Source Job

Global

  • Lead incident response for major hacks, coordinating triage, communications, and post-incident reports.
  • Ensure major hacks are visible to customers within hours and keep TRM's hack data complete and accurate.
  • Design AI-powered systems to automate hacks analysis and detect vulnerable contracts before exploitation.

Incident Response Threat Intelligence AI Tools Team Leadership

20 jobs similar to Senior / Staff Threat Intelligence Analyst

Jobs ranked by similarity.

Global 12w maternity 12w paternity

  • Lead incident response across platforms and applications, from triage to recovery.
  • Hunt proactively for threats using system logs, user behavior, and threat intelligence.
  • Build and automate incident response workflows and strengthen detection with MITRE ATT&CK.

Xplor provides cloud-based technology solutions that help small and medium-sized businesses manage operations and get paid securely. With over 130,000 businesses in 72+ countries processing $47B annually, the company fosters a culture of simplicity, purpose, and community.

$144,300–$216,500/yr
US

  • Proactively hunt for advanced threats and dissect complex fraud vectors using hypothesis-driven threat hunting operations.
  • Apply and enrich the FT3 taxonomy to standardize threat intelligence across kill chain phases and API endpoints.
  • Collaborate cross-functionally to integrate threat intelligence, build agentic simulation workflows, and eliminate product vulnerabilities.

Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments and grow revenue. They are a large, global company with a mission to increase the GDP of the internet and a culture of innovation and collaboration.

US

  • Manage daily incident response and forensic analysis of compromised systems.
  • Formulate and direct incident response efforts, prioritizing actions and creating detailed reports.
  • Build incident response plans, playbooks, and attack simulations for tabletop exercises.

Check Point protects over 100,000 organizations worldwide from cyber and AI-driven threats with a prevention-first approach. The company is recognized for workplace culture by TIME, Newsweek, and Forbes.

Global

  • Analyze data to identify confirmed relationships and document threat actor tactics.
  • Initiate communication with international government agencies and build relationships.
  • Respond promptly to user needs and stay abreast of industry trends.

Kodex is a secure data exchange platform that revolutionizes how organizations handle sensitive subpoenas and data requests from law enforcement and government agencies. Backed by leading investors like Andreessen Horowitz and Y Combinator, the company is growing, innovative, and trusted by over 15,000 government agencies in 190 countries.

$192,000–$278,000/yr
Canada

  • Lead, develop, and support a team of security incident responders, setting clear expectations and driving career development.
  • Define and drive the security incident response roadmap, including automation and AI-assisted tooling.
  • Oversee detection, triage, containment, remediation, and post-incident learning for complex high-severity security events.

The company provides password management services to individuals and businesses. It fosters a collaborative, inclusive culture focused on transparency, psychological safety, and continuous learning.

US

  • Monitor and analyze sophisticated cyber threats targeting Anduril's products, infrastructure, and personnel.
  • Research and anticipate emerging technical trends in the threat landscape, collaborating with detection and response teams.
  • Enhance tooling for threat actor tracking and intelligence data integration, engaging with external partners.

Anduril Industries is a defense technology company focused on transforming military capabilities with advanced technology, including AI-powered systems and autonomy. The company is known for its fast-paced, innovative culture and its commitment to bringing cutting-edge solutions to the defense industry.

UK

  • Lead the Incident Operations function, building and managing a team of Incident Commanders for critical incidents.
  • Establish severity models, escalation paths, and 24x7 follow-the-sun coverage across global regions.
  • Drive continuous improvement through retrospectives, KPIs, and AI-powered automation to reduce operational toil.

Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities, focusing on remote and flexible roles. The company values efficiency and objectivity in recruitment, fostering an inclusive environment that emphasizes curiosity, empathy, and accountability.

Poland

  • Lead investigation and resolution of complex cybersecurity incidents in the Security Operations Centre.
  • Analyze and correlate security events from SIEM, IDS, EDR, and other sources.
  • Conduct digital forensic investigations and provide expert guidance throughout the incident response lifecycle.

Eurofins Scientific is an international life sciences company providing analytical testing services to make life and the environment safer, healthier, and more sustainable. With over 65,000 employees across 950+ laboratories in 60 countries, they are a global leader in testing and laboratory services.

$105,000–$105,000/yr
US

  • Act as the primary escalation point and technical lead for complex incidents.
  • Enhance monitoring by tuning alerts, refining detection logic, and automating workflows.
  • Mentor junior engineers and document incident response procedures.

DYOPATH is a managed security services provider that helps organizations defend against evolving cyber threats through security operations and monitoring. The company fosters an award-winning culture guided by its L.O.V.E. philosophy, emphasizing teamwork, respect, and professional growth.

Canada US

  • Lead complex, high-severity security incident responses as incident commander.
  • Design and build AI-assisted automation for security operations.
  • Own readiness programs, threat hunting, and insider risk capabilities.

1Password is a cybersecurity company that provides enterprise password management and unified access management, trusted by over 180,000 businesses. They are a remote-first company with a fast-paced, collaborative culture, and have surpassed $400M in ARR.

Philippines

  • Monitor customer environments on the ERM intelligence platform and produce actionable alerts and reports.
  • Investigate urgent issues like cyber attacks, including threat actors and techniques.
  • Resolve Tier 1 technical issues, answer follow-ups, and troubleshoot complex systems.

Check Point Infinity External Risk Management, also known as Cyberint, continuously reduces external cyber risk with a unified solution. We are a team focused on managing and mitigating external cyber threats for customers.

Canada

  • Lead and shape the global threat intelligence program to address emerging cyber threats and adversary activity.
  • Conduct OSINT research and threat analysis to produce actionable intelligence for security teams.
  • Collaborate with cross-functional teams to influence product architecture and defensive controls.

The partner company operates in the cybersecurity sector, focusing on threat intelligence and software security. It maintains a globally distributed team with a culture of collaboration and continuous learning.

Brazil

  • Lead the complete response lifecycle for Level 2 and Level 3 security incidents, from analysis to containment and eradication.
  • Coordinate with MSSPs, 24/7 SOC, and cross-functional teams (Legal, DPO, Communications) during critical incidents.
  • Develop and refine IR playbooks, perform DFIR investigations, and integrate automation with SOAR.

Grupo QuintoAndar is the largest real estate ecosystem in Latin America, with a diversified portfolio of brands and solutions across the housing journey. The company is valued at over USD 5.1 billion and has a Technology Hub in Portugal, fostering innovation, collaboration, and high performance.

United States

  • Independently triage security alerts and incident reports.
  • Investigate incidents using forensic and threat hunting skills.
  • Drive incidents to closure and enhance response platforms.

LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. The company is committed to a culture built on trust, care, inclusion, and fun, offering transformational opportunities for employees.

Global

  • Define and own the strategy and roadmap for the unified remote workspace, spanning collaboration, identity, and zero-trust access.
  • Lead the enterprise collaboration and productivity platform, securely embedding AI features like summarization and transcription.
  • Manage a global zero-trust access platform, oversee offensive security, vulnerability management, and incident response.

Binance is a leading global blockchain ecosystem behind the world's largest cryptocurrency exchange. We serve 300+ million people in 100+ countries with secure, transparent digital-asset products and a culture focused on advancing financial freedom.

India

  • Review and disposition transaction monitoring alerts and conduct detailed investigations on complex AML/CFT cases.
  • Prepare case narratives and support SAR/STR filing processes including FIU submissions.
  • Collaborate with Compliance, Legal, and other stakeholders to ensure timely escalation and regulatory compliance.

Binance is the world's largest cryptocurrency exchange by trading volume, providing a platform for digital asset trading, finance, education, and more. The company is trusted by over 300 million users globally and fosters a results-driven, collaborative culture with a flat organizational structure.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

Sweden

  • Identify and respond to security incidents on a global scale.
  • Act as incident commander to drive incidents through the entire response lifecycle.
  • Design and maintain security alerts, automated actions, playbooks and escalation workflows.

Mozilla Corporation is a non-profit-backed technology company that makes pioneering brands like Firefox and focuses on AI, social media, security, and more. With over 225 million monthly users, Mozilla is wholly owned by the Mozilla Foundation and strives to reclaim an internet built for people.

France 8w maternity 4w paternity

  • Investigate smart contracts and identify vulnerabilities across the full protocol lifecycle.
  • Lead security audits independently using AI as a primary collaborator.
  • Conduct open-ended research into emerging blockchain technologies and attack vectors.

They are a security-focused research team protecting some of the most important protocols in the blockchain ecosystem. Their team is remote-first, with a culture of collaboration and continuous learning.

$100,000–$110,000/yr
US

  • Lead holistic risk assessments for high-net-worth families, corporations, and non-profits.
  • Design and manage open-source monitoring plans to discover threats against executives and assets.
  • Provide ad hoc security and risk advisory on digital footprint and security best practices.

Concentric is a risk consultancy specializing in strategic security and intelligence services for private clients and corporations globally. The company is a growing team of elite professionals from military, government, and intelligence backgrounds, committed to integrity, collaboration, and excellence.