Threat Intelligence Engineer

Docusign

United States

Hybrid

USD 120,000 - 180,000

Full time

31 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

DocuSign is seeking a threat-intelligence engineer to build the foundation for collecting, processing, and analyzing cyber-threat-intelligence data at scale. This IC role blends data engineering, automation, and platform integration to deliver dependable tools, dashboards, and data services in partnership with intelligence analysts.

You will design scalable data pipelines, integrate threat data with enterprise security tools, and produce dashboards showing system performance and business impact.

Qualifications

  • 3+ years in threat-intelligence engineering, incident response, security automation, or data engineering.
  • Hands-on experience with generative AI in security operations.
  • Experience deploying and maintaining threat-intelligence platforms.
  • Proficiency creating and managing interactive Python notebooks, configuring data connections, building reusable workflows, and documenting analysis.
  • Bachelor’s or Master’s in Computer Science, Cybersecurity, or related field, or equivalent practical experience.
  • Strong written and verbal communication skills.

Responsibilities

  • Architect, build, and maintain infrastructure for collecting, processing, storing, and analyzing cyber-threat-intelligence data.
  • Create scalable automations, data pipelines, integrations, and centralized access patterns for intelligence operations.
  • Apply engineering practices that improve data quality, reliability, observability, and operational awareness.
  • Partner with analysts to translate operational needs into high-performing technical solutions.
  • Configure and maintain threat-intelligence platforms and connect structured threat data to enterprise security tools.
  • Produce technical documentation, interactive dashboards, and metrics that show system performance and business impact.

Skills

Threat intelligence
Data engineering
Security automation
Python
Generative AI

Education

Bachelor's or Master's in CS/Cybersecurity

Tools

Python
SQL
CI/CD

Job description

Role overview

Build the engineering foundation that enables a threat-intelligence function to collect, process, analyze, and disseminate security information at scale. This individual-contributor role combines data engineering, security automation, infrastructure, platform integration, and operational visibility. You will work closely with intelligence analysts to turn requirements into dependable tools, workflows, dashboards, and data services.

Responsibilities
  • Architect, build, and maintain infrastructure for collecting, processing, storing, and analyzing cyber-threat-intelligence data.
  • Create scalable automations, data pipelines, integrations, and centralized access patterns for intelligence operations.
  • Apply engineering practices that improve data quality, reliability, observability, and operational awareness.
  • Partner with analysts to translate operational needs into high-performing technical solutions.
  • Configure and maintain threat-intelligence platforms and connect structured threat data to enterprise security tools.
  • Produce technical documentation, interactive dashboards, and metrics that show system performance and business impact.
Requirements
  • At least 3 years of experience in threat-intelligence engineering, incident response, security automation, or data engineering.
  • Hands‑on experience using generative AI in security operations, including prompt design, model benchmarking, and integration into intelligence workflows.
  • Experience deploying and maintaining threat-intelligence platforms and integrating structured threat data.
  • Proficiency creating and managing interactive Python notebooks, configuring data connections, building reusable workflows, and documenting analysis.
  • Bachelor’s or master’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
  • Strong written and verbal communication skills for explaining complex technical concepts.
Nice to have
  • Experience with cloud data platforms, automation services, and infrastructure as code in AWS, Azure, or GCP.
  • Git‑based development practices including pull requests, code review, CI/CD, and automated testing.
  • Integrations with SIEM, SOAR, EDR/XDR, vulnerability‑management, or case‑management systems.
  • Familiarity with STIX/TAXII, MITRE ATT&CK, Python, SQL, APIs, and relational, graph, or search databases.
Benefits and work setup
  • Hybrid position requiring access to an office and typically at least two in‑office days per week; frequency may vary by team.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Automation Engineer
Threat Intelligence Automation Engineer

Compunnel, Inc. • Pennsylvania

On-site
USD 120,000 - 150,000
Threat Intelligence Engineer
Threat Intelligence Engineer

Anthropic • Washington, San Francisco (CA)

Hybrid
USD 320,000 - 405,000
Security Engineer - Threat Intel
Security Engineer - Threat Intel

Anthropic • New York (NY)

On-site
USD 320,000 - 405,000
Sr Cyber Threat Intelligence Analyst
Sr Cyber Threat Intelligence Analyst

PRI Technology • Austin (TX)

On-site
USD 90,000 - 120,000
Threat Intelligence Lead
Threat Intelligence Lead

Group 1001 • United States

On-site
USD 175,000 - 225,000
Comprehensive health, dental, and vision insurance
401K plan with company matching contributions
Employee Assistance Program
+1
Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst

Check Point Software Technologies • Dallas (TX)

On-site
USD 65,000 - 90,000
Threat Intelligence Engineer - AI-Powered Security
Threat Intelligence Engineer - AI-Powered Security

CloudFlare • United States

Hybrid
USD 140,000 - 190,000
Equity plan
Health & welfare benefits
401(k) Retirement Savings Plan
+2
Senior Security Platform Engineer
Senior Security Platform Engineer

Docusign • United States

Hybrid
USD 150,000 - 210,000
Hybrid work arrangement
Technical Threat Investigator, Threat Intel Engineering
Technical Threat Investigator, Threat Intel Engineering

OpenAI • United States

On-site
USD 90,000 - 130,000
Staff Threat Hunting, Intelligence Engineer
Staff Threat Hunting, Intelligence Engineer

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000