Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Remote Staff Cyber Threat Intelligence Analyst

Full-time

TRM Labs

Build a Safer World.

TRM Labs provides AI-powered intelligence solutions that help public and private sector agencies investigate and disrupt crime. TRM’s platforms enable investigators to trace illicit activity, build cases, and construct operating pictures of threat networks. Leading agencies and businesses worldwide rely on TRM to make the world safer and more secure.

About the role:

As a Staff Cyber Threat Intelligence Analyst , you will conduct high-complexity investigations, support time-sensitive blockchain analysis for our partners, and shape investigative methods, workflows, and analytical capabilities that allow TRM to scale rapidly and effectively.

You will collaborate with blockchain intelligence experts, engineers, and data scientists to raise the quality, repeatability, and operational relevance of TRM’s cyber threat intelligence capabilities.

The impact you will have:

  • Produce finished cyber threat intelligence, including actor profiles, campaign reports, IOC packages, infrastructure attributions, and evidence-ready analytical outputs.

  • Act as a staff-level analytical leader across multiple active actors and campaigns at once, raising quality, shaping standards, and coaching other analysts through exemplary tradecraft and judgment.

  • Drive the highest-complexity investigations from seed indicators such as domains, IPs, hashes, aliases, or wallets through to attributed actors, clusters, or campaign pictures, and codify the methods others can reuse.

  • Correlate technical indicators with OSINT, identity signals, infrastructure patterns, and financial-rail activity to build a fuller understanding of adversary behavior.

  • Triage large indicator sets, cluster infrastructure, and turn fragmented signals into clear, defensible findings while improving the repeatability and rigor of how this work is done across the team.

  • Support incident responders, threat hunters, investigators, leadership, and external partners with timely, high-confidence intelligence products and briefings, especially where judgment, prioritization, and ambiguity are unusually high.

  • Evaluate and operationalize new analytical tooling by pressure-testing it on real workflows and identifying where it meaningfully reduces analyst effort, improves quality, or creates reusable leverage across investigations.

  • Drive better investigation workflows, analytic standards, and repeatable methods that increase analyst throughput without sacrificing rigor.

  • Partner across intelligence, engineering, and data science to translate investigative tradecraft into scalable analytical capabilities and product-informed improvements.

What we’re looking for:

  • 8+ years of experience in cyber threat intelligence, intelligence analysis, incident-driven investigations, or a closely related analytical field.

  • Demonstrated experience producing finished intelligence products such as actor profiles, campaign reports, attribution assessments, or infrastructure mapping.

  • Deep expertise in cyber investigations, infrastructure attribution, campaign analysis, and actor profiling, including the ability to set a high bar for analytical rigor in these areas.

  • Strong OSINT instincts and the ability to resolve identities, aliases, and behavior across fragmented sources.

  • The ability to connect technical findings to financial infrastructure, including wallets, laundering paths, sanctions exposure, or identity-linked leads when relevant to the investigation.

  • Excellent judgment about analytical confidence, evidentiary strength, and what can or cannot be defended in a report, referral, or operational setting, including the ability to guide others on those standards.

  • A track record of leading complex investigations, improving workflows, shaping analytical standards, and raising the quality of work beyond your own cases.

  • Excellent written and verbal communication skills, with the ability to package findings for technical and non-technical audiences alike.

  • Comfort operating in a fast-paced environment where priorities can change quickly and ambiguity is normal.

  • AI fluency is required. AI tools should be a meaningful part of your research, synthesis, and workflow acceleration toolkit, with strong human quality control over the resulting output.

About the Team:

  • TRM’s intelligence and investigations work combines national-security-grade tradecraft with deep analytical workflows across cyber, OSINT, and blockchain-enabled threat activity.

  • This role sits at the intersection of intelligence production, investigations, and product-informed tradecraft, helping ensure TRM’s analytical capabilities remain operationally relevant, scalable, and high-quality across multiple use cases and stakeholders.

  • Distributed team with an async-first approach via Slack and Notion, plus structured syncs for alignment

  • High autonomy, high standards, low bureaucracy — work directly with analysts, engineers, and customers who depend on your output

Team Operating Rhythms:

  • Weekly team syncs to align targeting priorities and review disruption opportunities

  • Daily async standups via Slack on active work, returns, and target packages in flight

  • Primary time zone overlap: US Eastern / Central

  • All output documented in Notion and TRM’s investigative tools

  • Surge availability expected during time-sensitive disruption windows

Learn about TRM Speed in this position:

  • Move quickly from a single lead or indicator to an initial analytical picture while the signal is still operationally useful.

  • Support partners and internal teams on time-sensitive issues where fast, defensible judgment matters more than perfect information.

  • Continuously adapt your tradecraft as adversaries, data sources, and analytical tooling evolve.

Application Instructions

If you’re interested in joining TRM, we encourage you to apply directly. Every application is reviewed by our Talent team.

Before applying, review the job description carefully and highlight the experience and impact that best demonstrate the required qualifications. Please also provide thoughtful and accurate answers to the application questions, as these will be used to evaluate your qualifications for the role.

If you send your resume directly to someone at TRM, we can’t guarantee it will reach the appropriate hiring team. Applying directly is the best way to ensure you’re considered.

What to Expect From Our Interview Process

Our process is designed to understand how you think, solve problems, and deliver impact, while giving you the opportunity to evaluate TRM. Most interview processes include a case study, AI skills assessment, and Leadership Principles interview.

  • Recruiter Intro: Explore your experience, motivations, and alignment with the role.

  • Hiring Manager: Dive deeper into your relevant experience, skills, and impact.

  • First Round: Typically 1–2 interviews focused on the skills most critical to the role.

  • Final Round: Typically 3–5 interviews to go deeper on your craft, problem-solving, and alignment with TRM.

  • References: We’ll speak with former colleagues who can provide perspective on your work and impact.

  • Offer: If it’s a mutual fit, your recruiter will walk you through your offer and answer your questions.

  • Welcome to TRM: Once you sign, we’ll get you ready for your first day and onboarding.

Your recruiter will share your specific interview plan and preparation guidance along the way.

Life at TRM

We are building a safer world. That promise shows up in how we work every day.

TRM moves quickly. We are a high velocity, high ownership team that expects clarity, follow-through, and impact. People who thrive here are energized by hard problems, experimentation, and continuous feedback. If something takes months elsewhere, it will ship here in days.

Our work sits at the intersection of AI, national security, and fighting crime. The problems are complex, the stakes are real, and the environment evolves quickly. The pace and intensity of the work reflect the importance of the mission. As a result, the way we operate requires a high level of ownership, adaptability, collaboration, and creative problem-solving.

At TRM, you should expect:

  • Priorities and targets to change quickly as we experiment and iterate

  • Work that often requires operating with a high degree of ambiguity

  • A high level of personal ownership and accountability

  • Close collaboration across teams and functions

  • Frequent, high-touch communication

  • Creative problem solving and out-of-the-box thinking

  • A pace that rewards urgency, adaptability, and outcomes

This environment is energizing for people who enjoy building, solving hard problems, and making progress in situations that are not always fully defined. It also requires comfort navigating ambiguity, adjusting course as new information emerges, and maintaining focus and positivity in a fast-moving and intense environment.

We also recognize that this style of operating is not for everyone. If you are primarily optimizing for predictability or a consistently balanced workload, we encourage you to use the interview process to pressure test whether this environment is truly the right fit. We want teammates who thrive here, not just survive here.

At the same time, many people find this work deeply rewarding. If you are excited by meaningful problems, motivated by ambitious goals, and energized by working alongside mission-driven colleagues, there is a good chance you will find TRM to be an exceptional place to grow and contribute. Learn more: Interviewing at TRM: How We Hire and What Success Looks Like

AI Fluency at TRM

AI fluency is a baseline expectation at TRM.

We believe AI meaningfully changes how top performers operate. We expect every team member to use AI to accelerate and reimagine their craft, not just automate surface tasks.

At TRM, AI fluency means you are among the top 10 percent of operators in your function in how you apply AI to:

  • Accelerate repeatable workflows

  • Structure and solve problems

  • Improve output quality

  • Increase speed and leverage

You will be evaluated on applied AI fluency during the interview process.

Leadership Principles

We hire and grow against three leadership principles. They’re the standards for how we operate, treat each other, and make decisions.

  • Impact-Oriented Trailblazer: We put customers first and move with speed, focus, and adaptability. We treat every plan like an experiment – test, ship, measure, and iterate quickly.

  • Master Craftsperson: We care deeply about our craft. We balance speed with high standards, own outcomes end‑to‑end, and invest in getting better everyday.

  • Inspiring Colleague: We add clarity and energy, not noise. We bring humility, candor, and a one‑team mindset — giving and receiving feedback to make the team stronger.

Join our Mission

At TRM we care deeply about our craft. We are looking for individuals who want their work to matter, who experiment with speed and rigor, and who take pride in building a safer world for billions of people. If you’re excited by TRM’s mission but don’t check every box, we encourage you to apply — we hire for slope, judgment, and the will to learn fast.

TRM is a Series C company with $220M in total funding, backed by Goldman Sachs, Bessemer, Y Combinator, Thoma Bravo, and others. Headquartered in San Francisco, TRM operates as a distributed-first company with hubs in Los Angeles, San Francisco, New York, Washington D.C., London, and Singapore.

Privacy Policy and Additional Information

By submitting your application, you agree to allow TRM Labs to process your personal information in accordance with our Privacy Policy .

We collect the information you provide (such as your resume, work history, and contact details) solely for the purpose of evaluating your candidacy for current and future roles at TRM.

Because our hiring cycles for certain positions may span 24 to 36 months, we retain your personal information for up to 36 months from the date of your application. After that period, your data is deleted unless a different retention period is required or permitted by law.

If you are located in the European Economic Area, the United Kingdom, or another jurisdiction with applicable data protection laws, you have the right to access, correct, or request deletion of your personal data at any time before that period ends. To exercise any of these rights, contact us at View email address on us.fitly.work .

To notify TRM Labs that you believe this job posting is non-compliant, please submit a report through this form . No response will be provided to inquiries unrelated to job posting compliance.

The use of AI tools of any kind (including but not limited to notetakers, interview assistants, and real-time coaching tools such as Otter.ai, Fireflies, Fathom, Cluey, or similar) during TRM interviews is not permitted without prior approval from TRM. TRM uses its own internal tools for note-taking to ensure a consistent and confidential experience for all candidates.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this form .

Recruitment agencies

TRM Labs does not accept unsolicited agency resumes. Please do not forward resumes to TRM employees. TRM Labs is not responsible for any fees related to unsolicited resumes and will not pay fees to any third-party agency or company without a signed agreement.

Learn More : Company Values | Interviewing | FAQs

Jobicy JobID: 152155
Vacancy posted 8 days ago
Similar jobs that could be interesting for youBased on the Remote Staff Cyber Threat Intelligence Analyst in Remote vacancy
  •  ...or CST preferredRemote Working: 100% remote working possibleSalary: On ApplicationSector...  ..., market leader in deep and dark web cyber threat intelligence. The company helps Fortune 500...  ...talented and experienced Threat Intelligence Analyst to join the new Intelligence... 
    Remote work
    Cyber
    Permanent employment
    Full time

    Chronos Consulting

    New York, NY
    4 days ago
  • - Position: SOC Threat Intelligence Analyst - Work Location: Iowa Department of Management Division of Information Technology Security Operations...  ...- High integrity - Strong understanding of cyber security technologies and strategies - Ability to work effectively... 
    Remote work
    Cyber
    Local area

    Argyll Infotech, Inc.

    United States
    3 days ago
  • $77.6k - $176k

    Cyber Threat Intelligence AnalystThe Opportunity:Are you interested in understanding not only who is targeting...  ...Intelligence and Supply Chain Risk Analyst, you’ll identify, analyze, and...  ...have their cameras on during meetings.Remote: If this position is listed as remote,... 
    Remote work
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    Washington DC
    4 days ago
  •  ...with analyzing and tracking cyber threats at the strategic, operational...  ...for prior all-source analysts with cybersecurity experience...  ...strategic, operational and tactical intelligence experience within a...  ...Microsoft Azure ecosystem. Remote work is available with this... 
    Remote work
    Cyber
    Shift work

    PUNCH Cyber Analytics Group

    United States
    4 days ago
  •  ...Cyber Threat Intelligence Analyst SIX drives the transformation of financial markets. What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth. We value bright minds and inspire... 
    Remote work
    Cyber
    Local area
    Work from home
    Flexible hours

    SIX

    United States
    2 days ago
  • Booz Allen Hamilton seeks a Cyber Threat Intelligence Analyst, Mid, to support a Security Operations Center by collecting, analyzing, and correlating CTI from open sources, government, and industry feeds. This role operationalizes ThreatConnect to enrich investigations... 
    Remote job
    Cyber

    Phase2 Technology

    Bethesda, MD
    4 days ago
  •  ...Cyber Threat Intelligence Analyst Optum is a global organization that delivers care, aided by technology to help millions of people live healthier...  ...and maturing our Cyber Threat Intelligence program. This remote position offers the unique opportunity to leverage... 
    Remote work
    Cyber
    Contract work
    Work experience placement
    Shift work

    UnitedHealth Group

    United States
    1 day ago
  • $141.5k - $236k

     ...MANTECH is seeking a motivated, career and customer-oriented Cyber Threat Intelligence Analyst to join our team in Lorton, VA. The core...  ...that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal... 
    Remote work
    Cyber
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Local area
    Immediate start

    ManTech International Corporation

    Lorton, VA
    3 days ago
  • Location: NYC NY 10002 On-site/Remote/Hybrid: Hybrid Duration: 6 to 12 Months Job Description The Senior Cyber Threat Intelligence (CTI) Analyst will serve as a strategic force multiplier in protecting Clients infrastructure by identifying, analyzing, and contextualizing... 
    Remote work
    Cyber

    InterSources

    New York, NY
    20 hours ago
  • InterSources Inc in New York is seeking a Senior Cyber Threat Intelligence Analyst to strengthen their cyber defense strategies. The role involves proactive...  ...readiness against threats. This hybrid role combines remote work flexibility with on-site collaboration. #J-18808-... 
    Remote work
    Cyber

    InterSources Inc

    New York, NY
    20 hours ago
  • Mandiant, a Google Cloud company, is seeking a Senior Cyber Threat Analyst in Threat Intelligence for an onsite role in New York City three days per week with remote options for New York and New Jersey. You will evaluate threats, perform strategic and operational threat... 
    Remote work
    Cyber
    3 days per week

    Google Inc.

    New York, NY
    3 days ago
  • Booz Allen Hamilton is seeking a Cyber Threat Intelligence Analyst to identify and analyze threats that could affect critical systems and supply chains. You will collect intelligence from multiple sources and translate it into actionable guidance for cybersecurity and operations... 
    Remote job
    Cyber

    Booz Allen Hamilton

    Seattle, WA
    1 day ago
  •  ...combining technology, threat intelligence, and expert services....  ...Here, you will find a remote-first mission-driven team...  ...About the Role : Our Cyber Threat Intelligence...  ...Cyber Threat Intelligence Analyst who will directly...  ...work onsite with their staff, understand their systems... 
    Remote work
    Cyber
    Local area
    Immediate start

    Dragos, Inc.

    Brooklyn, NY
    4 days ago
  •  ...senior-level Information Technology Specialist 5 (ITS5) - Cyber Threat Intelligence Analyst to serve as the authoritative intelligence resource...  ...expectations of their work responsibilities may request fully remote work and develop a hybrid/remote schedule collaboratively... 
    Remote work
    Cyber
    Full time
    Work experience placement
    Local area
    Flexible hours

    State of Iowa - Executive Branch

    Des Moines, IA
    10 hours ago
  • $107.9k - $195.05k

    The Leidos Digital Modernization sector is looking for a Cyber Threat Intelligence Analyst to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026.Our team provides mission critical, 24/7 operational... 
    Remote work
    Cyber
    Full time
    Summer work
    Casual work
    Shift work
    Night shift
    Rotating shift

    Leidos

    Washington DC
    4 days ago
  • $114k - $211k

     ...assets worldwide from physical threats.The impact you’ll makeAs a Protective Intelligence & Threat Analyst at Lam, you will play a...  ...highly desirable. This is not a cyber-threat intelligence position,...  ...and the flexibility to work remotely and fall into two categories... 
    Remote work
    Cyber
    Local area
    Worldwide
    Flexible hours
    Shift work
    2 days per week
    3 days per week
    1 day per week

    Lam Research Corporation

    Fremont, CA
    1 day ago
  • $60k - $70k

     ...is committed to providing high-quality investigative, intelligence, and forensic services to support law enforcement agencies...  ...join our team at General Responsibility Serve as a Cyber Threat Intelligence Analyst for South Carolina Critical Infrastructure... 
    Remote work
    Cyber
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Monday to Friday
    Flexible hours

    State of South Carolina

    Columbia, SC
    20 hours ago
  • Required Qualifications:Experience with intelligence analysis principles or cyber threat intelligence (CTI) principles, including the ability to collect, analyze, and assess threat information.Specific experience conducting CTI analysis focused on China cyber threatsExperience... 
    Cyber

    Maania Consultancy Services

    Arlington, VA
    4 days ago
  • $84.9k - $120.57k

     ...be just what you’re looking for.Position SummaryThe Senior Threat Intelligence Analyst serves as the lead protective intelligence professional supporting...  ...threat cases.Maintain awareness of geopolitical, criminal, cyber-enabled, and social threats that may impact executive... 
    Cyber
    Full time
    Temporary work
    For contractors
    Work at office
    Immediate start

    Xcel Energy

    Minneapolis, MN
    3 days ago
  • $77.6k - $176k

    All-Source Intelligence AnalystThe Opportunity:With all the...  ...skilled intelligence analyst to know how to find...  ...exercises and illuminating threat trends and indicators...  ...of cyber operations, threat actors...  ...cameras on during meetings.Remote: If this position is listed... 
    Remote work
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    Honolulu, HI
    2 days ago
  • $102.68k - $171.13k

     ...seeking a Senior All-Source Intelligence Analyst to join our team in Houston,...  ...national response to the growing threat posed by transnational...  ...analysis, forensic accounting, cyber reconnaissance, data...  ...While many positions offer remote or hybrid work options, these... 
    Remote work
    Cyber
    Full time
    Temporary work
    Work at office
    Flexible hours

    NTT

    Houston, TX
    20 hours ago
  •  ...contingent upon contract award ***OverviewSOSi is seeking a Cyber Intelligence Analyst III to support cyber threat intelligence activities in alignment with our...  ...normal for an office environment, with occasional remote work options.May require the ability to lift/and or... 
    Remote work
    Cyber
    Contract work
    Casual work
    Work at office
    Worldwide

    SOSi

    Washington DC
    2 days ago
  • $140k - $160k

    Job DescriptionEverforth ECS is seeking a Mid Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking a skilled and analytical Mid Cyber Threat Intelligence (CTI) SME to support the organization... 
    Cyber

    ECS Federal

    Arlington, VA
    2 days ago
  • $86.8k - $198k

    Cyber Intelligence AnalystThe Opportunity:As a cyber intelligence analyst, you know that detailed threat analysis gives organizations a critical edge. At Booz Allen, you can leverage...  ...have their cameras on during meetings.Remote: If this position is listed as remote,... 
    Remote work
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    Washington DC
    1 day ago
  • $160k - $180k

    Job DescriptionEverforth ECS is seeking a Senior Cyber Threat Intelligence (CTI) Analyst to join our team in Arlington, VA (Hybrid). This position is contingent upon award.We are seeking an experienced Senior Cyber Threat Intelligence (CTI) Subject Matter Expert (SME) to... 
    Cyber

    ECS Federal

    Arlington, VA
    2 days ago
  • OverviewAbacus Technology is seeking a Cyber Intelligence Analyst to support network operations for the...  ...based on security analysis and changes in threat indicators.Develops threat profiles to...  ...(DHCP), network connectivity and remote access solutions, core and distributed... 
    Remote work
    Cyber
    Full time
    For contractors
    Shift work

    Abacus Technology Corporation

    Sumter, SC
    1 day ago
  •  ...focuses on defensive research to track adversaries and expand our threat coverage through reverse engineering and automation. You will...  ..., and collaborate across teams to inform mitigation strategies. Remote work with occasional travel is offered, with a strong emphasis on... 
    Remote work
    Cyber

    CrowdStrike

    El Paso, TX
    3 days ago
  • General information Job Posting Title Cyber Threat Intelligence Analyst Date Tuesday, July 14, 2026 City San Antonio State TX Country United States Working time Full-time Description & Requirements Maximus is looking to hire a Cyber... 
    Cyber
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement

    Maximus

    San Antonio, TX
    3 days ago
  •  ...Intelligence Analyst (Contingent Upon Contract Award) Location: Multiple...  ...Locations (CONUS) / Potential Remote Support Employment Type:...  ...reports, briefs, assessments, and threat analyses Support...  ...counterterrorism, counterintelligence, cyber, geopolitical, or force... 
    Remote work
    Cyber
    Full time
    Contract work
    For contractors
    Immediate start
    Shift work

    SENTRYSIX International

    Austin, TX
    3 days ago
  • DescriptionThreat Intelligence AnalystDescription Threat Intelligence Analyst with strong knowledge and experience with Department of Defense and Intelligence Community...  ..., social, and political environments relating to cyber and virtual environments. This position requires... 
    Cyber
    For contractors
    Work at office
    Shift work

    Science Applications International Corporation

    Arlington, VA
    20 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Remote Staff Cyber Threat Intelligence Analyst. Be the first to apply!