Verified today
Staff Threat Intelligence Researcher
About the role
Arctic Wolf's Threat Intelligence organization seeks a Staff Threat Intelligence Researcher to help end cyber risk by leading advanced cyber threat intelligence research and translating adversary insights into measurable defensive outcomes. Day-to-day, you will conduct deep technical analysis, track threat actors and malware campaigns, perform malware and network infrastructure analysis, and translate findings into detection logic using YARA, Sigma, and Suricata. You will also partner with SOC and MDR teams, mentor peers, and publish research. This full-time role is based in Bengaluru, India.
What you’ll do
- Lead and contribute to threat actor, malware family, and campaign tracking by correlating malware samples, infrastructure, delivery mechanisms, and adversary tradecraft
- Conduct end-to-end cyber threat intelligence research aligned with frameworks such as the Cyber Threat Intelligence lifecycle, MITRE ATT&CK, and the Diamond Model
- Perform static and dynamic malware analysis across malicious binaries, scripts, and document-based delivery mechanisms
- Investigate malicious network infrastructure and command-and-control activity by pivoting across domains, IP addresses, certificates, and related artifacts
- Translate intelligence findings into actionable detection and threat hunting logic using technologies such as YARA, Sigma, and Suricata
- Analyze Windows or macOS internals including APIs, obfuscation techniques, system calls, and execution behaviors
- Apply advanced open-source intelligence techniques, pivoting methodologies, and enrichment across multiple intelligence platforms and data sources
- Research Deep Web ecosystems including crimeware-as-a-service and ransomware-as-a-service operations
What you’ll bring
- 10+ years of relevant experience with recognition as a technical authority within adversary ecosystems such as ransomware, financially motivated crimeware, or nation-state operations
- Strong experience in cyber threat intelligence research, adversary tracking, and intelligence analysis
- Hands-on experience applying threat intelligence to detection engineering, threat hunting, incident response, or threat modeling
- Experience with malware analysis tooling, host telemetry, and network telemetry analysis
- Strong knowledge of modern threat intelligence frameworks and methodologies
- Experience translating intelligence into measurable operational outcomes and defensive improvements
- Comfortable working independently within highly ambiguous and rapidly evolving threat environments
- Strong analytical, communication, and problem-solving skills
Nice to have
- Experience publishing threat research, whitepapers, or presenting at industry conferences
- Experience collaborating with external intelligence-sharing communities or trusted industry partners
- Experience building scalable threat intelligence workflows and operational frameworks
- Familiarity with large-scale telemetry analysis and data science methodologies
- Experience automating intelligence workflows and enrichment pipelines
Skills
Benefits
- Equity for all employees
- Flexible annual leave, paid holidays, and volunteer days
- Training and career development programs
- Comprehensive private benefits plan including medical insurance for you and your family, life insurance equal to three times compensation, and personal accident insurance
- Fertility support and paid parental leave