Job Description
📋 Description Produce actor profiles, campaigns, IOC packages, and attributions. Lead complex investigations from seeds to actor clusters or campaigns. Correlate indicators with OSINT, infrastructure, and finance signals. Triage large indicator sets and deliver clear, defensible findings. Support incident responders and partner teams with timely intel. Help evaluate new analytic tooling and improve workflows. 🎯 Requirements 5+ years in cyber threat intelligence or related field. Proven experience producing finished intelligence products (actor profiles, reports). Deep familiarity with cyber investigations, attribution, and profiling. Strong OSINT instincts to resolve identities across sources. Ability to connect technical findings to financial infrastructure (wallets, sanctions). AI fluency is required; apply AI to research with human quality control. 🎁 Benefits Distributed team with async Slack and Notion collaboration. High autonomy, high standards, low bureaucracy. Work across cyber, OSINT, and blockchain threat activity. Impactful work protecting billions of people. Team rhythms with weekly syncs and daily Slack updates. Remote-friendly with hubs in LA, SF, NY, DC, London, Singapore.