Threat Intelligence Researcher (cloud)

Wiz Wiz · Enterprise · United Kingdom · Threat & AI Research

This role focuses on threat intelligence research within cloud environments, tracking and analyzing advanced attackers. It involves hunting through data sources, investigating incidents, and communicating findings.

What you'd actually do

  1. Identify, analyze, and track advanced state-backed orand financially motivated attackers that target cloud ecosystems.
  2. Hunt through a wide range of data sources to identify malicious campaigns targeting Wiz customers.
  3. Leverage open and closed-data to track the infrastructure and malware used by advanced actors.
  4. Investigate and attribute incidents, campaigns, and threat actors to understand more about the attackers and what motivates them.
  5. Communicate novel findings to multiple audiences, including customers and the public.

Skills

Required

  • 5+ years of experience in security or threat research
  • focus on either advanced state-backed actors or sophisticated financially motivated campaigns
  • Deep subject matter expertise in at least one actor tracking mechanism (malware, infrastructure, etc)
  • Experience working with large-scale telemetry, especially infrastructure hunting and by pivoting through query languages and scripting.
  • Familiarity with malware analysis
  • using YARA to hunt for malware
  • Willingness to take on multiple roles to build out actor tracking

Nice to have

  • Knowledge of how attackers target the major cloud and identity providers (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
  • Experience building tools to exploit data sources in a repeatable and scalable manner.
  • Track record of public communication of novel and newsworthy findings.
  • Background in incident response, threat intelligence, or threat hunting.

What the JD emphasized

  • proven track record of tracking sophisticated threat actors
  • Ability to find novel and durable ways of identifying and tracking threat actors across multiple data sets