Security Engineer 2 - Cyber Threat Intelligence

Datadog Datadog · Enterprise · New York, NY · Security

Security Engineer role focused on Cyber Threat Intelligence, developing tooling for intelligence collection and analysis, assessing threats, conducting threat hunting, and operationalizing intelligence into security improvements. Partners with security teams for detection, response, and strategy.

What you'd actually do

  1. Develop and maintain tooling that automates the collection, processing, analysis, and dissemination of threat intelligence.
  2. Assess emerging vulnerabilities, threat activity, and security events to help stakeholders understand potential impact to Datadog.
  3. Conduct threat hunting and infrastructure analysis to identify adversary activity relevant to Datadog and improve defensive controls.
  4. Partner with security teams to operationalize intelligence into detections, investigations, and response workflows.
  5. Coordinate with information-sharing communities to gather, evaluate, and disseminate actionable intelligence.

Skills

Required

  • writing and presenting operational and technical intelligence
  • partnering with detection and response teams
  • information-sharing communities
  • identifying and responding to large-scale emerging threats
  • dynamic/static analysis of Linux and MacOS malware
  • tracking cloud-native cybercrime and nation-state threat actors
  • developing threat intelligence tooling and automation

Nice to have

  • presenting at security conferences
  • publishing threat research
  • malware reverse engineering

What the JD emphasized

  • operationalize intelligence
  • threat hunting
  • malware analysis
  • threat actors