Senior Threat Intelligence Automation Engineer

Voiceflow

Seattle (WA)

On-site

USD 100,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Top-tier medical, dental, and vision benefits
Relocation expenses covered
Equity options

Job summary

Galvanick in Seattle is seeking a Senior Threat Intelligence Automation Engineer to set up and direct our threat intelligence program. This role involves designing how we operationalize threat intelligence to shield critical infrastructure, bridging the gap between raw data and actionable insights.

The ideal candidate will have a robust background in threat intelligence, experience with operational technology environments, and the ability to build relationships with intelligence communities. Competitive compensation and benefits are provided.

Qualifications

  • Deep expertise in threat intelligence consumption and operationalization for security operations.
  • Experience in implementing threat intelligence platforms and frameworks.
  • Ability to design and build intelligence programs from scratch.

Responsibilities

  • Define and implement the threat intelligence strategy for Galvanick.
  • Drive integration of threat intelligence into detection engineering workflows.
  • Build relationships with intelligence communities and government agencies.

Skills

Threat intelligence expertise
Python proficiency
Knowledge of STIX/TAXII frameworks
Malware investigation
Familiarity with ICS/SCADA

Job description

About the Role

We are seeking a Senior Threat Intelligence Automation Engineer to establish and lead Galvanick's threat intelligence program. In this role, you will architect our intelligence capabilities, defining how we consume, produce, and operationalize threat intelligence to protect critical infrastructure. You will bridge the gap between raw intelligence and actionable detections, ensuring our platform stays ahead of evolving threats to Operational Technology environments.

Responsibilities
  • Define and implement Galvanick's comprehensive threat intelligence strategy, establishing processes for consuming, analyzing, and producing actionable intelligence specific to OT/ICS environments.
  • Drive integration of threat intelligence sources directly into our detection engineering workflow, ensuring new detections are informed by the latest adversary tactics, techniques, and procedures.
  • Design and define technical requirements for our threat intelligence platform and system of record, selecting and implementing tools that scale with our growth.
  • Operationalize threat intelligence at runtime, ensuring real‑time correlation between intelligence feeds and active threat detection across customer environments.
  • Build relationships with intelligence sharing communities, government agencies, and industry partners to enhance our understanding of threats targeting critical infrastructure.
  • Develop intelligence products and reports informing internal teams and customer decision‑making, translating complex threat landscapes into actionable insights.
  • Experiment with and iterate on intelligence integration methods, continuously improving how we transform raw intelligence into high‑fidelity detections and hunting hypotheses.
Qualifications
  • Experience in threat intelligence, with deep expertise in consuming, analyzing, and operationalizing intelligence for security operations or detection engineering.
  • Strong technical background implementing threat intelligence platforms (TIPs) and STIX/TAXII frameworks, with Python (or Go) proficiency for automating intelligence workflows.
  • Proven ability to translate strategic intelligence requirements into technical implementations; experience designing and building intelligence programs from the ground up.
  • Experience working with intelligence sharing communities, ISACs, and government intelligence sources, with an understanding of TLP and intelligence handling requirements.
  • Demonstrated expertise investigating malware, phishing, web attacks, insider threats, and advanced persistent threats.
Bonus Points
  • Experience with industrial control systems, SCADA, or operational technology environments and understanding of threats specific to critical infrastructure.
  • Active involvement in the threat intelligence community with established relationships in industry and government intelligence circles.
  • Published research, conference presentations, or contributions to open‑source intelligence projects.
  • Experience working in startup environments where you've built capabilities with limited resources while maintaining high quality standards.
Benefits

We provide top‑of‑the‑line medical, dental, vision, and additional benefits designed to optimize every team member’s vitality, health, and wellness. Compensation ranges from $100,000 per year (lowest market) to $180,000 per year (highest market). Salary may vary by location and experience. Equity may also be provided.

Location

The Galvanick team is based in Seattle. We expect new team members to be in office and will cover relocation expenses.

ITAR Requirements

To conform to US Government export regulations (ITAR) you must be a US citizen, lawful permanent resident, protected individual, or eligible to obtain required authorizations. Galvanick is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, national origin, disability, veteran status, sexual orientation, gender identity, or any other protected status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detections Engineer
Senior Detections Engineer

Voiceflow • Seattle (WA)

On-site
USD 100,000 - 180,000
Comprehensive medical, dental, and vision insurance
Relocation expenses covered
Equity opportunities
+1
Head of Engineering
Head of Engineering

Galvanick • Seattle (WA)

On-site
USD 200,000 - 350,000
Top-tier medical, dental, and vision insurance
Relocation expenses covered
Potential equity in the company
Lead Threat Intelligence Automation for OT/ICS
Lead Threat Intelligence Automation for OT/ICS

Galvanick • Seattle (WA)

On-site
USD 100,000 - 180,000
Top-tier medical, dental, and vision benefits
Relocation expenses covered
Equity options
Infrastructure Engineer
Infrastructure Engineer

Voiceflow • Seattle (WA)

On-site
USD 100,000 - 180,000
Health insurance
Equity options
Relocation assistance
Threat Intelligence Engineer
Threat Intelligence Engineer

Anthropic • Washington, San Francisco (CA)

Hybrid
USD 320,000 - 405,000
Threat Intelligence and Detection Engineer
Threat Intelligence and Detection Engineer

Insane Cyber • San Antonio (TX)

On-site
USD 90,000 - 120,000
Competitive Base Salary
Equity offering subject to board approval
Comprehensive medical/dental/vision/life insurance plan
+2
Threat Intelligence Engineer
Threat Intelligence Engineer

Entech • Malvern

Hybrid
USD 140,000 - 190,000
Health, Dental, Vision, 401(k)
ICS Threat Intelligence Strategist (OT/SCADA)
ICS Threat Intelligence Strategist (OT/SCADA)

Peraton • Arlington (VA)

On-site
USD 100,000 - 130,000
Threat Hunt Analyst
Threat Hunt Analyst

Booz Allen Hamilton • Lakewood (CO)

On-site
USD 99,000 - 225,000
Comprehensive health benefits
Paid leave
Professional development
+1
Senior Threat Intelligence Engineer
Senior Threat Intelligence Engineer

Higlobe, Inc. • United States

On-site
CAD 196,000 - 282,000
Flexible Paid Time Off
Equity Compensation
Growth and Development Fund
+1