Security Engineer - Threat Intel
$320k - $405kAnthropic
Security Engineer - Threat Intel
New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC
About Anthropic
Anthropic's mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.
About the Role:
Anthropic sits at the frontier of AI development, which makes us one of the most interesting targets in the world for nation-state and advanced criminal actors. The Threat Intelligence function within our Detection & Response team exists to make sure we see them coming. As a Threat Intelligence Engineer, you'll be a hands-on practitioner responsible for producing the actionable intelligence that drives our detections, hunts, and defensive priorities. You'll track the adversaries most likely to target a frontier AI lab, build the tooling and pipelines that turn raw indicators into operational defenses, and work shoulder-to-shoulder with detection engineers and incident responders to make sure intelligence actually changes outcomes. This is a builder's role on a small, high-leverage team — you'll have broad latitude to shape how threat intelligence is collected, analyzed, and operationalized at Anthropic.
Responsibilities:
- Research, track, and report on threat actors and campaigns targeting AI labs, cloud infrastructure, and the broader technology sector — producing timely, actionable intelligence for Security Engineering stakeholders
- Build and maintain tooling and automated pipelines to collect, enrich, correlate, and operationalize indicators of compromise into our detection and alerting stack
- Develop and execute intelligence-driven threat hunts across endpoint, cloud, identity, and SaaS telemetry, and turn findings into durable detections
- Perform technical analysis of malware, phishing infrastructure, and attacker tooling to extract indicators, TTPs, and attribution signals
- Partner with Detection Engineering and Incident Response to translate intelligence into detection rules, hunting hypotheses, and incident context in near-real-time
- Curate and triage inbound intelligence from commercial feeds, open source, government, and trusted peer relationships — prioritizing what matters for Anthropic's threat model
- Contribute to threat models and risk assessments that inform security architecture and defensive investment across the enterprise
- Build and maintain external intelligence-sharing relationships with peer companies, ISACs, and government partners
You May Be a Good Fit If You:
- Have 5+ years of hands-on experience in cyber threat intelligence, threat hunting, or intrusion analysis at an organization facing sophisticated adversaries
- Have deep, demonstrable knowledge of specific nation-state or advanced criminal threat actors — their tooling, infrastructure patterns, tradecraft, and targeting
- Are a strong engineer: you write production-quality Python (or similar), have built automation and data pipelines, and don't need to hand requirements to someone else to get tooling built
- Are comfortable performing malware analysis, infrastructure analysis (passive DNS, certificate pivoting, netflow), and log analysis to develop and validate your own findings
- Have experience authoring detection logic (YARA, Sigma, Snort/Suricata, or SIEM-native queries) and understand what makes a detection durable vs. brittle
- Can write clearly and concisely — your intelligence products are read and acted on, not filed away
- Have an existing network in the threat intelligence community and a track record of productive bidirectional sharing
Strong Candidates May Have:
- Experience defending cloud-native and research-heavy environments (AWS/GCP, Kubernetes, ML infrastructure, developer tooling and supply chain)
- Prior work operating in a threat intelligence role tracking sophisticated or state-sponsored adversaries, where your analysis directly informed detection, threat hunting, and incident response
- Experience applying LLMs or other AI tooling to accelerate intelligence collection, enrichment, and analysis
- Public research, conference talks, or open-source tooling contributions in the CTI space
Deadline to apply: None. Applications will be received on a rolling basis.
The annual compensation range for this role is listed below. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.
Annual Salary: $320,000 - $405,000 USD
Logistics
Minimum education: Bachelor's degree or an equivalent combination of education, training, and/or experience
Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience
Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position
Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.
Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.
We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit anthropic.com/careers directly for confirmed position openings.
How We're Different
We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.
The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.
Come Work With Us!
Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process.
- ...Threat Detection Security Engineer Job Description Overview CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100,...SuggestedFull timeWork at officeWork from homeMonday to Thursday
$150k - $201.6k
Orrick currently has an excellent opportunity for a Senior IT Security Engineer, Threat Response. This position could be based in any of our U.S. offices and consideration given for 100% remote US locationsResponsibilitiesAs a Threat Hunter, you will play a critical role...SuggestedTemporary workRemote workFlexible hours$110k - $135k
...Manager, the Web Developer Embeds security across the SDLC for mission-... ...vulnerability lifecycle with threat modeling and validation;... ...builds automation for threat-intel integration and incident response... ...~3+ Web AppSec / AppSec Engineering / SSDLC ~ Modern web tech incl...Suggested$140.5k - $210.5k
...assessments. The role demands a Bachelor's degree in a related field and 6-8 years of experience in cybersecurity. Key duties include threat intelligence analysis, incident response, and leading vulnerability management projects. The position is on-site in Washington and...Suggested- ...seeking a Vulnerability Analyst in Washington, DC to enhance the security posture of government infrastructure. In this role, you'll lead... ...in tools like Tenable and Qualys to conduct scans, analyze threats, and mitigate risks effectively. Your responsibilities include...Suggested
$100k - $124k
...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations,... ...efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission... ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic...Contract workRemote work$100k - $124k
...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations,... ...efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission... ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic...Contract workRemote workOverseas- ...intelligence tools including Defense Intelligence Threat Library, Validated Online Lifecycle Threat... ...on threat cyber capabilities Cyber security/penetration testing experience Cyber lab testing experience Engineering background (i.e., education credentials and...Work experience placementWork at officeLocal area
- ...A federal government agency is seeking Cyber Threat Analysts to conduct all-source analysis of foreign Cyber threats, supporting national security efforts. Candidates should hold degrees in relevant fields like Cyber Security or International Relations, possess strong...
- ...Cyber Threat Fusion Analyst The client is looking for a Cyber Threat Fusion Analyst... ...Threat Intelligence products and network security monitoring and will perform as the analyst... ...'s Degree in Computer Science, Computer Engineering or related field and 8+ years of prior...Remote work
- ...Summary Cyber Threat Analysts assess foreign cyber intentions and capabilities to support U.S. national security interests. Learn more about this agency Duties Help As a Cyber Threat Analyst at CIA, you will analyze foreign cyber intentions and capabilities...Full timePart time
- ...leader in delivering advanced analytic, data engineering, and technology integration solutions in... ...seeking a highly skilled Senior Cyber Threat Analyst to join our team. This role... ...clearance to plan, implement, and monitor security measures, assess vulnerabilities, and...Full timeLocal area
- ...assist with the restoration of services. They are seeking a Cyber Threat Analyst to support this critical customer mission.... ...vendor sites, Computer Emergency Response Teams [CERTs], SANS, Security Focus) to maintain currency of Computer Network Defense threat...Contract workImmediate startShift work
- ...Cyber Threat Analyst As a Cyber Threat Analyst at CIA, you will analyze foreign cyber intentions and capabilities to support U.S. national security interests. You will identify, monitor, and counter threats against US information systems and critical infrastructure...
- ...Cyber Security Threat Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise...
- ...Cyber Threat Analysts conduct all-source analysis of foreign Cyber intentions and capabilities in support of U.S. Government efforts to counter threats to U.S. national security interests. Interested candidates should be passionate about the ideals of our American republic...
- ...apply today! Position Title: Lead Cyber Threat Analyst Location: Washington, DC... ...and ensuring compliance with all federal security standards. This role is responsible for... ...Computer Science, Information Technology, Engineering, or a related field. Minimum of 10...For contractorsLocal area
- ...recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a work hard, play hard mentality and...
- ...Job Description Job Description Cyber Threat intelligence Analyst II Location: Onsite (CONUS) / Shift Work Clearance: Active... ...and sources • Demonstrated ability to integrate cyber security related data from relevant sources into investigative or analytical...Shift work
- ...Evolver Federal is seeking a Lead Cyber Threat Analyst to fulfil a requirement for a... ...framework. Oversee malware analysis, reverse engineering, and forensic investigations for complex... ...to enhance predictive and adaptive security capabilities. Apply Zero Trust...Flexible hours
- ...identifying, analyzing, and responding to cyber threats to inform the customer’s vulnerability... ...Demonstrated ability to integrate cyber security related data from relevant sources into... ...agencies. We possess highly skilled engineers, providing innovative solutions backed...Local areaFlexible hours
$142.79k - $172.5k
...Family: Cyber and IT Risk Management Skills: Cybersecurity, Cyber Threat Hunting, Forensic Analysis, Insider Threat Experience: 8+... ...related experience Job Description Own your career as a Cyber Security Analyst at GDIT. Here, you’ll have the opportunity to build strong...Temporary workMonday to FridayFlexible hoursShift work- ...critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance... ...behaviors. This position offers a chance to work on impactful security initiatives in a dynamic environment. #J-18808-Ljbffr NewGen...
- A leading technology and security firm is seeking a Cyber Fusion Analyst in Washington, DC, to support Defensive Cyber Operations. This hybrid role emphasizes the synthesis of external and internal intelligence to inform defensive measures. The ideal candidate possesses...
- A leading technology firm is seeking a Cyber Threat Hunter to join their team in Washington, DC. This hybrid position involves developing... ...experience in cybersecurity and require a current DoD TS/SCI security clearance. The role demands advanced knowledge in network...
- ...interests. Requisition #: 1617 Job Title: Cyber Threat Intelligence Analyst Location: Hybrid, Arlington, VA... ...current threat landscape. Produce intelligence reports for security teams and leadership to guide decision-making. Education...2 days per week
- ...Cyber Threat Intelligence Analyst Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration... ...and sources ~ Demonstrated ability to integrate cyber security related data from relevant sources into investigative or analytical...Contract workImmediate start
- ...Cyber Threat Analyst/Computer Security Systems Specialist The client is looking for a Cyber Threat Analyst/Computer Security Systems Specialist to research and analyze classified reporting to identify current and emerging threat trends and work with intelligence community...Day shift
$100k - $110k
...Cyber Threat Intelligence Analyst Job Number : 32285 Location :... ...intelligence for the Department of Homeland Security by analyzing and identifying emerging... ...in Cybersecurity, Cloud Infrastructure & Engineering, Enterprise IT, and Program Management...Full timeFlexible hours- Cyber Threat Intelligence Analyst Position: Cyber Threat Intelligence Analyst Program:... ...threat intelligence to support the SBA Security Operations Center (SOC), cybersecurity operations... ...in coordination with SOC analysts, engineers, and incident responders. Develop and...Shift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer - Threat Intel. Be the first to apply!
- security infrastructure engineer Washington DC
- senior cloud security engineer Washington DC
- azure security engineer Washington DC
- senior application security engineer Washington DC
- lead security engineer Washington DC
- physical security engineer Washington DC
- security engineering manager Washington DC
- endpoint security engineer Washington DC
- sr information security engineer Washington DC
- senior security operations engineer Washington DC


