Security Engineer, IR Threat Intelligence

Washington, DC | New York, NY

Meta

Giving people the power to build community and bring the world closer together

View all jobs at Meta

Apply now Apply later

Meta Security is looking for a Security Engineer, IR Threat Intelligence with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a diverse set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Meta’s security posture. You will be developing and improving the tooling and systems used by the team.Security Engineer, IR Threat Intelligence Responsibilities
  • Track threat clusters posing threats to Meta’s infrastructure and employees, and identify, develop and implement countermeasures on our corporate network.
  • Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences.
  • Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations.
  • Improve the tooling of threat cluster tracking and intelligence data integration to existing systems.
  • Engage constructively in cross-functional projects to improve the security posture of Meta’s infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions.
Minimum Qualifications
  • 5+ years experience in a threat actor tracking or intelligence research role.
  • Experience working with a team spanning multiple locations/time zones.
  • Familiarity with campaign tracking techniques and experience to convert the tracking results to long term countermeasures.
  • Familiarity with threat modeling framework, such as Diamond Model or/and MITRE ATT&CK framework.
  • Proven track record of managing and executing on short term and long term projects.
  • Experience with intelligence-driven hunting to spot suspicious activities in the network and identify potential risks.
  • Experience prioritizing and executing tasks with minimal direction or oversight.
  • Experience thinking critically and qualifying assessments with solid communications skills.
  • Coding or scripting experience in one or more scripting languages such as Python or PHP.
Preferred Qualifications
  • Experience collaborating with incident responders on incident investigations.
  • Familiarity with malware analysis or network traffic analysis.
  • Familiarity with nation-state, sophisticated criminal, or supply chain threats.
  • Production of file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort.
  • Experience in one or more query languages such as SQL.
  • Experience writing production code for threat intelligence tooling.
  • Experience conducting large scale data analysis.
  • Experience working across the broader security community.
For those who live in or expect to work from California if hired for this position, please click here for additional information. LocationsAbout Meta Meta builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps like Messenger, Instagram and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. People who choose to build their careers by building with us at Meta help shape a future that will take us beyond what digital connection makes possible today—beyond the constraints of screens, the limits of distance, and even the rules of physics.
$147,000/year to $208,000/year + bonus + equity + benefits

Individual compensation is determined by skills, qualifications, experience, and location. Compensation details listed in this posting reflect the base hourly rate, monthly rate, or annual salary only, and do not include bonus, equity or sales incentives, if applicable. In addition to base compensation, Meta offers benefits. Learn more about benefits at Meta.

Equal Employment Opportunity and Affirmative Action Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. You may view our Equal Employment Opportunity notice here.
Meta is committed to providing reasonable support (called accommodations) in our recruiting processes for candidates with disabilities, long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support. If you need support, please reach out to accommodations-ext@fb.com.
Apply now Apply later
Job stats:  0  0  0

Tags: Malware MITRE ATT&CK PHP Physics Python Red team Scripting Snort SQL Threat intelligence Vulnerability management

Perks/benefits: Career development Equity / stock options Health care Salary bonus Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.