Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer - Threat Intel

$320k - $405k

Anthropic

Security Engineer - Threat Intel

New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC

About Anthropic

Anthropic's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the Role:

Anthropic sits at the frontier of AI development, which makes us one of the most interesting targets in the world for nation-state and advanced criminal actors. The Threat Intelligence function within our Detection & Response team exists to make sure we see them coming. As a Threat Intelligence Engineer, you'll be a hands-on practitioner responsible for producing the actionable intelligence that drives our detections, hunts, and defensive priorities. You'll track the adversaries most likely to target a frontier AI lab, build the tooling and pipelines that turn raw indicators into operational defenses, and work shoulder-to-shoulder with detection engineers and incident responders to make sure intelligence actually changes outcomes. This is a builder's role on a small, high-leverage team — you'll have broad latitude to shape how threat intelligence is collected, analyzed, and operationalized at Anthropic.

Responsibilities:
  • Research, track, and report on threat actors and campaigns targeting AI labs, cloud infrastructure, and the broader technology sector — producing timely, actionable intelligence for Security Engineering stakeholders
  • Build and maintain tooling and automated pipelines to collect, enrich, correlate, and operationalize indicators of compromise into our detection and alerting stack
  • Develop and execute intelligence-driven threat hunts across endpoint, cloud, identity, and SaaS telemetry, and turn findings into durable detections
  • Perform technical analysis of malware, phishing infrastructure, and attacker tooling to extract indicators, TTPs, and attribution signals
  • Partner with Detection Engineering and Incident Response to translate intelligence into detection rules, hunting hypotheses, and incident context in near-real-time
  • Curate and triage inbound intelligence from commercial feeds, open source, government, and trusted peer relationships — prioritizing what matters for Anthropic's threat model
  • Contribute to threat models and risk assessments that inform security architecture and defensive investment across the enterprise
  • Build and maintain external intelligence-sharing relationships with peer companies, ISACs, and government partners
You May Be a Good Fit If You:
  • Have 5+ years of hands-on experience in cyber threat intelligence, threat hunting, or intrusion analysis at an organization facing sophisticated adversaries
  • Have deep, demonstrable knowledge of specific nation-state or advanced criminal threat actors — their tooling, infrastructure patterns, tradecraft, and targeting
  • Are a strong engineer: you write production-quality Python (or similar), have built automation and data pipelines, and don't need to hand requirements to someone else to get tooling built
  • Are comfortable performing malware analysis, infrastructure analysis (passive DNS, certificate pivoting, netflow), and log analysis to develop and validate your own findings
  • Have experience authoring detection logic (YARA, Sigma, Snort/Suricata, or SIEM-native queries) and understand what makes a detection durable vs. brittle
  • Can write clearly and concisely — your intelligence products are read and acted on, not filed away
  • Have an existing network in the threat intelligence community and a track record of productive bidirectional sharing
Strong Candidates May Have:
  • Experience defending cloud-native and research-heavy environments (AWS/GCP, Kubernetes, ML infrastructure, developer tooling and supply chain)
  • Prior work operating in a threat intelligence role tracking sophisticated or state-sponsored adversaries, where your analysis directly informed detection, threat hunting, and incident response
  • Experience applying LLMs or other AI tooling to accelerate intelligence collection, enrichment, and analysis
  • Public research, conference talks, or open-source tooling contributions in the CTI space

Deadline to apply: None. Applications will be received on a rolling basis.

The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.

Annual Salary: $320,000 - $405,000 USD

Logistics

Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience

Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience

Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position

Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.

Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.

We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit anthropic.com/careers directly for confirmed position openings.

How We're Different

We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.

The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.

Come Work With Us!

Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Engineer - Threat Intel in Washington DC vacancy
  •  ...Threat Detection Security Engineer Job Description Overview CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100,... 
    Suggested
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Group

    Arlington, VA
    4 days ago
  • $150k - $201.6k

    Orrick currently has an excellent opportunity for a Senior IT Security Engineer, Threat Response. This position could be based in any of our U.S. offices and consideration given for 100% remote US locationsResponsibilitiesAs a Threat Hunter, you will play a critical role... 
    Suggested
    Temporary work
    Remote work
    Flexible hours

    Orrick, Herrington & Sutcliffe LLP

    Washington DC
    4 days ago
  • $110k - $135k

     ...Manager, the Web Developer Embeds security across the SDLC for mission-...  ...vulnerability lifecycle with threat modeling and validation;...  ...builds automation for threat-intel integration and incident response...  ...~3+ Web AppSec / AppSec Engineering / SSDLC ~ Modern web tech incl... 
    Suggested

    BaseCamp Consulting & Solutions

    Washington DC
    9 days ago
  • $140.5k - $210.5k

     ...assessments. The role demands a Bachelor's degree in a related field and 6-8 years of experience in cybersecurity. Key duties include threat intelligence analysis, incident response, and leading vulnerability management projects. The position is on-site in Washington and... 
    Suggested

    Federal Reserve System

    Washington DC
    3 days ago
  •  ...seeking a Vulnerability Analyst in Washington, DC to enhance the security posture of government infrastructure. In this role, you'll lead...  ...in tools like Tenable and Qualys to conduct scans, analyze threats, and mitigate risks effectively. Your responsibilities include... 
    Suggested

    Booz Allen Hamilton

    Washington DC
    3 days ago
  • $100k - $124k

     ...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations,...  ...efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission...  ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic... 
    Contract work
    Remote work

    SkyePoint Decisions

    Arlington, VA
    9 days ago
  • $100k - $124k

     ...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations,...  ...efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission...  ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic... 
    Contract work
    Remote work
    Overseas

    SkyePoint Decisions

    Arlington, VA
    8 days ago
  •  ...intelligence tools including Defense Intelligence Threat Library, Validated Online Lifecycle Threat...  ...on threat cyber capabilities Cyber security/penetration testing experience Cyber lab testing experience Engineering background (i.e., education credentials and... 
    Work experience placement
    Work at office
    Local area

    Noetic Strategies Inc.

    Alexandria, VA
    2 days ago
  •  ...A federal government agency is seeking Cyber Threat Analysts to conduct all-source analysis of foreign Cyber threats, supporting national security efforts. Candidates should hold degrees in relevant fields like Cyber Security or International Relations, possess strong... 

    Census Careers

    Washington DC
    3 days ago
  •  ...Cyber Threat Fusion Analyst The client is looking for a Cyber Threat Fusion Analyst...  ...Threat Intelligence products and network security monitoring and will perform as the analyst...  ...'s Degree in Computer Science, Computer Engineering or related field and 8+ years of prior... 
    Remote work

    Beyond SOF

    Alexandria, VA
    1 day ago
  •  ...Summary Cyber Threat Analysts assess foreign cyber intentions and capabilities to support U.S. national security interests. Learn more about this agency Duties Help As a Cyber Threat Analyst at CIA, you will analyze foreign cyber intentions and capabilities... 
    Full time
    Part time

    Central Intelligence Agency

    Washington DC
    18 hours ago
  •  ...leader in delivering advanced analytic, data engineering, and technology integration solutions in...  ...seeking a highly skilled Senior Cyber Threat Analyst to join our team. This role...  ...clearance to plan, implement, and monitor security measures, assess vulnerabilities, and... 
    Full time
    Local area

    Praescient Analytics

    Arlington, VA
    4 days ago
  •  ...assist with the restoration of services. They are seeking a  Cyber Threat Analyst  to support this critical customer mission....  ...vendor sites, Computer Emergency Response Teams [CERTs], SANS, Security Focus) to maintain currency of Computer Network Defense threat... 
    Contract work
    Immediate start
    Shift work

    NewGen Technologies (Maryland)

    Arlington, VA
    3 days ago
  •  ...Cyber Threat Analyst As a Cyber Threat Analyst at CIA, you will analyze foreign cyber intentions and capabilities to support U.S. national security interests. You will identify, monitor, and counter threats against US information systems and critical infrastructure... 

    US Government Jobs - Other Agencies

    Washington DC
    1 day ago
  •  ...Cyber Security Threat Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise... 

    Comtech LLC

    Washington DC
    1 day ago
  •  ...Cyber Threat Analysts conduct all-source analysis of foreign Cyber intentions and capabilities in support of U.S. Government efforts to counter threats to U.S. national security interests. Interested candidates should be passionate about the ideals of our American republic... 

    Census Careers

    Washington DC
    3 days ago
  •  ...apply today! Position Title: Lead Cyber Threat Analyst Location: Washington, DC...  ...and ensuring compliance with all federal security standards. This role is responsible for...  ...Computer Science, Information Technology, Engineering, or a related field. Minimum of 10... 
    For contractors
    Local area

    DirectViz Solutions, LLC

    Washington DC
    6 days ago
  •  ...recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a work hard, play hard mentality and... 

    ShorePoint

    Washington DC
    3 days ago
  •  ...Job Description Job Description Cyber Threat intelligence Analyst II Location: Onsite (CONUS) / Shift Work Clearance: Active...  ...and sources • Demonstrated ability to integrate cyber security related data from relevant sources into investigative or analytical... 
    Shift work

    Argo Cyber Systems

    Arlington, VA
    8 days ago
  •  ...Evolver Federal is seeking a Lead Cyber Threat Analyst to fulfil a requirement for a...  ...framework. Oversee malware analysis, reverse engineering, and forensic investigations for complex...  ...to enhance predictive and adaptive security capabilities. Apply Zero Trust... 
    Flexible hours

    Evolver Federal

    Washington DC
    10 days ago
  •  ...identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability...  ...Demonstrated ability to integrate cyber security related data from relevant sources into...  ...agencies. We possess highly skilled engineers, providing innovative solutions backed... 
    Local area
    Flexible hours

    BCMC

    Arlington, VA
    11 days ago
  • $142.79k - $172.5k

     ...Family: Cyber and IT Risk Management Skills: Cybersecurity, Cyber Threat Hunting, Forensic Analysis, Insider Threat Experience: 8+...  ...related experience Job Description Own your career as a Cyber Security Analyst at GDIT. Here, you’ll have the opportunity to build strong... 
    Temporary work
    Monday to Friday
    Flexible hours
    Shift work

    General Dynamics Information Technology

    Washington DC
    18 hours ago
  •  ...critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance...  ...behaviors. This position offers a chance to work on impactful security initiatives in a dynamic environment. #J-18808-Ljbffr NewGen... 

    NewGen Technologies

    Arlington, VA
    1 day ago
  • A leading technology and security firm is seeking a Cyber Fusion Analyst in Washington, DC, to support Defensive Cyber Operations. This hybrid role emphasizes the synthesis of external and internal intelligence to inform defensive measures. The ideal candidate possesses... 

    Leidos

    Washington DC
    2 days ago
  • A leading technology firm is seeking a Cyber Threat Hunter to join their team in Washington, DC. This hybrid position involves developing...  ...experience in cybersecurity and require a current DoD TS/SCI security clearance. The role demands advanced knowledge in network... 

    Leidos

    Washington DC
    4 days ago
  •  ...interests. Requisition #: 1617 Job Title: Cyber Threat Intelligence Analyst Location: Hybrid, Arlington, VA...  ...current threat landscape. Produce intelligence reports for security teams and leadership to guide decision-making. Education... 
    2 days per week

    Agile Defense

    Arlington, VA
    2 days ago
  •  ...Cyber Threat Intelligence Analyst Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration...  ...and sources ~ Demonstrated ability to integrate cyber security related data from relevant sources into investigative or analytical... 
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    3 days ago
  •  ...Cyber Threat Analyst/Computer Security Systems Specialist The client is looking for a Cyber Threat Analyst/Computer Security Systems Specialist to research and analyze classified reporting to identify current and emerging threat trends and work with intelligence community... 
    Day shift

    Beyond SOF

    Arlington, VA
    1 day ago
  • $100k - $110k

     ...Cyber Threat Intelligence Analyst Job Number : 32285 Location :...  ...intelligence for the Department of Homeland Security by analyzing and identifying emerging...  ...in Cybersecurity, Cloud Infrastructure & Engineering, Enterprise IT, and Program Management... 
    Full time
    Flexible hours

    Allyon, Inc.

    Arlington, VA
    1 day ago
  • Cyber Threat Intelligence Analyst Position: Cyber Threat Intelligence Analyst Program:...  ...threat intelligence to support the SBA Security Operations Center (SOC), cybersecurity operations...  ...in coordination with SOC analysts, engineers, and incident responders. Develop and... 
    Shift work

    cFocus Software Incorporated

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer - Threat Intel. Be the first to apply!