GreyNoise Intelligence Logo

GreyNoise Intelligence

Threat Researcher

Posted One Month Ago
Remote
Hiring Remotely in United States
Entry level
Remote
Hiring Remotely in United States
Entry level
Conduct threat hunting across network telemetry and PCAP to identify novel malicious activity, campaigns, and adversaries. Research, cluster, track, attribute, and disrupt cyber threats; integrate intelligence sources, tools, and tradecraft; develop detection rules; analyze binaries and reverse engineer threats; and produce actionable intelligence for customers and the public.
The summary above was generated by AI
About GreyNoise

GreyNoise Intelligence is a mission driven security startup focused on helping organizations understand and mitigate risks from Internet scanning and exploitation. GreyNoise provides real-time, verifiable intelligence on all actors scanning the Internet and how some of them are attempting to exploit vulnerabilities on assets connected to corporate networks. The intelligence is highly trusted because it’s generated from a global fleet of thousands of purpose built sensors observing the Internet. Advanced data science techniques and AI are used to process millions of observed events into real-time intelligence for customers.

The GreyNoise Global Observation Grid observes and analyzes unique threat data at-scale that no one else can. GreyNoise provides the most actionable threat intelligence against perimeter threats, so that no attack works twice.


All US based positions are fully remote within the US, with optional office attendance at our DC area headquarters, unless otherwise specified. Applicants must have US work authorization. 

Please see the specific job description for all international position locations.


The Role

GreyNoise is hiring a Threat Researcher who will develop and exploit first, second, and third-party access and sources to produce cyber threat intelligence that practitioners will use to detect, disrupt, and impose cost on adversaries.


Responsibilities:
  • Hypothesis and lead driven hunting through existing first-party data and telemetry to identify, analyze, and expose new and novel malicious cyber activity and campaigns
  • Cluster, track, attribute, research, and disrupt malicious cyber threats
  • Develop and integrate new intelligence information, data sources, tools, systems, and tradecraft to produce a more comprehensive threat picture
  • Produce and disseminate actionable intelligence to customers and the public

Required Skills
  • Deep understanding of computer networking fundamentals and protocols
  • Deep technical ability to hunt through network traffic (full PCAP) at the macro and packet level
  • Deep technical skills with offensive tooling, tradecraft, and exploitation methodologies against network edge devices
  • Experience in open and commercial source intelligence research (public blogs, commercial data sets, etc)
  • Experience with hardware and embedded systems
  • Experience with query languages (such as SQL)
  • Experience producing and tuning detection rules (such as Suricata, YARA, etc)
  • Experience with binary analysis and reverse engineering
  • Experience with cyber threat intelligence frameworks and analytical tradecraft
  • Experience tracking and analyzing analyzing threats using graph-based analysis tools (e.g., Synapse)
  • Experience using AI (prompt engineering, harness engineering, etc)
  • Experience presenting at relevant security and intelligence community conferences

A Few of our GreyNoise Labs Principles
  • Honesty
    • Put your best understanding of the truth first in all that you do.
  • Decency
    • Treat yourself and others with respect.
  • Opinions
    • Frame opinions using data or experience; they are still opinions.
  • Computers
    • Computers are cool, but that doesn’t mean you won’t hate them.

Benefits

💵 Equity in a Growing Startup. Every employee has the opportunity to share in GreyNoise's success through equity.

👩‍⚕️ Health & Wellness Benefits. US employees receive 100% company-covered health, dental, vision, and life insurance. Benefits for international employees vary by country and local requirements.

6️⃣ Retirement Benefits. US employees receive a competitive 6% employer 401(k) match, 100% fully vested from day one. International employees receive applicable statutory pension benefits in accordance with local regulations.

🏖 Flexible Paid Time Off. We believe taking time away from work is essential to staying healthy and doing your best work. We take this very seriously and even include scheduled all-company shutdowns throughout the year. Employees also receive any additional leave required by local laws.

🌎 Remote-First, Globally Connected. Headquartered in the Washington, DC area, GreyNoise is a distributed team working remotely across the US and Europe. We value flexibility, trust, and meaningful connections, no matter where you work.

💻 Equipment Budget. Every new employee receives a GreyNoise Apple Mac laptop and a $500 stipend (or local currency equivalent) for equipment and accessories to create a comfortable and productive workspace.

👼 Paid Parental Leave. Growing your family is a big milestone, and we're here to support you. We offer four months of paid parental leave for birth or adoption, plus up to two additional months of optional unpaid leave, coordinated with applicable statutory leave entitlements and local requirements.

📚 Learning & Development Budget. Every employee receives $1,500 annually (or local currency equivalent) to invest in professional development. Use it for courses, books, conferences, certifications, and other learning opportunities related to your role.

🌴 Team Connection & Company Offsites. We bring our distributed team together through multiple company and team offsites, virtual events, and local meetups to build relationships and stay connected beyond our day-to-day work.

Benefits and eligibility may vary based on country of employment, local regulations, and applicable employment arrangements.


GreyNoise Culture
The hallmark of any great company is a palpable and viscous culture. The most important pillars of our culture are:
  • Be transparent, honest, and objective. This is what it means to be “clinical”
  • Empathize with customers, partners, and each other
  • Learn from mistakes and share the knowledge
  • The way feedback is delivered to one another matters as much as the feedback itself
  • Good work-life balance is the key to sustained productivity
  • The measure of a team member’s effectiveness is how well the rest of the team operates in their unexpected absence
  • No such thing as a million dollar idea, only million dollar execution
  • Out-innovate our previous selves
Check out our (work-in-progress) longform culture document.
 
Explainability

Any security product that is a “black box” that asks you to blindly trust it should raise red flags - we believe the same is true of your place of work. We obviously think GreyNoise is doing something unique, but don’t take our word for it - ask any of our 150+ enterprise customers, investors, thousands of happy users, or dozens of journalists who have cited GreyNoise over the past few years.


Why You Should Work at GreyNoise 
  • You enjoy identifying and solving hard problems
  • You are comfortable taking an idea from concept to customer
  • You are open to both explaining your stance and questioning others in a clinical, open-minded, and respectful manner
  • You want to directly impact users
  • You want to grow beyond your current skill set

Apply for the job

Do you want to join our team? Then we'd love to hear about you!

Similar Jobs

10 Days Ago
Easy Apply
Remote or Hybrid
Easy Apply
172K-245K Annually
Expert/Leader
172K-245K Annually
Expert/Leader
Cloud • Information Technology • Security • Software • Cybersecurity
Conduct advanced threat research across endpoint and cloud environments, dissecting and replicating adversary techniques to improve detection. Engineer attack automation, test code, and proof-of-concept detections; collaborate with detection engineers, analysts, and threat hunters; document findings; influence product strategy and vendor telemetry; and mentor junior researchers.
Top Skills: Ai/MlAWSCC++Endpoint Detection And Response (Edr)GitGitGoLinuxmacOSMicrosoft 365OktaPowershellPythonRustWindows
10 Days Ago
Easy Apply
Remote or Hybrid
Location, WV, USA
Easy Apply
123K-175K Annually
Entry level
123K-175K Annually
Entry level
Cloud • Information Technology • Security • Software • Cybersecurity
Conducts advanced threat research across endpoint, cloud, and identity environments. Analyzes and replicates cyberattacks, engineers automated attack and test code, develops detection proofs of concept, and provides scalable detection recommendations. Collaborates with detection engineers, intelligence analysts, and threat hunters, documents findings, presents research, contributes to product strategy, and mentors colleagues.
Top Skills: Ai/MlAWSAzureCC++Cloud SecurityEndpoint Detection And Response (Edr)GCPGitGitGoLinuxmacOSMicrosoft 365OktaPowershellPythonWindows
One Month Ago
In-Office or Remote
Entry level
Entry level
Security
Research financially motivated cyber threat actors by monitoring underground forums, marketplaces, messaging groups, and other restricted sources. Identify intelligence gaps, attribute actors, analyze tactics and campaigns, investigate criminal infrastructure and malware activity, and produce concise English-language reports. The role also responds to customer information requests and collaborates on special research projects. Professional cybercrime research experience, OPSEC and persona development skills, English plus Portuguese, Spanish, Italian, or French are required.
Top Skills: Exploit And Vulnerability AnalysisMalware AnalysisOperational Security (Opsec)Virtual Human Intelligence (Vhumint)

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account