Lead Vulnerability Intelligence Analyst (Europe or LATAM, Remote)

Intel 471

United States

Remote

USD 180,000 - 260,000

Full time

12 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Competitive compensation
Remote-friendly culture
Wellness programs
Professional development opportunities
Inclusive culture focusing on people

Job summary

Intel 471 is seeking a team lead to own the vulnerability intelligence practice, validating CVEs and shaping customer guidance. You will set standards for validation, risk assessment, and reporting while building tooling for the team to cover exploit research at scale.

Responsibilities include designing honeypot systems, testing PoCs, and delivering practical mitigations and automated triage. Strong mentoring and deep vulnerability expertise are essential.

Qualifications

  • Validate and test PoCs to verify exploitation claims.
  • Devise mitigation techniques beyond patching.
  • Detect exploit activity, attempted or successful.
  • Write vulnerability reports such as Vulnerability Spotlights.
  • Identify new sources of vulnerability intelligence.
  • Train and mentor junior team members.
  • Hands-on fluency with VMs and containers for safe detonation and analysis.

Responsibilities

  • Design, build, and deploy honeypot systems to monitor exploitation activity.
  • Acquire, test, and validate PoCs in virtual environments to confirm exploitability.
  • Develop practical mitigations for delayed or insufficient patches.
  • Devise techniques for detecting exploit activity, attempted or successful.
  • Write vulnerability reports detailing how exploits work and who is using them.
  • Automate vulnerability assessment and triage tooling.

Skills

PoC testing
Vulnerability research
Automation
Mentorship
Exploit detection
Programming (Python/Go/C/C++)
Networking fundamentals

Tools

Virtual machines
Containers
PoC tooling

Job description

Company Overview:

Intel 471 empowers enterprises, government agencies, and other organizations to win the cybersecurity war using near-real-time insights into the latest malicious actors, relationships, threat patterns, and imminent attacks relevant to their businesses. Founded in 2014, Intel 471 provides comprehensive intelligence and monitoring on threat actors. The company’s centralized TITAN platform enables intelligence and security professionals to access structured information, dashboards, timely alerts and intelligence reporting via web portal or API integration.


Our pedigree is unmatched and we count upon a team with experience operating in the intelligence services, military, law enforcement and private threat intelligence companies in nearly every continent on earth.


The Role:

You own the technical depth of our vulnerability intelligence practice. When a new CVE drops, you're the person who determines what's actually true and decides what our customers should do about it.


This is a team lead role where you'll set the technical standard for how we validate, assess, and communicate vulnerability risk. You'll also build and maintain the tooling that lets a small team cover the ever-growing world of vulnerability research.


What You’ll Do:

Design, build, and deploy honeypot systems to monitor for exploitation activity. Acquire, test, and validate proof-of-concept exploits in virtual environments to confirm or refute claims about exploitability. Develop practical mitigations for cases where patching is delayed, impossible, or insufficient. These mitigations could include configuration hardening, network segmentation, ACLs, disabling features, or other controls. You'll devise techniques for detecting both attempted and successful exploitation by illuminating the artifacts defenders should hunt for. You'll write vulnerability reports that dive into the details about an exploit such as how it works, who is using it and who is being targeted. Automation is a key component of the role; you will build and maintain the systems we use to streamline vulnerability assessment and automate triage of vulnerability alerts.


Required Qualifications:


  • Validate and test PoCs to verify the validity of exploitation claims.

  • Devise mitigation techniques beyond patching.

  • Devise techniques for detecting exploit activity, attempted or successful.

  • Write vulnerability reports such as Vulnerability Spotlights.

  • Identify new sources of vulnerability intelligence.

  • Train and mentor junior team members.


Technical foundation:


  • Proficiency with at least one programming language (Python, Go, C/C++, or similar) sufficient to read exploit code, modify PoCs, and build tooling.

  • Hands-on fluency with virtual machines, containers, and re-usable lab environments for safe detonation and analysis.

  • Solid computer science fundamentals.

  • Thorough understanding of computing and internet fundamentals: TCP/IP, HTTP, DNS, TLS, authentication and authorization models, and how real systems are actually deployed.

  • Demonstrated subject-matter-expert-level depth.

  • A working bias toward automation.


Strong candidates additionally bring:


  • Experience building honeypot or sensor systems to monitor real-world exploitation activity.

  • Experience building systems that streamline or automate PoC testing and validation.

  • Demonstrated ability to integrate a new intelligence source end-to-end, from evaluation and ingestion to normalization, enrichment and delivery.

  • Also valuable: original vulnerability research or CVE credits; reverse engineering skills; detection engineering (Sigma, Snort/Suricata, YARA); SOC experience; familiarity with CVSS, CWE, EPSS, and the KEV catalog; public speaking or published writing.


Benefits:


  • Competitive compensation

  • Remote-friendly culture

  • Wellness programs

  • A variety of professional development opportunities

  • Inclusive culture focused on people, customers and innovation


Our Culture:

The Intel 471 team is constantly growing and is always on the lookout for talented professionals who seek to operate on the forefront of the fight against threat actors impacting our customers and partners. Our culture of humility and quiet professionalism is a core attribute of Intel 471 and everyone within it. Our culture is collaborative, supportive and fast-paced. We're a mission-driven company. We're looking for talented, 'can-do' minded people with a passion for always doing the right thing.


We believe in supporting a progressive culture that allows all our people to be themselves, enjoy exciting opportunities and grow with us. That's why our culture is founded on our core values of openness, inclusion, integrity and client focus, which set the tone for how we work together and treat each other in order to empower us all - and foster a unique team spirit.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Vulnerability Intelligence Analyst (Fully Remote)
Lead Vulnerability Intelligence Analyst (Fully Remote)

Partner Company • United States

Remote
USD 140,000 - 190,000
Remote-friendly culture
Wellbeing programs
Professional development
Vulnerability Intelligence Lead — Threat Research
Vulnerability Intelligence Lead — Threat Research

Intel 471 • United States

Remote
USD 180,000 - 260,000
Competitive compensation
Remote-friendly culture
Wellness programs
+2
Sr. Exploit Developer (US)
Sr. Exploit Developer (US)

VulnCheck Inc. • Maryland

On-site
USD 100,000 - 150,000
Unlimited PTO
401k plan with company match
Comprehensive healthcare coverage
+5
Vulnerability Researcher
Vulnerability Researcher

Intelliforce-IT Solutions Group, LLC. • Maryland

On-site
USD 120,000 - 160,000
Ample PTO
Multiple medical plan options
Generous 401(k)
+2
Senior Vulnerability Intelligence Lead — Remote
Senior Vulnerability Intelligence Lead — Remote

Partner Company • United States

Remote
USD 140,000 - 190,000
Remote-friendly culture
Wellbeing programs
Professional development
Director of Vulnerability and Exploits
Director of Vulnerability and Exploits

Career Techniques • Dallas (TX)

Hybrid
USD 180,000 - 240,000
Vulnerability Researcher
Vulnerability Researcher

The Solutions Group Llc • Corridor North (MD)

On-site
USD 140,000 - 190,000
Ample PTO
Medical plan options
401(k) with immediate vesting
+2
Vulnerabililty Management Consultant at Trellix Juneau, AK
Vulnerabililty Management Consultant at Trellix Juneau, AK

kozmetickesluzby.vecnakraska.sk - Jobboard • Juneau (AK)

On-site
USD 90,000 - 120,000
Retirement Plans
Medical, Dental and Vision Coverage
Paid Time Off
+2
Principal Threat Hunter
Principal Threat Hunter

VulnCheck Inc. • United States

Remote
USD 180,000 - 230,000
Unlimited PTO
401k plan
Healthcare coverage
+5
Vulnerability Researcher
Vulnerability Researcher

The Solutions Group Llc • Annapolis (MD)

On-site
USD 100,000 - 140,000