Researcher assisting the Cyber Threat Intelligence team at Anomali. Conducting OSINT research, sample analysis, and developing automation workflows.
Responsibilities
Conducting false positive/negative triage within ThreatStream, ensuring accurate classification and minimal intelligence misattribution.
Assist with sample collection and analysis, including handling malware samples, suspicious files, and malicious infrastructure.
Develop and refine custom scripts and automation workflows to improve threat analysis and intelligence ingestion.
Work with wider teams to research, structure, and publish the semi-annual State of OSINT Report.
Contribute to threat detection improvements, including refining behavioral indicators and intelligence structuring.
Develop behavioral detections with the Anomali Query Language (AQL)
Requirements
BSc/BEng in Computer Science, Cybersecurity or, an additional 3 years of relevant experience in lieu of degree
Basic knowledge of malware analysis techniques, including dynamic/static analysis, sandboxing, and unpacking.
Experience with triaging False Positives and False Negatives, ensuring accurate threat classifications.
Familiarity with scripting languages (e.g., Python, Bash, or PowerShell) to automate malware analysis and intelligence workflows.
Understanding of OPSEC principles and secure research practices, particularly in handling malware execution.
This position is not eligible for employment visa sponsorship. The successful candidate must not now, or in the future require visa sponsorship to work at our Belfast location.
Experience with reverse engineering tools such as IDA Pro, Ghidra, or Radare2.
Hands-on experience using sandbox environments (e.g., Cuckoo, Any.Run, VMRay, or Joe Sandbox) for malware behavior analysis.
Basic understanding of network security concepts, including traffic analysis, PCAP inspection, and C2 detection.
Prior experience with Threat Intelligence Platforms (TIPs) such as ThreatStream, MISP, or OpenCTI.
Web scraping and automation experience, preferably using Python, to collect and structure intelligence data.
Ingénieur en sécurité physique participant à des projets d’envergure au sein de Stantec. Analysant besoins, concevant systèmes de sécurité et préparant documentation technique.
System Security Engineer strengthening cybersecurity posture across on - premise and hybrid environments. Focused on Windows infrastructure security, identity management, and compliance.
Security Testing Lead overseeing application security testing activities at Computer World Services. Ensuring continuous identification and remediation of application security risks through dynamic testing methods.
IS Security Administrator managing all aspects of cyber security and data protection at Avita Health System. Responsible for risk assessments and IT security strategies across various platforms.
Senior Security Engineer strengthening security at fintech startup Flanks, focusing on security initiatives and practices across applications and infrastructure.
Director of Control Assurance leading IT risk management and controls testing at RBC. Propelling technology, risk, and security advancements across the organization.
Physical Security Technology Manager overseeing design and implementation of security technologies across global offices. Collaborates with teams to ensure compliance and optimize security solutions.
OT Security Architect at Orange Cyberdefense providing security solutions for operational technology environments. Leading efforts in OT/ICS security and ensuring stable production for clients.
Design and manage cybersecurity strategies protecting critical information assets for a retail company. Oversee compliance and lead information security initiatives in Mexico City and Culiacán.
Security Consultant for NTT DATA tackling client cybersecurity challenges through assessments and customized solutions. Responsible for implementing security measures and managing risk effectively.