Black Lotus Labs Threat Researcher - APT Research

Lumen
Maryland, District of Columbia, West Virginia
Workplace: RemoteFull timeUSD 145,456 - 193,940 annuallyFunction: Research & Scientific (R&D)Skills: ["Communication","Presentation","Analytical rigor","Collaboration"]

Conduct threat intelligence research focused on advanced persistent threats by leveraging large-scale datasets such as netflow, malware, and passive DNS. Build AI-assisted workflows and Python-based automation to scale detection, enrichment, and intelligence production across network and endpoint telemetry. Collaborate with research, engineering, data science, and customer-facing teams to develop tracking techniques, perform threat hunting, and deliver actionable insights to technical and executive stakeholders.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Lumen
Lumen
1 month ago

Black Lotus Labs Threat Researcher - APT Research

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live
Reposted: similar role first listed 1 month ago

Job Summary

Conduct threat intelligence research focused on advanced persistent threats by leveraging large-scale datasets such as netflow, malware, and passive DNS. Build AI-assisted workflows and Python-based automation to scale detection, enrichment, and intelligence production across network and endpoint telemetry. Collaborate with research, engineering, data science, and customer-facing teams to develop tracking techniques, perform threat hunting, and deliver actionable insights to technical and executive stakeholders.
Location: Maryland, District of Columbia, West Virginia
Workplace: Remote
Employment Type: Full time
Job Function: Research & Scientific (R&D)

Key Responsibilities

  • •Leverage global datasets (e.g., netflow, malware, passive DNS) to track malicious actors, infrastructure, and campaigns.
  • •Develop repeatable AI-assisted and automation-driven methods to accelerate detection, prioritization, and intelligence production.
  • •Define and implement techniques for tracking sophisticated adversaries and delivering actionable threat intelligence to customers.
  • •Lead and enhance threat hunting by collaborating with research, engineering, data science, and customer-facing teams while exploring new data sources.
  • •Identify malicious activity across network, endpoint, DNS, routing, and enrichment data, scaling detection via Python-based automation and data pipelines.
Travel: Low travel

Pay and Benefits

Salary: USD 145,456 - 193,940 annually
Perks:Health InsuranceDentalVision401kGym MembershipLearning Budget

Key Requirements

  • •Proven experience in threat analysis and in-depth technical security research, including identifying and tracking nation-state malicious infrastructure using network traffic analysis.
  • •Fluency in threat hunting methodologies and attacker TTPs, with the ability to translate complex data into actionable threat hunts, detections, and intelligence requirements.
  • •Experience with large-scale data analysis platforms, including tools such as PySpark.
  • •Experience with telemetry collection and analysis, including OSINT and proprietary endpoint/network data and DNS/routing data.
  • •Proven communication and presentation skills to convey complex technical findings and intelligence judgments to technical, executive, customer, and partner audiences.
Experience:Threat intelligenceCybersecurityAdvanced persistent threatsOSINTTelemetry
Skills:CommunicationPresentationAnalytical rigorCollaboration
Tech Stack:PythonPySparkOSINTNetflowPassive DNSDNSRouting dataDockerHadoopSparkTensorFlowPyTorchVector databasesWorkflow orchestrationAI-assisted workflowsAgentic AIMCP-based architectures

Eligibility

Security Clearance:TS/SCI

Company Brief

Lumen
Provides integrated communications, network, edge cloud, and security services to enterprise, government, and carrier customers, operating a global fiber network and delivering connectivity and managed IT solutions.
Industry: Telecommunications
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Monroe, United States
WebsiteLinkedIn