Deep Dark Web Researcher
Savannah, GA
Applications have closed
ZeroFox
ZeroFox, the leader in external cybersecurity, exposes, disrupts, and responds to threats outside the perimeter.
OPPORTUNITY OVERVIEWZeroFox seeks a Deep and Dark Web (DDW) Threat Researcher to perform detailed threat research in deep and dark web environments in response to standing customer requirements and ad hoc requests. Serving within the ZeroFox Public Sector Services (PSS) department, this senior role will support Deep Dark Web environments with operational security (OPSEC) best practices being deployed.
Equal Opportunity, Diversity & InclusionWe aim to build a team that represents a variety of backgrounds, perspectives, and skills. We embrace inclusion and ensure equal employment opportunity without discrimination or harassment based on race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity or expression, age, disability, national origin, marital or domestic/civil partnership status, genetic information, citizenship status, military or veteran status, or any other personal characteristic.
Role and responsibilities
- Access the DDW environment safely and with operational security (OPSEC) best practices to solve customers’ cybersecurity challenges
- Attend cyber intelligence-related courses (military, college, or private)
- Conduct research in DDW environments, including the identification and analysis of threat actors / threat actor groups that shift between multiple venues
- Identify threat actor tactics, techniques, and procedures (TTP), goals, targets, and motives
- Ascertain underground criminal language / terminology
- Craft findings into finished intelligence on a spectrum of modes/formats
- Learn how to leverage patented internal intelligence tools within ZeroFox to gather, assess, and present intelligence
- Identify and track key aspects of threat actors/associated networks and groups
- Perform detailed threat research in DDW environments in response to standing customer requirements and ad hoc requests
Required qualifications and skills
- Experience in conducting detailed investigative research, some of which included significant DDW research, typically obtained in 5+ years
- Cyber intelligence-related courses (military, college, or private)
- Ability to assess veracity of raw intelligence information from multiple, conflicting sources
- Strong ability to coalesce and articulate findings in any number of finished intelligence formats to include but not limited to: written long-form finished intelligence reports, briefings (including verbal communication skills to present findings), short or informal reports, and other modes of presenting intelligence verbally
- Knowledge of / experience with tools required to access the DDW, ie VPN, VM, etc.
- Experience conducting open source investigations, including using novel search techniques
- Proficiency using Google’s suite of office tools
- Strong background in research, writing, and analytical tradecraft
- Comfort working in a small team environment and with flexibility to engage in multiple processes
Desired qualifications and skills
- Language (Russian, Mandarin Chinese, Farsi) highly preferred
- Experience working with US government organizations
- Experience with blockchain technology and ability to research threat actors’ use of cryptocurrency
- Experience with common cyber threat intelligence tools, such as VirusTotal, indicator of compromise (IOC) research, internet infrastructure analysis
- Familiarity with common cyber crime techniques
- High degree of comfort operating on a small team with diverse personalities
- Leadership experience or consulting experience
- Previous Intelligence experience highly preferred
Benefits
- Competitive compensation
- Community-driven culture with employee events
- Generous time off
- Comprehensive health benefits & 401(k) plan
- Respectful and nourishing work environment, where every opinion is heard and everyone is encouraged to be an active part of the organizational culture
Interested?
- Ready to apply? Visit us at https://www.zerofox.com/careers to find out more and join the best team in the security industry.
- Not ready to apply? Email careers_at_zerofox_dot_com to speak with a member of the team!
Other Information
- This position will report to the Lead, Principal Analyst
- This position may entail up to 5-10 % travel
- This role will be based out of our office in Savannah, GA (hybrid)
- This role requires occasional work on nights and weekends as needed.
Equal Opportunity, Diversity & InclusionWe aim to build a team that represents a variety of backgrounds, perspectives, and skills. We embrace inclusion and ensure equal employment opportunity without discrimination or harassment based on race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity or expression, age, disability, national origin, marital or domestic/civil partnership status, genetic information, citizenship status, military or veteran status, or any other personal characteristic.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
2
1
0
Category:
Research Jobs
Tags: Analytics Blockchain Cyber crime Open Source Privacy Threat intelligence Threat Research VirusTotal VPN
Perks/benefits: Competitive pay Equity / stock options Health care Team events
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Security Analyst jobsInformation System Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Specialist jobsInformation Security Manager jobsSenior Cybersecurity Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsIT Security Engineer jobsCyber Security Specialist jobsSenior Penetration Tester jobsSenior Information Security Analyst jobsSecurity Specialist jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsSystems Engineer jobsSystems Administrator jobsSenior Product Security Engineer jobsPrincipal Security Engineer jobsInformation System Security Officer (ISSO) jobsStaff Security Engineer jobsCloud Security Architect jobsIT Security Analyst jobsSecurity Operations Analyst jobsInformation Systems Security Engineer jobs
Encryption jobsPowerShell jobsDevSecOps jobsKubernetes jobsSaaS jobsIDS jobsEDR jobsSplunk jobsSDLC jobsIPS jobsRMF jobsSQL jobsTop Secret jobsBash jobsIntrusion detection jobsThreat detection jobsCompTIA jobsITIL jobsFinance jobsActive Directory jobsDoDD 8570 jobsOWASP jobsCRISC jobsBanking jobsDocker jobs
UNIX jobsTCP/IP jobsVPN jobsSANS jobsClearance Required jobsHIPAA jobsGIAC jobsIT infrastructure jobsTerraform jobsSOC 2 jobsSOX jobsOSCP jobsCISO jobsData Analytics jobsJavaScript jobsIndustrial jobsCCSP jobsDNS jobsSOAR jobsGCIH jobsMITRE ATT&CK jobsAnsible jobsPolygraph jobsJira jobsSecurity strategy jobs