI, blockchain intelligence, cybersecurity, and crime prevention.
  • High‑ownership environment with significant autonomy over investigative approaches, systems, and operational processes.
  • Collaboration with multidisciplinary teams across intelligence, investigations, data science, engineering, and communications.
  • Distributed‑first working environment with collaboration across multiple international time zones.
  • Exposure to advanced AI‑driven analytical workflows and opportunities to build new investigative tools and automation.
  • Opportunity to contribute to technical research and publications with broad industry relevance.
  • Fast‑paced environment focused on experimentation, rapid iteration, and measurable impact.
  • Support for professional growth through challenging, mission‑driven work and continuous feedback.
  • Additional compensation, healthcare, flexibility, and other benefits may vary based on location and employment terms.

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre‑contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Crypto Threat Intelligence & Incident Response Lead
Senior Crypto Threat Intelligence & Incident Response Lead

Lever, Inc. • España

A distancia
EUR 80.000 - 120.000
Offensive Security Engineer
Offensive Security Engineer

Lever, Inc. • España

A distancia
EUR 110.000 - 150.000
Staff Security Researcher
Staff Security Researcher

Lever, Inc. • España

A distancia
EUR 110.000 - 170.000
Fully remote Europe
Health benefits
Pension
+6
Lead IT Security AI-Redteamer
Lead IT Security AI-Redteamer

Dkbcodefactory • España

Presencial
EUR 90.000 - 150.000
Benefits package
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Valencia

Híbrido
EUR 45.000 - 65.000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Elche

Híbrido
EUR 45.000 - 67.000
Lead Vulnerability Intelligence Analyst
Lead Vulnerability Intelligence Analyst

Lever, Inc. • España

Híbrido
EUR 110.000 - 140.000
Remote-friendly culture
Competitive compensation
Professional development
+2
Senior Backend/Devops Engineer
Senior Backend/Devops Engineer

Startup Talents • Barcelona

Presencial
EUR 62.000 - 103.000
Tokens
Medical Insurance
Coworking Membership
+2
Threat Intelligence Engineer
Threat Intelligence Engineer

Allianz Technology • Madrid

Presencial
EUR 55.000 - 75.000
Hybrid work model
Performance-based compensation
Employee shares program
SOC Technical Lead – Threat Hunting & Incident Response
SOC Technical Lead – Threat Hunting & Incident Response

Thales • Madrid

Presencial
EUR 70.000 - 110.000
Flexible hybrid work
41 days off
Meal vouchers
+3