Senior Security Analyst, Threat Intelligence

Robinhood

Edison (CA)

On-site

USD 166,000 - 195,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

100% paid health insurance
401(k) matching
Flexible benefits spending account
Catered meals and events

Job summary

Robinhood is seeking a Senior Security Analyst in Threat Intelligence to combat advanced threats targeting our customers. This role requires 5+ years of experience, focusing on proactive threat hunting and developing defenses against criminal activities.

The successful candidate will work in our Menlo Park, CA office, collaborating across teams to ensure comprehensive security measures. Competitive benefits include performance-driven compensation and exceptional office experiences.

Qualifications

  • 5+ years in threat intelligence or cyber investigations.
  • Experience tracking phishing and fraud campaigns.
  • Familiarity with cloud and hosting abuse analysis.

Responsibilities

  • Hunt for emerging threats to protect Robinhood.
  • Build threat detection systems for proactive defense.
  • Investigate and disrupt adversary operations.

Skills

Threat intelligence
Cyber investigations
SQL
Python
OSINT tooling
Business communication

Tools

SIEM
SOAR platforms
OpenCTI

Job description

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.

The Threat Intelligence team reduces organizational risk by rapidly detecting, understanding, and disrupting adversary activity. We research criminal ecosystems targeting our brand, customers, and infrastructure, and work with partners to translate that intelligence into detections, controls, and customer protections. Our work enables Security, Engineering, Trust & Safety, and executive leaders to focus resources where risk is highest. We operate with a strong sense of ownership, clear communication, and a commitment to protecting customers so they can confidently participate in the financial system.

As a Senior Security Analyst, Threat Intelligence, you will operate at the forefront of advanced and evolving threats targeting Robinhood and our customers. You will actively hunt for emerging phishing, scam, impersonation, fraud, and infrastructure abuse campaigns while building scalable systems that turn intelligence into action. This role combines hands‑on investigation, program design, mentorship, and stakeholder engagement. Your work will shape proactive controls, influence product and security decisions, and strengthen our overall threat defense strategy.

This role is based in our Menlo Park, CA office, with in-person attendance expected at least 3 days per week.

What you’ll do
  • Proactively hunt and map criminal ecosystems targeting Robinhood and its customers, and translate intelligence into detections and coordinated defenses that disrupt adversaries before they cause harm.
  • Build and maintain a comprehensive "Universe of Threats" by identifying, tracking, and prioritizing adversaries across phishing, scams, impersonation, fraud, and infrastructure abuse.
  • Support and contribute to a proactive threat intelligence lifecycle through industry partnerships, collaboration with trusted peers and federal authorities, and cultivating online personas to generate early warning capabilities that protect Robinhood's business operations.
  • Investigate attacker infrastructure across domains, DNS, certificate transparency logs, cloud providers, and telecom platforms, and convert findings into concrete detections, controls, and customer protections.
  • Coordinate threat actor infrastructure takedowns with hosting providers, domain registrars, cloud platforms, and other infrastructure partners to disrupt adversary operations.
  • Leverage and improve intelligence workflows using OSINT tooling, enrichment pipelines, data analysis tools, and case management systems to scale analysis and reporting.
  • Partner with Detection & Response, Automation, Customer Trust & Safety (Fraud and Financial Crimes), Security Engineering, Corporate Security, and Risk to prioritize threats based on measurable business risk.
What you bring
  • 5+ years of total experience, including 2–3+ years operating at a senior scope in threat intelligence, brand protection, or cyber investigations.
  • Hands‑on experience tracking criminal ecosystems tied to phishing, scams, impersonation, fraud, and infrastructure abuse, and the ability to move from isolated indicators to campaign- and actor-level analysis.
  • Familiarity with domain registration patterns, DNS and certificate transparency analysis, cloud and hosting abuse across providers (e.g., AWS, GCP, Azure, VPS), and attacker monetization methods.
  • Experience using OSINT tooling, SQL, Python, notebooks, SIEM or SOAR platforms, OpenCTI, and case management systems to analyze data and automate workflows.
  • Ability to translate complex technical threats into clear business risk for technical teams and immediate stakeholders through strong written and verbal communication.
  • Experience contributing to team initiatives and supporting peers, with a high level of accountability and sound risk judgment in ambiguous situations.
What we offer
  • Challenging, high-impact work to grow your career.
  • Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching.
  • Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents.
  • Lifestyle wallet — a highly flexible benefits spending account for wellness, learning, and more.
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits.
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more!
  • Exceptional office experience with catered meals, events, and comfortable workspaces.

In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Base Pay Range:

Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC) $166,000 — $195,000 USD

Zone 2 (Denver, CO; Westlake, TX; Chicago, IL) $146,000 — $172,000 USD

Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL) $129,000 — $152,000 USD

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Insider Trust
Manager, Insider Trust

Rainfall Ventures • Menlo Park (CA)

On-site
USD 217,000 - 255,000
Health insurance
Equity ownership
401(k) matching
+3
Senior Corporate Security Engineer
Senior Corporate Security Engineer

Robinhood • Menlo Park (CA)

Hybrid
USD 166,000 - 195,000
Health insurance
Lifestyle wallet
Life & disability insurance
+6
Staff Security Engineer, Detection & Response
Staff Security Engineer, Detection & Response

Robinhood • Bellevue (WA)

On-site
USD 217,000 - 255,000
Health insurance
Equity ownership
401(k) matching
+4
Staff Offensive Security Engineer
Staff Offensive Security Engineer

Robinhood • New York (NY)

Hybrid
USD 217,000 - 255,000
Health insurance
Equity opportunities
Wellness wallet
+5
Insider Risk Specialist
Insider Risk Specialist

Socket.dev • Bellevue (WA)

On-site
USD 140,000 - 165,000
100% paid health insurance for employees
401(k) matching
Flexible benefits spending account
Manager of Response, Automation, Intelligence & Detection Engineering
Manager of Response, Automation, Intelligence & Detection Engineering

Robinhood • Menlo Park (CA)

On-site
USD 190,000 - 224,000
Health insurance
Equity ownership
401(k) matching
+1
Software Engineer, Proactive Capabilities
Software Engineer, Proactive Capabilities

AI Chopping Block • Menlo Park (CA), Northern (KY)

Hybrid
USD 166,000 - 195,000
Equity ownership
401(k) matching
100% paid health insurance
+2
Security Engineer, Application Security
Security Engineer, Application Security

Rainfall Ventures • Menlo Park (CA)

Hybrid
USD 157,000 - 185,000
Health insurance
Equity ownership
401(k) matching
+1
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Robinhood • Edison (CA)

On-site
USD 157,000 - 185,000
100% paid health insurance for employees
401(k) matching
Flexible benefits spending account
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Robinhood • New York (NY)

Hybrid
USD 187,000 - 220,000
Health insurance (100% for employees)
Equity ownership
401(k) matching
+2