Threat Intelligence Researcher (Cloud)

Cacheflow

United States

On-site

USD 160,000 - 220,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Wiz seeks a Threat Intelligence Researcher (Cloud) to join the Threat Research team and advance cloud security insights. You will track, analyze, and report on the most sophisticated threats targeting cloud environments, including state-backed and financially motivated campaigns.

You will hunt across diverse data sources, attribute incidents, and communicate findings to customers and the public, helping secure Wiz customers and strengthen cloud-native defenses.

Qualifications

  • 5+ years of experience in security or threat research, focusing on advanced state-backed actors or sophisticated financially motivated campaigns.

Responsibilities

  • Identify, analyze, and track advanced state-backed or financially motivated attackers targeting cloud ecosystems.
  • Hunt through diverse data sources to identify malicious campaigns targeting Wiz customers.
  • Leverage open and closed data to map infrastructure and malware used by advanced actors.
  • Investigate and attribute incidents, campaigns, and threat actors to understand motivations.
  • Communicate novel findings to customers and public audiences.

Skills

Threat research
Threat actor tracking
Telemetry analysis
Malware analysis
YARA rules
Query languages
Communication

Job description

Come join the organization that is redefining security for the AI era. As one of the fastest-growing startups ever, we enable teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. Trusted by security teams all over the world, we have a proven track record of success and a culture that values world-class talent. Not to mention, we’re now powered by Google, meaning we offer our customers an AI-powered platform that harnesses Google’s Threat Intelligence and Security Operations to better detect, prevent, and respond to threats across all environments, allowing for further innovation.

Our Wizards from all over the globe work together to protect the infrastructure of our customers, including over 65% of the Fortune 100, who trust us to scan and secure over 230 billion files daily. We’re honored to be a leading player in a massive and growing market, and we continue to look for exceptional Wizards who are eager to make a significant impact on our team. At Wiz, you’ll have the freedom to think creatively, dream big, and use your full range of skills to contribute to our momentous growth. Come join our team and help us create secure cloud environments that allow even the best companies to move faster, all while having some fun!

SUMMARY

We’re looking for a Threat Intelligence Researcher (Cloud) to join the Threat Research team and spread the power of Wiz. In this role, you will track, analyze and report on the most advanced threats targeting cloud environments. We are aiming to hire a cyber espionage specialist and a cyber crime specialist.

WHAT YOU’LL DO
  • Identify, analyze, and track advanced state-backed or/and financially motivated attackers that target cloud ecosystems.
  • Hunt through a wide range of data sources to identify malicious campaigns targeting Wiz customers.
  • Leverage open and closed-data to track the infrastructure and malware used by advanced actors.
  • Investigate and attribute incidents, campaigns, and threat actors to understand more about the attackers and what motivates them.
  • Communicate novel findings to multiple audiences, including customers and the public.
WHAT YOU’LL BRING
  • 5+ years of experience in security or threat research, with a focus on either advanced state-backed actors or sophisticated financially motivated campaigns. proven track record of tracking sophisticated threat actors.
  • Ability to find novel and durable ways of identifying and tracking threat actors across multiple data sets.
  • Deep subject matter expertise in at least one actor tracking mechanism (malware, infrastructure, etc)
  • Experience working with large-scale telemetry, especially infrastructure hunting and by pivoting through query languages and scripting.
  • Familiarity with malware analysis and using YARA to hunt for malware.
  • Willingness to take on multiple roles to build out actor tracking.
ADVANTAGE
  • Knowledge of how attackers target the major cloud and identity providers (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
  • Experience building tools to exploit data sources in a repeatable and scalable manner.
  • Track record of public communication of novel and newsworthy findings.
  • Background in incident response, threat intelligence, or threat hunting.
Compensation + Benefits

Compensation for this full-time position includes base salary + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.

US Base Pay Range

$160,000 — $220,000 USD

Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship. This role does not offer visa sponsorship.

Wiz is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.

By submitting your application, you acknowledge that Wiz will process your personal data in accordance with Wiz's Privacy Policy.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Researcher (Cloud)
Threat Intelligence Researcher (Cloud)

Visa Hunt • United States

On-site
USD 190,000 - 262,000
Equity
Cyber Threat Intel Analyst
Cyber Threat Intel Analyst

Wiz, Inc. • Washington

On-site
USD 160,000 - 220,000
Cyber Threat Intel Analyst
Cyber Threat Intel Analyst

Cacheflow • Washington

On-site
USD 160,000 - 220,000
Cyber Threat Intel Analyst CTO / Threat & AI Research Washington, D.C.
Cyber Threat Intel Analyst CTO / Threat & AI Research Washington, D.C.

Wiz • Washington, Northern (KY)

Hybrid
USD 160,000 - 220,000
Equity
Benefits
Threat Detection Researcher (Windows/Linux/MacOS)
Threat Detection Researcher (Windows/Linux/MacOS)

Cacheflow • New York (NY)

On-site
USD 200,000 - 250,000
Cyber Threat Intel Analyst
Cyber Threat Intel Analyst

Wiz • United States

On-site
USD 160,000 - 220,000
Equity
Bonus potential
Comprehensive benefits
Threat Detection Researcher (Windows/Linux/MacOS)
Threat Detection Researcher (Windows/Linux/MacOS)

Wiz • New York (NY)

On-site
USD 200,000 - 250,000
Bonus
Equity
Benefits
Sr. Technical Account Manager (Northeast)
Sr. Technical Account Manager (Northeast)

Wiz • United States

On-site
USD 129,000 - 179,000
Account Executive, SLED Central
Account Executive, SLED Central

Cacheflow • Chicago (IL)

On-site
USD 166,000 - 190,000
Equity
Annual bonus
Solutions Engineer, Growth - East
Solutions Engineer, Growth - East

Cacheflow • United States

On-site
USD 139,000 - 182,000