Senior Threat Intelligence Researcher
$148.5k - $223.9kSalesforce
To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.
Job Category
Software EngineeringJob Details
About Salesforce
Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.
Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.
The Experience:
As a Senior Threat Intelligence Researcher (Production), you don't just track threats—you contextualize and produce organic intelligence about them. You are a key pillar of the Threat Intelligence (TI) team, specifically focused on intelligence production across our suite of products and threat actors we track. You will lead the charge in translating nuanced technical intelligence and actor tracking operations into synthesized intelligence products for a wide and diverse audience. Your work will directly support other aspects of TI’s threat actor tracking and disruption work, informing the business to take action that imposes friction on threat actors targeting the Salesforce ecosystem. This is a role where you need to have a baseline technical capability and proven intelligence analysis skills—you are already well-versed at producing various intelligence products in written form and you have proven expertise in briefing to multiple audiences, running from technical to executive. You will analyze new and emerging threats to Salesforce, our platforms, and our customers, and turn that intelligence into action. Crucial to this work is directly engaging TI customers across key phases of the Threat Intelligence Lifecycle—shaping planning & direction, executing dissemination, and soliciting feedback to continuously refine intelligence output. You also understand the value of Community engagement and will participate in not just disseminating intelligence internally but also sharing the nuance of our work within the broader Threat Community.
This candidate must be a U.S. citizen (U.S. born or naturalized) operating on U.S. Soil who does not hold dual citizenship with the ability to meet customer and government screening standards applicable to this role.
What You'll Actually Be Doing
Lead technical pipeline development of capabilities focused on creation and delivery of intelligence products.
Maintain and enhance Salesforce TI’s threat prioritization model to continually identify top threats to Salesforce.
Coordinate and manage creation, organization, development, and delivery of threat intelligence quarterly briefings to senior security and company leadership.
Serve as one of the primary team interfaces with threat intelligence customers, managing educational presentations and incorporating feedback into threat intelligence capability development.
Lead the development of routine and ad hoc threat intelligence written products, and own the customer dissemination portfolio for the team.
Consume and curate threat data to create intelligence assessments in support of our incident response, threat hunting, threat detection, security engineering, and risk prioritization missions.
Consume and curate OSINT and paid-for vendor reporting to contextualize the threat landscape.
Write scripts (or capability to learn how to) and tools to help with analysis and build automation to aid investigations and threat research using lessons learned.
Build expertise on any threats targeting Salesforce and provide attribution to attacker activity when possible
Identify new and existing threats and clearly distill this information to support finished intelligence to multiple internal partners, including executives.
Perform intelligence research during incident response, supporting multiple teams and drive direction of investigations based on knowledge of attackers.
You're Our Person If You Have:
At least 5 years of professional experience identifying patterns and trends across various data sources to distill findings concisely for various audiences at scale.
3+ years experience with Cyber Threat Intelligence writing for both technical, non-technical, and executive audiences - ideally with threat briefings, threat reports, blog posts, or similar finished intelligence.
3+ years experience conducting and correlating threat research using OSINT, paid-for threat vendors, incident response engagement data, and proprietary tools.
A capable oral and written communicator, you are able to engage others in the business at multiple levels to translate threat research into actionable recommendations to shape the business.
Experience identifying, tracking of advanced cyber threat actors, including government-backed and advanced e-crime adversaries; knowledge of advanced actor TTPs and how to translate these to various audiences.
Established threat intelligence practitioner (active engagement in the Information Security or Threat Community with contacts is a big plus).
Experience using various AI tools for large data set analysis and intelligence support.
You operate in a semi-autonomous to autonomous manner, driving the delivery of projects and deliverables with minimal oversight across multiple teams.
You can work actively as a part of a globally distributed team, including remote and in-person colleagues.
Even Better If You Have:
5 years hands-on experience with strategic intelligence writing and standard conventions (BLUF, Diamond Model, MITRE ATT&CK), with a proven track record of authoring dozens of research articles and public-facing blog posts.
Capability to learn or experience with security analysis tools (Jupyter notebooks, Splunk, ElasticSearch, etc.).
Experience with SOAR platforms.
Experience with various AI tools.
Experience with threats in AWS, Microsoft Azure, and Google Cloud.
Experience or an understanding of hunting/IR tools used for host and network analysis.
Experience using Threat Intelligence Platforms; building integrations with these platforms is a plus.
You have an understanding of existing and emerging threats to an organization spanning multiple industries and threat profiles; any threat hunting experience is a big plus.
Active member of private, invite-only Information Security trust groups with extensive industry and community contacts.
You have performed all of the above “at scale“ in a large, complex environment
Unleash Your Potential
When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best , and our AI agents accelerate your impact so you can do your best . Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future — but to redefine what’s possible — for yourself, for AI, and the world.
Accommodations
If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form .
Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.
Posting Statement
Salesforce is an equal opportunity employer and maintains a policy of non-discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.
In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions. The typical base salary range for this position is $148,500 - $223,900 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.- ...a diverse team of analysts, researchers, and engineers who are passionate... ...programs.We are seeking a Senior Cybersecurity Operations... ...analytical studies involving risk, threat, and security data.Work... ...facing network security and intelligence organizations.Apply project...SeniorIntelligenceFull timeWork experience placementRelocation package
- Carnegie Mellon University is seeking a network security researcher to study threats and develop detection methods for partner environments. You will translate threat intelligence into research, contribute requirements for NetSA tools, and publish findings while providing...Intelligence
- BCMC is seeking a Cyber Threat Intelligence professional to support vulnerability management by proactively gathering and analyzing CTI, disseminating timely insights to inform operational decisions. You will identify emerging threats, vulnerabilities, and countermeasures...SeniorIntelligence
- Mayvin, Inc. seeks a Senior Intelligence Analyst to support the U.S. Marshals Service’s protective intelligence efforts. The role conducts research and analysis to assess threat levels and provide risk-mitigation recommendations. U.S. citizenship and an active Top-Secret...SeniorIntelligenceLocal area
- CeLeen, an operating group of Command Holdings, seeks a Senior Intelligence Analyst to support PFPA. You will identify threats, process RFIs, and produce timely intelligence products for decision makers. Requirements include a current TS/SCI clearance, 10 years in intelligence...SeniorIntelligence
- Peraton is seeking a Mobile Threat Analyst based in Arlington, VA. The role involves conducting forensic examinations of mobile devices, analyzing mobile applications for threats, and assessing cybersecurity environments to bolster U.S. missions globally. Candidates should...SeniorIntelligenceFull time
- Everforth ECS seeks a Senior Cyber Incident Analyst to join our Arlington team, coordinating incident response and threat intelligence for government partners. You will design playbooks, guide mitigation strategies, and deliver clear reports to executives and stakeholders...SeniorIntelligenceLocal area
- ...Company is assisting in recruiting a Principal Vulnerability Researcher for Arlington, VA with hybrid schedule and a Top Secret or higher... ..., reverse engineering, and advanced analysis for defense, intelligence, and commercial clients. Compensation includes strong...SeniorIntelligence
- Synertex LLC in Arlington, VA seeks a Cyber Threat Intelligence Analyst SME to support a national cybersecurity organization client. You will oversee collection, assessment, and analysis of threat intel using Google Threat Intelligence and MITRE ATT&CK, delivering strategic...SeniorIntelligence
$104k - $166k
Peraton in Arlington, VA is seeking a Mobile Threat Analyst to conduct forensic examinations of mobile devices and analyze mobile applications for threats. The ideal candidate will have a Bachelor’s degree and relevant experience, possess cybersecurity certifications,...SeniorIntelligence$160k - $200k
...and informed. About the JobWe are looking to add a talented Senior Cyber Threat Operations Engineer to become a key player in our vibrant... ...experience in cyber operations, a profound grasp of threat intelligence, and strong critical thinking skills to address intricate security...SeniorIntelligencePermanent employmentFull timeWork at officeLocal areaRemote workWorldwide- ...difference with us.The Modeling, Intelligence, and Simulation for Critical... ...systems and adversary threats to inform risk mitigation and... ...with government sponsors on research, lab test environments, and strategic... ...experts.Brief sponsors and senior leaders on threat trends,...SeniorIntelligenceWork experience placementInternshipLocal area
- ...we are looking to add an experienced Threat Informed Defense Senior Manager to an already outstanding... ...engineering core of a global cyber threat intelligence program serving mission-critical... ...GDAT, GCDA, or CISSP.Published threat research, detection content, or open-source...SeniorIntelligenceFull timeWork experience placementLive inWork at officeLocal area
$119.32k - $202.85k
ICF is actively recruiting for an experienced Senior Threat Detection & Response Engineer to support the research and development of new cyber analytic capabilities... ...from multiple sources (e.g., open-source, intelligence products, etc.) 5 or more years of experience with...SeniorIntelligenceFull timeContract workWork experience placementWork at officeRemote work$162.7k - $263.18k
...that values trust, accountability, and shared success where your work truly matters.Job SummaryJob SummaryAs a Principal Threat Intelligence Researcher on the Unit 42 CTI Services Delivery Team, you will play a critical role in creating timely, relevant, and actionable...IntelligenceFull timeRemote workShift work$130k - $140k
Amentum is seeking a Counter Threat Finance Analyst SME in Washington, DC, to support the Department of Defense in creating a certification program. Responsibilities include providing intelligence analysis for law enforcement, drafting reports and action plans, and collaborating...SeniorIntelligence- ActioNet, Inc. seeks a senior Tier 3 Cybersecurity Analyst to lead advanced threat detection, incident response, and forensics within a high-sophistication SOC... ...operations, and a strong background in threat intelligence and analytics. Salary ranges reflect senior level...SeniorIntelligence
- ...includes: Significant experience with analyzing and tracking cyber threats at the strategic, operational and tactical level. Substantial... .... Must Haves Significant strategic, operational and tactical intelligence experience within a corporate environment. Experience within...SeniorIntelligenceRemote workShift work
- Edgewater Federal Solutions, Inc. is seeking a Cyber Threat Intelligence (CTI) Analyst to support an NIH-related government contract. The role requires US citizenship and will involve working on enterprise cyber security, threat intelligence gathering, and incident response...SeniorIntelligenceContract work
- Y-Tech is seeking a Threat Detection Analyst to research and develop new use cases for emerging threats and threat intelligence. You will work with stakeholders and cybersecurity tool SMEs to tailor analytics, create specific signatures for programs, and enhance SIEM capabilities...SeniorIntelligence
- Jobtailor in Washington, DC seeks a Cyber Threat Intelligence professional to monitor and report on evolving threat trends affecting national security and critical infrastructure. You will conduct OSINT investigations, synthesize findings, and prepare executive briefings...SeniorIntelligence
- ...Towards AI, Inc. seeks a Senior Research Engineer for Threat Intelligence to bridge threat research with production engineering. You will transform malware findings and behavioral patterns into detection rules and data feeds, building platform components and automating...SeniorIntelligence
- LexisNexis Risk Solutions is seeking a Senior Investigative Analyst to support a dedicated federal government customer... ...You will conduct open-source investigations, evaluate threats, and provide real-time intelligence updates. The role requires joining a multidisciplinary...SeniorIntelligence
- cFocus Software Incorporated is seeking a Cyber Threat Intelligence & Threat Hunting Lead to oversee CTI, detection engineering, and proactive threat hunting operations supporting enterprise cyber defense missions. The Lead will drive development of intelligence-driven...SeniorIntelligence
$132k
A government contractor is seeking a mid- or senior-level All Source Analyst in Arlington, Virginia. This role supports the Army G-... ...in a relevant field, with at least 10 years of experience in intelligence analysis. The role offers a salary range of $132,000 and includes...SeniorIntelligenceFor contractors- ...investigations. The role requires extensive expertise in malware analysis, threat hunting, and multi-source data fusion to mitigate... ...emphasizes software and security operations leadership within an intelligence-driven SOC, collaboration with federal agencies, and ongoing...SeniorIntelligence
$112k - $179k
...hiring Sr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber... ...for the organization.Perform research and investigate current threats in operational... ...infrastructure sectors, and mission areas to inform senior leaders and drive priorities for...SeniorIntelligenceContract workCurrently hiringShift work$104k - $166k
ResponsibilitiesPeraton's Cyber Mission sector is looking for a Sr Threat Hunter to support a SOC.Location: Chandler, AZ or Washington DC.Role and Responsibility:Conduct proactive, intelligence-driven threat hunting to identify malicious activity that evades traditional...SeniorIntelligenceContract workShift work$116.35k - $210.33k
Leidos is seeking a Senior Supply Chain Risk Management Threat Intelligence Lead Analyst to provide advanced, high-level technical and analytical support to the FAA’s Counterintelligence (CI) Supply Chain Risk Management (SCRM) program. The program is responsible for identifying...SeniorIntelligenceFull timeWork at officeShift work$140k - $150k
# Senior Research Engineer, Threat Intelligence## SecurityScorecardPublished 18 Jul 2026### Share this jobWashington, DC140K - 150K USD AnnualFull Time## Role Highlights### Languages usedSQLPythonTypeScriptGO### Key skillsPrompt EngineeringComputer ScienceAPIProduct ManagementCICDCloud...SeniorIntelligence
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Threat Intelligence Researcher. Be the first to apply!
- data collection researcher McLean, VA
- senior lead project manager McLean, VA
- senior robotics software engineer McLean, VA
- senior devops engineer remote McLean, VA
- senior sas administrator McLean, VA
- senior IT manager McLean, VA
- senior contracts analyst McLean, VA
- sr project manager McLean, VA
- senior windows systems engineer McLean, VA
- consultant senior consultant McLean, VA


