
Senior Threat Intelligence Engineer
Cloudflare
full-time
Posted on:
Location Type: Hybrid
Location: Austin • Texas • United States
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Proactively research, collect, and analyze threat intelligence from various sources.
- Design, implement, and maintain detection use cases for the entire machine learning lifecycle.
- Develop detailed profiles of relevant threat actors with frameworks like MITRE ATT&CK.
- Produce and disseminate actionable intelligence reports and briefings for technical security teams.
- Engineer the ingestion, enrichment, and contextualization of Indicators of Compromise (IOCs) and Indicators of Attack (IOAs) into security platforms.
Requirements
- 4+ years of hands-on experience in a Security Engineering, Cyber Threat Intelligence, or Security Automation role.
- Strong proficiency in at least one scripting/programming language for automation (e.g., Python).
- Deep understanding of the cyber kill chain, threat actor TTPs, common attack vectors, networking protocols, and operating system internals.
- Proven experience designing and implementing SOAR playbooks and integrating security tools via APIs.
- Familiarity with security services and automation in major cloud environments (AWS, Azure, or GCP).
Benefits
- Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code.
- Proactively research, collect, and analyze threat intelligence from various sources.
- Produce and disseminate timely, relevant, and actionable intelligence reports for technical security teams and executive leadership.
- Design, develop, and implement robust automation workflows to streamline security operations tasks.
- Collaborate with Security Engineers and Software Developers to integrate security and intelligence-driven practices into the corporate infrastructure.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Pythonmachine learningSOAR playbooksAPI integrationthreat intelligence analysisIndicators of Compromise (IOCs)Indicators of Attack (IOAs)networking protocolsoperating system internalscyber kill chain