Cyber Threat Researcher
$90k - $120kUltraViolet Cyber
About UltraViolet Cyber: UltraViolet Cyber is an elite, platform-enabled unified security operations enterprise redefining global corporate defense through an advanced security-as-code engineering architecture. Founded and directed by veteran practitioners, our system eliminates traditional red-team and blue-team communication silos to provide real-time managed detection and response (MDR) layers. We secure high-stakes infrastructure spanning the Fortune 500, Federal Government agencies, and major commercial ecosystems globally from offices in McLean, Virginia, and across international hubs.
Position Overview
We are seeking a highly technical Cyber Threat Researcher (Level II) to join our Threat Intelligence & Detection Engineering (TIDE) squad. In this critical defensive engineering track, you will take ownership of proactive, hypothesis-driven threat hunting loops across multi-tenant customer environments. Moving far beyond static log observation, you will architect behavioral detection rules from scratch, analyze adversarial tactics, techniques, and procedures (TTPs), and translate raw intelligence into functional detections. This role bridges deep engineering execution with advisory communication, requiring regular engagement with client executives to explain detection metrics and fortify their security postures.
Key Responsibilities
- Detection Architecture Engineering: Design, build, and deploy custom behavior-based and threshold-based detection rules from scratch to deliver high-signal alerting across customer networks.
- Hypothesis-Driven Threat Hunting: Formulate, execute, and document proactive threat hunts across complex security logs and data streams to expose hidden adversarial footprints.
- Rule Tuning & Noise Reduction: Audit and optimize existing telemetry logic independently, minimizing false positive tracking noise while maintaining rigorous defensive boundaries.
- Adversarial TTP Tracking: Research emerging malware strains and actor vectors, mapping behavioral patterns systematically against the MITRE ATT&CK framework .
- Cross-Functional Incident Response: Partner directly alongside Security Operations Center (SOC) units and Incident Response teams to isolate, contain, and remediate active network compromises.
- Technical Mentorship & Advisory: Deliver actionable feedback and structural training to junior threat hunters while presenting complex cyber threat landscape analysis to corporate client executives.
Required Skills & Qualifications
- 4+ years of verified professional history in cybersecurity infrastructure, with a dedicated specialization of at least 1 year in threat hunting, security operations, or detection engineering.
- Demonstrated capability building, testing, and debugging alert logic within enterprise SIEM and EDR/XDR platforms .
- Strong backend automation and analysis engineering skills utilizing scripting systems like Python or PowerShell .
- Comprehensive operational command of adversarial tactics, techniques, and procedures modeled within the MITRE ATT&CK taxonomy matrix.
- Proven tracking record standing up in customer environments, writing technical threat assessment briefings, and presenting data trends to senior stakeholders.
- Legal Requirement: Due to federal contract management parameters, valid United States Citizenship is mandatory.
- Location Context: 100% remote-first operational framework open to qualified threat researchers permanently residing within the United States .
Preferred Strategic Indicators (Nice to Have)
- Hands-on experience deploying and fine-tuning custom behavioral alert frameworks inside SentinelOne, Elastic, or CrowdStrike software nodes.
- Prior experience directly supporting or operating within a dedicated Cyber Threat Intelligence (CTI) team structure.
- Industry-standard professional security certifications, such as GIAC Threat Hunting (GCTH), Certified Enterprise Defender (GCED), or Certified Intrusion Analyst (GCIA) .
What We Offer
- Targeted Salary Range: $90,000 – $120,000 USD per annum (Calibrated objectively based on technical qualifications, certifications depth, and regional market coordinates).
- Comprehensive medical, dental, and vision insurance profiles available immediately on the month following your initial start date.
- Corporate 401(k) retirement structure with a 100% company match on the first 3% contributed and a 50% match on the next 2%.
- Full coverage plans for Group Term Life, Short-Term Disability, and Long-Term Disability insurances.
- Immediate participation parameters in our Discretionary Time Off (DTO) program paired with 11 paid company holidays annually.
$139.6k - $225.78k
...closely with a globally distributed team of vulnerability researchers, reverse engineers, and threat intelligence analysts. You will be embedded in a... ...DNS, geospatial intelligence, etc) to track malicious cyber actors, their infrastructure, and campaigns Collaborate...CyberFull timeLocal areaRemote workVisa sponsorshipWork visa$145.46k - $193.94k
...join us today.The RoleBlack Lotus Labs is seeking a remote Threat Intelligence Researcher on the Research & Analysis team focused on tracking... ...g., netflow, malware and passive DNS,) to track malicious cyber actors, their infrastructure, and campaigns. Build repeatable...CyberTemporary workRemote work$160k - $220k
Role Description We're looking for a Threat Intelligence Researcher (Cloud) to join the Threat Research team and spread the power of Wiz. In this role... ...targeting cloud environments. We are aiming to hire a cyber espionage specialist and a cyber crime specialist. ~Identify...CyberFull time- Role Description TrendAI's Forward Looking Threat Research team (FTR) is a global team of Senior Researchers tasked with "Scouting the Future... ...proposals. What You'll Do: ~Research and profile cyber threat actors: their tradecraft, infrastructure, motivations,...CyberFull timeTemporary work
$90k - $120k
...About UltraViolet Cyber: UltraViolet Cyber is an elite, platform-enabled unified security operations enterprise redefining global... ...Position Overview We are seeking a highly technical Cyber Threat Researcher (Level II) to join our Threat Intelligence & Detection...CyberFull timeContract workTemporary workImmediate startRemote work$107.5k - $204.5k
...world-class operations and investments in research and development, we offer capabilities... ...technologies to ensure the security of connected cyber physical systems. We are seeking... ...challenges.The ideal candidate has experience in threat modeling, vulnerability research,...CyberTemporary workWork experience placementWork at officeRemote workRelocationFlexible hours- ...national security areas nuclear deterrence, threat preparedness, energy security, and multi-... ...an opening for a Senior Cybersecurity Researcher to lead efforts to develop techniques and... ...innovative methods to characterize and assess cyber-adversary behavior and to develop tools...CyberMinimum wageFull timeFor contractorsLocal areaRelocationFlexible hours
$188k - $304.08k
...work truly matters.Job SummaryWe are seeking a Senior Principal Threat Researcher for our Unit 42 Threat Intelligence team to lead coordination... ..., to align external and internal messaging around global cyber events.Work closely with the external engagement team to manage...CyberFull timeRemote work- ...Seeking a Maryland Licensed Threat Researcher, the remote position will focus on tracking advanced persistent threats (APTs) and leveraging... ...responsibilities Leverage global datasets to track malicious cyber actors and build AI-assisted methods for threat detection and...CyberRemote work
$40 per hour
...technical problems. In this role, you will assess and improve the reasoning of advanced AI systems regarding real-world cybersecurity threats. Ideal candidates will have 2+ years of experience, coding skills, and fluency in English. This is a remote position starting at $4...Hourly payRemote workFlexible hours- ...environments by detecting identity-based threats and risky configurations. We are... ...You will work closely with security researchers and customers to identify emerging threats... ...work closely with Reco customers regarding cyber security investigations and incidents detected...CyberRemote work
$107.9k - $195.05k
The Leidos Digital Modernization sector is looking for a Cyber Threat Hunter to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026.Our team provides mission critical, 24/7 operational support...CyberFull timeSummer workCasual workRemote workShift workNight shiftRotating shift- ...Job Summary We are seeking a highly skilled Principal Cybersecurity Analyst to lead advanced threat hunting, digital forensics, and cyber investigations within a dynamic security operations environment. This role is ideal for a technical cybersecurity leader passionate...CyberFull time
- ...role will leverage your hands-on offensive background to identify threats and require you to dive deep into the technical details and help... ...and DevOps to risk analysis, security governance, and cyber awareness. About You Offensive security background...CyberFull time
- ...Seeking a remote Threat Intelligence Writer, the full-time position will develop and manage threat intelligence content, translating complex technical insights into engaging narratives for diverse audiences, while collaborating with the threat intelligence team and marketing...CyberFull timeRemote work
- Job DescriptionJob SummaryThis role supports Walgreens’ Threat Detection and Response function, with a focus on leading complex security... ...exploitation and risk to critical systems.Monitors specific cyber threat actors to understand their tactics and techniques.Utilizes...CyberRemote work
- ...To support a dynamic Threat Hunting Team, the full-time Cybersecurity Threat Hunter will track emerging threat actor techniques, develop original research, and build client-facing threat hunts while working remotely. Key responsibilities Track emerging threat actor techniques...CyberFull timeRemote work
$107.9k - $195.05k
The Leidos Digital Modernization sector is looking for a Cyber Threat Intelligence Analyst to support a Defensive Cyber Operations (DCO) team in Washington, DC. This position is expected to become available in Summer 2026.Our team provides mission critical, 24/7 operational...CyberFull timeSummer workCasual workRemote workShift workNight shiftRotating shift- ...experienced individual to consult clients on maturing CTI programs. The ideal candidate will have significant experience in analyzing cyber threats, developing CTI products, and managing multiple projects. Strong familiarity with Microsoft 365 and Azure is essential. This...CyberRemote job
- ...from other companies. Looking for a detail-oriented Emerging Threats Cyber Analyst to join our team. This role is suited for candidates... ...cybersecurity threat analysis. In this role, you will conduct research to maintain an in-depth understanding of emerging cyber threats...CyberRemote workWorldwide
$40 per hour
...generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats and defenses. Cybersecurity platforms are increasingly powered by AI, but these systems still require practitioners with real-...CyberHourly payFull timePart timeRemote work$70k - $140k
...PAMinnetonka, MNAtlanta, GAThreat Detection Analyst (Expert)The Threat Detection Analyst Expert develops, tunes, validates, and maintains... ...of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices.Strong...CyberFull timeWork at officeRemote workWork from homeFlexible hours$195k - $262.7k
A financial technology company is seeking a Sr. Manager, Cyber Threat Researcher to leverage cyber threat intelligence. The position involves creating detection mechanisms and maintaining expertise in current threat landscapes. Ideal candidates should have extensive experience...CyberRemote job$86.8k - $198k
Cyber Threat Analyst, SeniorThe Opportunity:Support technical and operational work for client partner agencies with the attribution and identification of new adversary infrastructure. Engage with US partner agencies extensively and document and develop findings. Provide...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...thinking organization, apply now.We are currently seeking a Cyber Security Threat Analyst (Onsite Hybrid) to join our team in Charlotte,... ...consortiums, open-source intelligence, and law enforcement partners.Research cyber threat actors, threat groups, campaigns, malware,...CyberWork experience placementWork at officeRemote workFlexible hours
- ...Job SummaryIn this role you will focus on proactively hunting for threat actor’s tactics, techniques, procedures, and behaviors based on... ...tools to find adversaries, identify gaps in detection and cyber hygiene, and recommend improvements to detection rules. You will...CyberFull timeWork at officeLocal areaRemote workWeekend work1 day per week
- ...maturing and expanding an established CTI program. Relevant experience includes: Significant experience with analyzing and tracking cyber threats at the strategic, operational and tactical level. Substantial background in developing CTI products and services for...CyberRemote workShift work
$99k - $225k
Cyber Threat Intelligence Analyst Subject Matter ExpertThe Opportunity: As a cyber threat intel analyst, you know the key to detecting and... ...and you’ll play a lead role in incident analysis, adversarial research, and finished intelligence products to inform policy makers,...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- Job DescriptionJob DescriptionThe Role: The Cyber Threat Intelligence Analyst is a critical individual-contributor role within GM's Security... ...platforms such as MISP, SIEM, EDR/NDR) and open-source research techniquesUnderstanding of common attacker techniques, malware...CyberFull timeLocal areaWork from homeRelocation package
- Location: NYC NY 10002 On-site/Remote/Hybrid: Hybrid Duration: 6 to 12 Months Job Description The Senior Cyber Threat Intelligence (CTI) Analyst will serve as a strategic force multiplier in protecting Clients infrastructure by identifying, analyzing, and contextualizing...CyberRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Researcher. Be the first to apply!





