Staff Cyber Threat Intelligence Analyst

TRM Labs
United States, Thailand, Bangkok, Japan, Philippines, Manila, Singapore, Ireland, Dublin, United Kingdom, EMEA, South Korea, Seoul
Workplace: RemoteFull timeFunction: CybersecurityExperience: 8+ yearsSkills: ["Communication","Collaboration","Analytical thinking","Problem-solving"]

Staff-level cyber threat intelligence role conducting high-complexity investigations, shaping analytic methods, and collaborating with engineers and data scientists to scale TRM’s cyber threat capabilities; lead investigations, produce finished intelligence, and drive workflow improvements across multiple campaigns.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
TRM Labs
TRM Labs
2 months ago

Staff Cyber Threat Intelligence Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live

Job Summary

Staff-level cyber threat intelligence role conducting high-complexity investigations, shaping analytic methods, and collaborating with engineers and data scientists to scale TRM’s cyber threat capabilities; lead investigations, produce finished intelligence, and drive workflow improvements across multiple campaigns.
Location: United States, Thailand, Bangkok, Japan, Philippines, Manila, Singapore, Ireland, Dublin, United Kingdom, EMEA, South Korea, Seoul
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Produce finished cyber threat intelligence, including actor profiles, campaign reports, IOC packages, infrastructure attributions, and evidence-ready analytical outputs.
  • •Act as a staff-level analytical leader across multiple active actors and campaigns, raising quality, shaping standards, and coaching other analysts through exemplary tradecraft and judgment.
  • •Drive the highest-complexity investigations from seed indicators through to attributed actors, clusters, or campaign pictures, and codify reusable methods.
  • •Correlate technical indicators with OSINT, identity signals, infrastructure patterns, and financial-rail activity to build a fuller understanding of adversary behavior.
  • •Triage large indicator sets, cluster infrastructure, and turn fragmented signals into clear, defensible findings while improving repeatability and rigor across the team.

Key Requirements

  • •8+ years of experience in cyber threat intelligence, intelligence analysis, incident-driven investigations, or a closely related analytical field.
  • •Demonstrated experience producing finished intelligence products such as actor profiles, campaign reports, attribution assessments, or infrastructure mapping.
  • •Deep expertise in cyber investigations, infrastructure attribution, campaign analysis, and actor profiling with a high bar for analytical rigor.
  • •Strong OSINT instincts and the ability to resolve identities, aliases, and behavior across fragmented sources.
  • •The ability to connect technical findings to financial infrastructure, including wallets, laundering paths, sanctions exposure, or identity-linked leads when relevant.
Experience:8+ yearsCybersecurityThreat intelligenceBlockchainAI
Skills:CommunicationCollaborationAnalytical thinkingProblem-solving
Tech Stack:AINotionSlackOSINTBlockchain

Company Brief

TRM Labs
Provides blockchain intelligence and crypto risk management solutions to help financial institutions, governments, and crypto firms detect fraud, trace illicit activity, and comply with regulatory requirements across digital asset ecosystems.
Industry: RegTech
Company Size: Large (251 to 1,000 employees)
Growth: Growth Stage Startup
Headquarters: San Francisco, United States
Founded: 2018
WebsiteLinkedIn