Senior Threat Intelligence Engineer
You will monitor and analyze credible threats affecting GitLab and the software supply chain, issue flash reports, and maintain the Threat Intelligence Platform and intelligence-collection pipelines. You will support incident response through malware analysis and threat-actor tracking, collaborate on Purple Team operations, share intelligence with industry peers, and use Python, AI, and automation to improve team processes.
Responsibilities
- Monitor the threat landscape and analyze risks relevant to GitLab
- Raise awareness through ad-hoc Flash Reports
- Administer the Threat Intelligence Platform
- Build intelligence collection pipelines using open-source, proprietary, and internal sources
- Support incident response through malware analysis and threat actor tracking
- Collaborate on Purple Team Flash Operations
- Build relationships with industry peers and share intelligence on emerging threats
- Write code, leverage AI, and build automation to improve process efficiency
Requirements
- Demonstrate a proven track record of delivering actionable threat intelligence that materially improves organizational security
- Work with a Threat Intelligence Platform and manage ingested and exported threat feeds
- Research adversaries using OSINT and structured analytical techniques
- Automate tasks by writing basic scripts or programs, preferably in Python
- Communicate complex topics clearly and concisely in writing and verbally
- Have optional experience reverse engineering malware, particularly macOS and Linux malware and malware delivered via code repositories
- Have optional public blogs or open-source work related to threat intelligence
Benefits
- Benefits supporting health, finances, and well-being
- Flexible Paid Time Off
- Team Member Resource Groups
- Equity compensation
- Employee Stock Purchase Plan
- Growth and Development Fund
- Parental Leave