Senior Research Engineer, Threat Intelligence
$142.5k - $192.5kSecurityScorecard
SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world‑class investors, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self‑monitoring, third‑party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint. Headquartered in New York City, our culture has been recognized by Inc Magazine as a "Best Workplace," by Crain’s NY as a "Best Places to Work in NYC," and as one of the 10 hottest SaaS startups in New York for two years in a row. Most recently, SecurityScorecard was named to Fast Company’s annual list of the World’s Most Innovative Companies for 2023 and to the Achievers 50 Most Engaged Workplaces in 2023 award recognizing “forward‑thinking employers for their unwavering commitment to employee engagement.” SecurityScorecard is proud to be funded by world‑class investors including Silver Lake Waterman, Moody’s, Sequoia Capital, GV and Riverwood Capital. About the Role You’ll join STRIKE, SecurityScorecard's Threat Intelligence team, as the engineering counterpart to research. STRIKE runs several research motions in parallel, each on its own clock: rapid response to active events, longer product‑tied work, and standards‑anchored research on a quarterly cadence. The path from a finding to a shipped detection or feed gets reinvented every time. That’s the problem this role is here to solve. You’ll work directly with the senior technical leader who owns STRIKE's R&D direction, and report to the Head of Threat Research for people management. Technical direction comes from R&D leadership; you own delivery. You’ll take a research artifact (a malware finding, an infrastructure cluster, a new indicator class, a behavioral pattern) and turn it into something the company can use without a second round of engineering: schemas, pipeline hooks, distribution feeds, detection rules, or platform APIs. This isn’t a pure research role, and it isn’t a pure platform role either. Researchers ideate, you ship. Key Responsibilities Own the path from research output to production‑ready artifact: a detection rule, a distributed feed, a scoring input, or a customer alert. Partner with adjacent teams to define clean handoff contracts, so new signals arrive downstream with the schema, value framing, and consumption pattern already defined. Build and maintain STRIKE platform components across multiple services and runtimes, including distribution servers, sandbox orchestration, OSINT ingestion, federated sharing endpoints, agent runtimes, and rules engines that operate over standards‑anchored predicates. Extend these systems without breaking the data contracts already in production. Detection Content and Signal Production Turn research into shipped detection content: YARA, Sigma, STIX patterns, behavioral indicators, and the pipelines that distribute them. Build correlation pipelines that link scan data, attack surface signals, vulnerability data, and adversary tracking into customer‑facing intelligence. Data Model and Standards Adoption Drive STIX 2.1 adoption as a unified output schema and TAXII 2.1 as a distribution standard. Define and govern schemas that hold up once they reach downstream teams. Research Workflow Engineering Build the automation that removes commodity overhead from research work: indicator enrichment, report drafting, corpus correlation, feed normalization, and sandbox triage. Help move the team from analyst‑driven, model‑assisted workflows toward model‑driven workflows with analyst review. The work that matters most here is often the unglamorous part: retrieval grounded in the team’s own corpus so outputs cite sources rather than model priors, schema‑constrained output so a generated indicator is a valid one, and eval harnesses that catch regressions before analysts do. Cost accounting, latency budgeting, prompt versioning, and output logging round out the infrastructure that makes a workflow safe to run unattended. You should have a clear sense of when a model is the wrong tool. A regex beats a model for known patterns; a SQL query beats a model for structured data. Knowing where that line sits, and respecting it, is part of the job. Cross‑Functional Delivery Coordinate with engineering, measurement, and platform product teams so research actually lands in product. You’ll often serve as the engineering voice translating between researchers, product managers, and platform engineers, and you may occasionally explain the work to customers, journalists, or executives. Qualifications Education: Bachelor’s or Master’s in Computer Science, Cybersecurity, or a related technical field. Self‑taught practitioners with strong public work are welcome. Experience: 5 to 8 years in a hands‑on engineering role with meaningful exposure to threat intelligence, security research, or detection engineering. Prior experience building production systems that consume or emit threat intel data is required. Technical Skills: Python and TypeScript/Node at a production level Relational and cache data stores, plus at least one streaming or batch data platform Cloud infrastructure (AWS preferred), containers, and CI/CD pipelines Working knowledge of STIX 2.1, TAXII 2.1, MISP, and MITRE ATT&CK, and how they work together in practice Detection and Research Tooling: Hands‑on experience with YARA, Sigma, and STIX Patterning. Comfortable reading malware analysis output, parsing adversary infrastructure data, and writing detection logic that holds up under production load. Applied Language Models: You’ve shipped production systems that use language models, not just demos. That includes retrieval over a real corpus, structured output with schema validation, eval harnesses that catch regressions before users do, and a solid understanding of where models fail: recency, long‑tail facts, numerical reasoning, and adversarial input or prompt injection. You can do the cost‑per‑task math for your workloads, and you can make the case when a smaller, tightly scaffolded model beats a larger one. Bridge Mindset: You write code that ships, and you understand why researchers think the way they do. If you’ve only ever worked from a backlog handed down by a product manager, this probably isn’t the right fit. If you’ve taken an idea sketched out in a chat message and turned it into a deployed pipeline before the next sprint began, that’s the mode we’re looking for. Bonus Experience with policy‑as‑code or expression‑language engines (CEL, OPA, or similar) Published or co‑authored security research (campaigns, vulnerabilities, adversary tracking) Large‑scale telemetry experience (Splunk, Kinesis, NetFlow, or equivalent) Contributor or maintainer on open‑source threat intel projects (MISP, OpenCTI, Sigma, STIX, ATT&CK) Familiarity with quantitative risk frameworks such as FAIR Familiarity with Golang at a production level Specific to each country, we offer a competitive salary, stock options, Health benefits, and unlimited PTO, parental leave, tuition reimbursements, and much more! The estimated total compensation range for this position is $142,500 - $192,500 CAD (base plus bonus). Actual compensation for the position is based on a variety of factors, including, but not limited to affordability, skills, qualifications and experience, and may vary from the range. In addition to base salary, employees may also be eligible for annual performance‑based incentive compensation awards and equity, among other company benefits. SecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We believe that our team is strengthened through hiring and retaining employees with diverse backgrounds, skill sets, ideas, and perspectives. We make hiring decisions based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy) gender identity or expression (including transgender status), sexual orientation, age, marital, veteran, disability status or any other protected category in accordance with applicable law. We also consider qualified applicants regardless of criminal histories, in accordance with applicable law. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact View email address on click.appcast.io. Any information you submit to SecurityScorecard as part of your application will be processed in accordance with the Company’s privacy policy and applicable law. SecurityScorecard does not accept unsolicited resumes from employment agencies. Please note that we do not provide immigration sponsorship for this position. #J-18808-Ljbffr SecurityScorecard
- Delta Air Lines is seeking a skilled Cyber Threat Intelligence Analyst to join its Information Security team. You will profile threats, monitor... ...actionable guidance for incident response. This is a senior role requiring hands-on security experience and the ability...SeniorIntelligence
- Ryder System, Inc. is seeking a Senior Security Operations Center Analyst to plan and implement security measures, monitor networks... ...incidents. You will conduct deep analysis, correlate with threat intelligence, and guide containment and remediation strategies for...SeniorIntelligence
- SecurityScorecard in Atlanta, GA is seeking an experienced engineer for its STRIKE Threat Intelligence team. The role involves transforming research outputs into deployable detection rules and managing platform components in a dynamic environment. The ideal candidate has...SeniorIntelligenceRemote job
- ...Tech is a top-ranked public research university situated in the heart... ..., and executive programs in engineering, computing, science,... ...biomedical technology to artificial intelligence, energy, sustainability,... ...research faculty positions as Senior Research Engineer or...SeniorIntelligenceFull timeContract workTemporary workPart timeFor contractorsWork at officeLocal area
$110k - $140k
A leading technology consulting firm is seeking a senior threat hunter in Atlanta, specializing in digital forensics and threat intelligence using SPLUNK. The role involves managing security incidents, leading response teams, and conducting in-depth analyses. Candidates...SeniorIntelligenceFull time2 days per week3 days per week- Regions Bank seeks a Cyber Security Senior Manager to lead a diverse team protecting bank assets. You will guide incident response, threat intelligence, and security controls across malware defense, network security, and data protection. You will partner with TODD teams...SeniorIntelligence
$60k
Research Engineer I/II/Senior - Advanced Packaging (Open Rank/Multiple Openings) Join to apply for the Research Engineer I/II/Senior - Advanced... ...fields ranging from biomedical technology to artificial intelligence, energy, sustainability, semiconductors, neuroscience,...SeniorIntelligencePermanent employmentFull timeContract workFor contractorsWork at officeLocal area$85.1k - $161.7k
...s why there's nowhere like RSM. As a Senior Threat Hunter/SOC Analyst within RSM Defense,... ...context. You will also influence detection engineering and response automation by identifying... ...Support hypothesis-driven and intelligence-led hunts by validating findings, artifacts...SeniorIntelligenceWork experience placementInternshipLocal area- ...Description We're looking for a senior investigator to play a pivotal role... ...our global Financial Crime Intelligence Unit (FCIU). As a center of intelligence, threat analysis, and investigative excellence... ...demonstrate strong analytical, research, and critical‑thinking skills....SeniorIntelligence
- ...security. Stay current with emerging threats, vulnerabilities, and attack techniques by leveraging threat intelligence, security research, and participation in relevant industry... ...Java, Rust). Experience in reverse engineering thick-client and mobile applications to...SeniorIntelligence
- Job Title: Research Engineer II-LT Location: Atlanta, Georgia Regular/Temporary: Regular Full/Part Time: Full-Time Job ID: 300310 Position... ...closely with the Director of the Symbiotic and Augmented Intelligence Laboratory (SAIL), as well as collaborators across Georgia...IntelligenceFull timeTemporary workPart time
- ...Georgia. Job Summary Scalable Thermal Energy Engineering Laboratory (STEEL) The STEEL is... ...conversion technologies. The primary area of research is around cutting‑edge university... ...applications for research faculty positions as Senior Research Engineer or Scientist. The...SeniorContract workFor contractorsLocal area
- ...Tech Georgia Tech is a top‑ranked public research university situated in the heart of... ...undergraduate, graduate, and executive programs in engineering, computing, science, business, design,... ...biomedical technology to artificial intelligence, energy, sustainability, semiconductors...IntelligenceContract workFor contractorsWork at officeLocal area
- ...Security We are seeking a Senior AI Security Engineer to join our innovative... ...Drive innovation through research and implementation of advanced... ...comprehensive architecture reviews, threat modeling, and... ...the future of artificial intelligence. Tricentis is proud to be...SeniorIntelligenceWork experience placementVisa sponsorshipWork visa
$102.17k
...Trinnex Security Team as a Senior Cyber Security Analyst,... ...against evolving threats. You will work closely with engineering and development teams to... ...lead remediation efforts. Research advanced threat actors and... ...forward‑looking threat intelligence and defense strategies....SeniorIntelligenceH1b- ...– Intel and Email to enhance its security program and manage threats. The Analyst will monitor the external environment for threats... ...Candidates should have at least 2 years of experience in cyber threat intelligence and email security filtering. This role emphasizes strong...Intelligence
- ...is part of Payment Systems Intelligence - a key component of Global... ...global scam campaigns. The Senior Analyst will be responsible... ...Senior Analyst will also be researching, drafting, publishing, and presenting... ...new fraud and cybercrime threats to the payments ecosystem...SeniorIntelligenceWork experience placementWork at officeLocal areaWeekend work
- ...uses technology, artificial intelligence, and data science to deliver... ...healthcare questions. Position Senior BD Manager Location: Onsite –... ...This role focuses on market research, relationship management, and... ...to market shifts, competitive threats, and operational challenges,...SeniorIntelligenceContract workFlexible hoursShift work
- Principal Innovation Engineer Will be responsible for driving Huntington’s most complex innovation... ...decisions, trade‑offs, and outcomes for senior stakeholders Champion a culture of... ..., Information Technology, Artificial Intelligence, Machine Learning, or a related...Intelligence
- ...customers around the world. Senior Product Manager - Identity Verification... ..., customer & competitive intelligence Conduct structured discovery... ...growth opportunities and threats. Own competitive positioning... ...security, risk, compliance, engineering, procurement) and navigate...SeniorIntelligence
- The Georgia Institute of Technology (Georgia Tech) is seeking candidates for a Senior Research Engineer or Scientist role within the Scalable Thermal Energy Engineering Laboratory (STEEL) in Atlanta, Georgia. This position involves managing large research projects and...Senior
- ...We are looking for a Senior Product Marketing Manager... ...own the go-to-market engine and contribute to the... ..., contributing market intelligence, competitive analysis,... ...synthesize voice-of-customer research, market trend analysis... ...emerging competitive threats to inform both near-...SeniorIntelligenceCasual workRelocation
$230k
...Maximus is currently seeking a Senior Director of Cybersecurity... ...In this role, you will lead engineering, compliance, and advanced solution... ...application of artificial intelligence and modern security... ...assessment, penetration testing, and threat mitigation techniques....SeniorIntelligenceRemote work- Emory University in Atlanta, GA invites applications for the position of Intelligence and Threat Assessment Investigator. You will identify, assess, and manage potential threats to the safety and security of the Emory enterprise. The role requires conducting thorough investigations...Intelligence
$135k - $165k
...providers. What you'll do As Senior Product Marketing... .... Lead competitive intelligence for the voice... ...competitors, emerging threats, and market positioning... ...market guides. Contribute research, proof points, and thought... ...with Sales, Sales Engineering, Product, and Demand Generation...SeniorIntelligenceShift work- ...supporting the maintenance of the security program, monitoring cyber threats, and managing email security configurations. The ideal candidate will have at least 2 years of experience in cyber threat intelligence and email security filtering systems. Strong communication and...Intelligence
$125k - $140k
...Description SENIOR SOLUTIONS ENGINEER US REMOTE; RALEIGH, NC, DRAPER, UT EGNYTE YOUR CAREER. SPARK... ...compliance, prevent and detect ransomware threats, and boost employee productivity on... ...technical solutions. Market Intelligence: Maintain deep knowledge of the AEC competitive...SeniorIntelligenceWork at officeLocal areaRemote workWorldwideFlexible hours$99.3k - $158.69k
...Patch Management Specialist, Senior oversees enterprise patch... ...to integrate scan results, threat intelligence, and asset criticality into... ...infrastructure operations, or security engineering with progressive ownership... ...ranges for ASM Research positions vary depending on...SeniorIntelligenceContract workWork at officeRemote work$127.3k - $204.1k
...Description We are seeking a highly analytical Senior Consultant to join our Case... ...investigative findings and breach‑related intelligence inform Integrity Risk assessments and decisions... ..., ecosystem risk, and emerging threats. Facilitate communication and coordination...SeniorIntelligenceWork experience placementWork at officeLocal area- ## Senior Information Security AnalystApplylocations: Atlanta,... ...responding to security events and threats across the organization.... ...* Translating threat intelligence into actionable detection and... ...detection techniques## **Security engineering & architecture (20)%***...SeniorIntelligenceLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Research Engineer, Threat Intelligence. Be the first to apply!
- research programmer Atlanta, GA
- research engineer Atlanta, GA
- senior research engineer Atlanta, GA
- engineering change analyst Atlanta, GA
- engineering business analyst Atlanta, GA
- research software engineer Atlanta, GA
- deep learning research engineer Atlanta, GA
- engineering analyst Atlanta, GA
- senior trade analyst Atlanta, GA
- senior app developer Atlanta, GA

