Neural AI

All job descriptions

Threat Intelligence Engineer

Cybersecurity Mid-level (L4 equivalent) 2-5 years
1 Which company are you aiming at?
To generate precise rejection-prevention feedback and application strategy, tell us where you're targeting.
2 Send your application
You need an account so we know where to send the feedback.

The job description

Tech stack. MISP, STIX/TAXII feeds, VirusTotal and Recorded Future, Sigma and YARA, Python, MITRE ATT&CK, dark web monitoring sources, link analysis tools

About the role

You will turn raw threat data into operational decisions for a technology company's security team, tracking the specific actors and campaigns most likely to target the business. The threat intelligence function feeds detection engineering, informs security architecture choices, and briefs leadership on the evolving adversary landscape. You will produce finished intelligence, automate indicator pipelines, and build the sharing relationships that provide early warning. This role matters because defenders who truly understand their adversary stop reacting to background noise and start preparing for what is actually coming, which is the fundamental difference between intelligence and trivia. You will also brief product and engineering leaders so threat insight shapes roadmaps and architecture decisions, not just SOC workflows. Your reporting will distinguish assessed judgments from raw data, always.

What you will achieve

What you will bring

Must-haves

Nice-to-haves