Threat Intelligence and Detection Engineer

Insane Cyber

San Antonio (TX)

On-site

USD 90,000 - 120,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Competitive Base Salary
Equity offering subject to board approval
Comprehensive medical/dental/vision/life insurance plan
Retirement plan with employer match
Flexible working hours and generous time-off policy

Job summary

A cybersecurity firm in San Antonio is seeking a Threat Intelligence and Detection Engineer. This position involves providing consultancy services to mitigate cybersecurity risks, developing innovative detection strategies, and working on industry-leading products like Valkyrie and Cygnet. Candidates should have 3-5 years in cybersecurity and a relevant degree, with skills in digital forensics and incident response. The firm offers competitive benefits, including a comprehensive insurance plan and flexible working hours.

Qualifications

  • Minimum 3-5 years of full-time experience in cybersecurity.
  • Experience in a startup or rapidly growing professional services organization is a plus.
  • Deep working knowledge of MITRE ATT&CK, D3FEND, or other threat modeling frameworks.

Responsibilities

  • Provide expert proactive and reactive consultancy services to clients.
  • Develop innovative ways to implement detection of threats in Valkyrie and Cygnet.
  • Participate in incident response efforts throughout the IR life cycle.

Skills

Digital forensics
Incident response
Threat hunting
Client relationship management
Communication skills

Education

Bachelor’s or Master’s degree in Information Technology, Cybersecurity

Tools

Suricata
Yara
Sigma
Zeek

Job description

Overview

At Insane Cyber, we’re focused on advancing cybersecurity for the better. We’ve developed innovative tools backed by expert support to change how organizations perform deep level proactive and reactive analysis. We partner with our customers to provide cutting-edge solutions and services to help protect our critical infrastructure and critical operations from threats – from the power grid to manufacturing. Our flagship Valkyrie and Cygnet products provide host and network analysis automation beyond the capabilities of other products on the market. Our Corvus and Aesir product lines deliver managed and professional services to help assess and fill gaps and weaknesses in the security posture of clients\' security programs. It’s an exciting time for us as we continue to grow our products and services, and we need a great team in place!

As we grow, we are seeking a Threat Intelligence and Detection Engineer to join our team. This role is crucial for the continued development and enhancement of our flagship products, Valkyrie and Cygnet. You will be a key player in our professional services team, bringing your expertise and innovative thinking to advance our technology and maintain our competitive edge in the market.

Responsibilities
  • Provide expert proactive and reactive consultancy services to clients, helping them understand and mitigate cybersecurity risks. Typical services include, but are not limited to threat hunting, incident response, digital forensics, and architecture reviews.
  • Keep up with current and emerging threats and develop innovative ways to implement detection of threats in Valkyrie and Cygnet with both host and network data.
  • Collaborate with engineering, professional services, external customers and other internal and external groups to identify, architect, develop and deliver capabilities to end users.
  • Perform analysis and investigations, correlating events and data to detect security incidents.
  • Participate in incident response efforts through out the IR life cycle.
  • Develop and maintain security incident response plans.
  • Operationalize, monitor, and optimize security and network monitoring solutions.
  • Improve observability and monitoring of the customer environments, collaborating with internal and customer teams to enhance visibility into security events and incidents.
  • Apply working experience with protocol dissection and proprietary protocol analysis—preferably in the industrial space.
  • Work with a cross-functional team to develop new detections specifically for industrial environments.
  • Deliver solutions to and manage cybersecurity projects, ensuring alignment with client needs and best industry practices.
  • Build and maintain strong relationships with clients, acting as a trusted advisor in cybersecurity matters.
  • Ensure the quality and timeliness of service delivery, adhering to project deadlines and client expectations.
  • Stay updated on the latest cybersecurity trends and technologies, applying this knowledge to improve service quality.
Qualifications
  • Minimum 3-5 years of full-time experience in cybersecurity
  • Bachelor’s or Master’s degree in Information Technology, Cybersecurity, or a related field, or equivalent experience
  • Experience in digital forensics, incident response, or threat hunting is a plus
  • Experience in industrial sectors, Operational Technology (OT), Industrial Control Systems (ICS) and/or critical operations assurance is a plus
  • Experience in a startup or rapidly growing professional services organization is a plus
  • Working knowledge of proprietary and open-source threat detection engines and rulesets (Suricata, Yara, Sigma, Zeek, etc.)
  • Working experience with host and network data analysis across packet capture files, host logs, registry, memory and/or disk artifacts
  • Working knowledge of major nation state and criminal level threats and experience building host and network detections to identify those threats
  • Deep working knowledge of MITRE ATT&CK, D3FEND, or other threat modeling frameworks
  • [Nice to Have] Proficiency in backend languages and frameworks, such as Python, JavaScript, C, Go, Rust, or similar technologies
  • Proven track record of successful delivery in a consulting environment
  • Excellent client relationship management skills and the ability to explain complex technical concepts clearly
  • Strong communication skills, collaboration mindset, and an ability to learn quickly
Benefits
  • Competitive Base Salary
  • Equity offering subject to board approval
  • Comprehensive medical/dental/vision/life insurance plan
  • Retirement plan with employer match
  • Flexible working hours and generous time-off policy

Insane Cyber is proud to be an equal-opportunity employer. We celebrate diversity and strive to foster an inclusive environment for all employees. If you\'re a visionary with a passion for pushing the boundaries of industrial cybersecurity, we\'d love to hear from you.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Engineer, Managed Services
Senior Cybersecurity Engineer, Managed Services

Critical-Start- • Washington

On-site
USD 120,000 - 140,000
Competitive salary with bonuspotential
Comprehensive health benefits
Unlimited PTO
+3
SOC Analyst II
SOC Analyst II

Sentinel Blue • United States

Remote
USD 90,000 - 130,000
Healthcare coverage
Paid certification and training
Vacation and holidays
+1
Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

Agecareers • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
Senior Solutions Architect - Public Sector
Senior Solutions Architect - Public Sector

Cyware • United States

Remote
USD 140,000 - 190,000
Cybersecurity - Cyber Defense Analyst - Malware, Vulnerability, Incidents
Cybersecurity - Cyber Defense Analyst - Malware, Vulnerability, Incidents

Erias Ventures • Fort Meade (MD)

On-site
USD 210,000 - 232,000
Above Market Hourly Pay
401k with immediate vesting
Professional development bonuses
+2
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Offensive Cyber Engineer
Offensive Cyber Engineer

Cryptic Vector • Fredericksburg (VA)

Hybrid
USD 120,000 - 160,000
100% Company-paid medical insurance
100% Company-paid dental and vision
Competitive salary and bonus
+5
Senior Cybersecurity Engineer, Managed Services
Senior Cybersecurity Engineer, Managed Services

Critical Start • Dallas (TX)

On-site
USD 120,000 - 140,000
Competitive salary with bonus潜
Health benefits
Unlimited PTO
+3
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Agecareers • Columbus (OH)

On-site
USD 110,000 - 130,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
Senior Cybersecurity Engineer, Managed Services
Senior Cybersecurity Engineer, Managed Services

Critical Start • Austin (TX)

On-site
USD 120,000 - 140,000
Unlimited PTO
Health benefits
401(k) with matching