Senior Research Engineer, Threat Intelligence

SecurityScorecard
Pittsburgh
Workplace: RemoteFull timeUSD 140,000 - 150,000 annuallyFunction: Research & Scientific (R&D)Experience: 5-8 yearsEducation: bachelorsSkills: ["Cross-functional collaboration","Healthy skepticism","Bridge mindset","Delivery orientation","Automation mindset"]

Join the STRIKE Threat Intelligence team and turn threat research into production-ready detection and intelligence. Own the research-to-production pipeline—from handoff contracts and platform components to distribution feeds and customer alerts. Build and maintain multi-service systems for sandbox orchestration, OSINT ingestion, and rules engines, drive STIX 2.1/TAXII 2.1 adoption, and engineer workflows that reduce analyst overhead while keeping output grounded and regression-safe.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
SecurityScorecard
SecurityScorecard
2 months ago

Senior Research Engineer, Threat Intelligence

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Join the STRIKE Threat Intelligence team and turn threat research into production-ready detection and intelligence. Own the research-to-production pipeline—from handoff contracts and platform components to distribution feeds and customer alerts. Build and maintain multi-service systems for sandbox orchestration, OSINT ingestion, and rules engines, drive STIX 2.1/TAXII 2.1 adoption, and engineer workflows that reduce analyst overhead while keeping output grounded and regression-safe.
Location: Pittsburgh
Workplace: Remote
Employment Type: Full time
Job Function: Research & Scientific (R&D)
Seniority: Sr. Manager level

Key Responsibilities

  • •Own the end-to-end path from research output to production-ready artifacts like detection rules, distributed feeds, scoring inputs, and customer alerts.
  • •Build and maintain STRIKE platform components across multiple services and runtimes, including distribution servers, sandbox orchestration, OSINT ingestion, and rules engines.
  • •Convert research into shipped detection content using YARA, Sigma, STIX patterns, behavioral indicators, and correlation pipelines.
  • •Drive standards adoption by implementing STIX 2.1 as a unified output schema and TAXII 2.1 for distribution, with governed schemas for downstream teams.
  • •Engineer research workflow automation such as indicator enrichment, corpus-grounded retrieval, schema-constrained output validation, and eval harnesses to catch regressions.

Pay and Benefits

Salary: USD 140,000 - 150,000 annually
Equity and Bonus:Equity
Perks:EquityHealth InsurancePaid LeaveParental Leave

Key Requirements

  • •5 to 8 years in a hands-on engineering role with meaningful exposure to threat intelligence, security research, or detection engineering.
  • •Build production systems that consume or emit threat intel data.
  • •Bachelor’s or Master’s in Computer Science, Cybersecurity, or a related technical field (self-taught practitioners with strong public work welcome).
  • •Production-level Python and TypeScript/Node; experience with relational/cache data stores and streaming or batch data platforms.
  • •Working knowledge of STIX 2.1, TAXII 2.1, MISP, and MITRE ATT&CK, plus hands-on YARA, Sigma, and STIX patterning.
Experience:5-8 yearsThreat intelligenceSecurity researchDetection engineeringCybersecurityOpen sourceOSINT
Education:Bachelor's in Computer Science, Cybersecurity, or related technical field
Skills:Cross-functional collaborationHealthy skepticismBridge mindsetDelivery orientationAutomation mindset
Languages:English
Tech Stack:PythonTypeScriptNodeAWSContainersCI/CDSTIX 2.1TAXII 2.1MISPMITRE ATT&CKYARASigmaSTIX patterningSQLRegexCELOPASplunkKinesisNetFlow

Eligibility

Work Authorization:Authorization required. Sponsorship not provided.

Company Brief

SecurityScorecard
Provides a cybersecurity ratings platform that continuously assesses and monitors organizations' and third-party vendors' security posture using external data and analytics to help enterprises manage risk, prioritize remediation, and inform vendor risk decisions.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Headquarters: New York, United States
Founded: 2013
WebsiteLinkedIn