Threat Intelligence Researcher (cloud)

Wiz Wiz · Enterprise · United States · Remote · Threat & AI Research

This role involves tracking, analyzing, and reporting on advanced threats targeting cloud environments, focusing on cyber espionage and cyber crime specialists. The researcher will hunt through data sources, leverage open and closed data, investigate and attribute incidents, and communicate findings.

What you'd actually do

  1. Identify, analyze, and track advanced state-backed or/and financially motivated attackers that target cloud ecosystems.
  2. Hunt through a wide range of data sources to identify malicious campaigns targeting Wiz customers.
  3. Leverage open and closed-data to track the infrastructure and malware used by advanced actors.
  4. Investigate and attribute incidents, campaigns, and threat actors to understand more about the attackers and what motivates them.
  5. Communicate novel findings to multiple audiences, including customers and the public.

Skills

Required

  • 5+ years of experience in security or threat research
  • focus on either advanced state-backed actors or sophisticated financially motivated campaigns
  • Deep subject matter expertise in at least one actor tracking mechanism (malware, infrastructure, etc)
  • Experience working with large-scale telemetry, especially infrastructure hunting and by pivoting through query languages and scripting.
  • Familiarity with malware analysis
  • using YARA to hunt for malware
  • Willingness to take on multiple roles to build out actor tracking

Nice to have

  • Knowledge of how attackers target the major cloud and identity providers (AWS, GCP, Azure), Kubernetes, and modern cloud-native architectures.
  • Experience building tools to exploit data sources in a repeatable and scalable manner.
  • Background in incident response, threat intelligence, or threat hunting.

What the JD emphasized

  • proven track record of tracking sophisticated threat actors
  • novel and durable ways of identifying and tracking threat actors
  • track record of public communication of novel and newsworthy findings