Sr Threat Intelligence Investigator
mitigations. Proficient in using structured queries to extract data from logs and in developing detection signatures (e.g., YARA...
mitigations. Proficient in using structured queries to extract data from logs and in developing detection signatures (e.g., YARA...
-as-code (YARA-L, Sigma, SPL), LLM-assisted workflows, penetration testing, red teaming, or triaging bug bounty reports...
to develop and validate your own findings Have experience authoring detection logic (YARA, Sigma, Snort/Suricata, or SIEM-native...
-deployment software or models under confidentiality constraints Experience authoring detection content (e.g., Sigma, YARA...
by traditional security controls. Develop, test, and maintain detection content, including SIEM correlation rules, YARA rules, Snort... tools such as YARA, Snort, Suricata, and host-based security solutions. Understanding of adversary tactics, techniques...
, Snort, YARA, or Zeek Prior experience producing cyber threat intelligence reports or working with threat intelligence...
in network and detection engineering (YARA, SIGMA, Zeek, Suricata, Detection-as-Code). Proficiency in programming... innovations, such as autonomous detection engineering, AI-powered YARA agents, or XSOAR machine learning integrations...
ATT&CK framework for adversary tactics and techniques mapping Experience with YARA, Snort, Suricata, or other signature...
telemetry, and detection authoring using query languages such as SQL, KQL (Kusto Query Language), Splunk SPL, or YARA...
tools. Knowledge of KQL, YARA, Regex, JSON, and Lucene Query Syntax. Knowledge of behavioral analysis and psychology...