Detection & Response Security Engineer, Threat Intelligence

Meta

City of Westminster

On-site

GBP 70,000 - 110,000

Full time

33 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Meta is seeking a threat intelligence investigator to proactively respond to cyber threats targeting Meta and its employees. You will track threat actor groups, identify gaps in detections, and collaborate with cross-functional teams to strengthen security posture.

You will develop intelligence-driven countermeasures, forecast trends, and contribute to long-term security improvements across Meta's infrastructure and incident response efforts.

Qualifications

  • 3+ years threat intelligence experience.
  • Experience with campaign tracking techniques in intel.
  • Familiarity with MITRE ATT&CK framework.
  • Ability to communicate with diverse audiences.
  • Experience building threat intelligence tooling.
  • Scripting in Python or PHP.

Responsibilities

  • Track threat clusters and implement countermeasures.
  • Investigate, mitigate, and forecast emerging trends.
  • Work with incident responders to enrich investigations.
  • Improve tooling for threat intelligence data integration.
  • Collaborate on cross-functional security projects.

Skills

Threat intelligence
Incident response collaboration
Analytical thinking
Python scripting
AI tooling integration
Cross-functional teamwork
Threat modeling
Communication skills

Tools

SQL
YARA
Snort
Malware analysis
Threat intel tooling

Job description

Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a broad set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Meta's security posture.

Detection & Response Security Engineer, Threat Intelligence Responsibilities
  1. Track threat clusters posing threats to Meta's infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
  2. Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
  3. Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
  4. Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
  5. Engage constructively in cross-functional projects to improve the security posture of Meta's infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
  6. 3+ years threat intelligence experience
  7. Familiarity with campaign tracking techniques and ability to convert the tracking results to long term countermeasures
  8. Familiarity with threat modeling framework, such as Diamond Model and/or MITRE ATT&CK framework
  9. Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
  10. Proven track record of managing and executing on short term and long term projects
  11. Ability to work with a team spanning multiple locations/time zones
  12. Ability to prioritize and execute tasks with minimal direction or oversight
  13. Ability to think critically and qualify assessments with solid communications skills
  14. Coding or scripting experience in one or more scripting languages such as Python or PHP,
  15. Familiarity with malware analysis or network traffic analysis
  16. Experience authoring production code for threat intelligence tooling
  17. Experience conducting large scale data analysis
  18. Experience in one or more query languages such as SQL
  19. Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies
  20. Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)
  21. Experience working across the broader security community
  22. Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)
  23. Production of file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort
  24. Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)
  25. Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)
  26. Experience closely collaborating with incident responders on incident investigations
  27. Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies
  28. Familiarity with nation-state, sophisticated criminal, or supply chain threats
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection & Response Security Engineer, Threat Intelligence
Detection & Response Security Engineer, Threat Intelligence

Meta • Greater London

On-site
GBP 60,000 - 95,000
Detection & Response Security Engineer, Threat Intelligence
Detection & Response Security Engineer, Threat Intelligence

Meta • City Of London

On-site
GBP 60,000 - 100,000
Cyber Security Engineer - Threat Detection
Cyber Security Engineer - Threat Detection

Intercontinental Exchange Holdings, Inc. • City Of London

On-site
GBP 70,000 - 110,000
Security Engineer (Threat Intel)
Security Engineer (Threat Intel)

Anthropic • York and North Yorkshire

On-site
GBP 85,000 - 130,000
Health insurance
Fertility benefits
Parental leave (22 weeks)
+8
Infrastructure Security Monitoring Engineer
Infrastructure Security Monitoring Engineer

Meta • Greater London

On-site
GBP 90,000 - 130,000
Senior Detection and Response Engineer
Senior Detection and Response Engineer

Jobtailor • Cambridge

On-site
GBP 65,000 - 95,000
Cyber Security Engineer - Threat Detection
Cyber Security Engineer - Threat Detection

ICE • Greater London

On-site
GBP 85,000 - 110,000
Cyber Security Engineer - Threat Detection
Cyber Security Engineer - Threat Detection

ICE Clear Europe Limited • Greater London

Hybrid
GBP 70,000 - 120,000
Lead Security Operations Engineer
Lead Security Operations Engineer

Jobtailor • Greater London

On-site
GBP 120,000 - 170,000
Security Engineer, Detection and Response
Security Engineer, Detection and Response

Jobtailor • Greater London

On-site
GBP 90,000 - 130,000