Principal Intel Analyst

Remote

Halcyon

Halcyon is the cyber resilience platform that Global 2000 companies rely upon to defeat ransomware-as-a-service-borne attacks. With the fastest endpoint recovery methods ever built and multiple layers of resiliency, including bypass and evasion...

View all jobs at Halcyon

Apply now Apply later

What we do:
Halcyon is the industry’s first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware.

Who we are:
Halcyon was formed in 2021 by a team of cyber industry veterans after battling the scourge of ransomware (and advanced threats) for years at some of the largest global security vendors. Comprised of leaders from Cylance (now Blackberry), Accuvant (now Optiv), Fireye and ISS X-Force (now IBM), Halcyon is focused on building products and solutions for mid-market and enterprise customers.

As a remote-native, completely distributed global team, we recognize great talent can exist anywhere. We invite you to apply to a job you’re interested in and we'll work a plan to meet your needs.

The Role:

As part of Halcyon’s greater mission “to make ransomware history”, we are expanding our capabilities to include the discovery and analysis of “pre-crime” activity to mitigate ransomware in advance of an attack. To this end, Halcyon is looking for a skilled and experienced intelligence analyst. The Principal Intel Analyst will be responsible for researching, crafting, and conveying analytical products sourced from "on the ground" research into threat actors operating in the cybercrime underground. The successful candidate possesses a solid background tracking cybercrime threat actors and a subject matter expertise of the financially motivated cybercrime underground economy.

Responsibilities:

  • Identify, research, coordinate, and produce research reports centered around financially-motivated cybercrime threat actors observed in underground forums and marketplaces that are actionable by Halcyon’s pre-crime team

  • Work independently and within the team to identify new and creative opportunities to research and convey valuable pre-crime assessments to clients

  • Synchronize and prioritize with the Halcyon pre-crime team research targets to optimize and satisfy clients' Priority Intelligence Requirements (PIR)

  • Answer specific Requests for Information (RFI) from clients regarding threats or concerns

  • Help design new and innovative processes and programs to build efficiencies and scalability as the company continues to grow

Skills and Qualifications:

  • 5+ years of experience working in a cyber threat intelligence, cybercrime investigative/analytical, financial fraud analysis, or similar setting

  • Ability to demonstrate subject matter expertise of financially-motivated cybercrime threats and the underground economy ecosystem (eg. cybercrime forums, marketplaces, enabling services, dump shops, etc.)

  • Strong understanding of cybercrime threat actors and their tactics, techniques and procedures in the the underground economy ecosystem

  • Existing access to the underground economy ecosystem with credible and active personas

  • Familiarity of the technical aspects of malware, botnets, ransomware, and other malicious tools

  • Exposure to the intelligence cycle in a law enforcement, military, security service, cyber threat intelligence team, or similar setting, ideally on a global level

  • Experience with link-analysis methodologies and tools (e.g., Maltego or Analysts Notebook)

  • Good Open Source Intelligence (OSINT) gathering skills

  • Equally capable of working independently or in a team environment

  • Excellent written and verbal skills, fluency in English is required

Bonus Skills and Qualifications:

  • Proven experience as a team leader, particularly in an intelligence analysis role

  • Experience as a penetration tester or other offensive security professional

  • Experience as an incident responder with examples of cases handled and their outcomes

  • Coding skills in python with examples of projects and contributions to past successes

  • Russian language writing and reading skills, including fluency with relevant slang terms

Benefits:

 Halcyon offers the following benefits to eligible employees:

  • Comprehensive healthcare (medical, dental, and vision) with premiums paid in full for employees and dependents.

  • 401k plan with a generous employer contribution.

  • Short and long-term disability coverage, basic life and AD&D insurance plans.

  • Medical and dependent care FSA options.

  • Flexible PTO policy.

  • Parental leave.

  • Generous equity offering.

The Company reserves the right to modify or change these benefits programs at any time, with or without notice.​

Base Salary Range: $130,000 - $175,000

Bonus Target: 20%

In accordance with applicable state and federal laws, the range provided is Halcyon’s reasonable estimate of the base compensation for this role. The actual amount may differ based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. Base pay is one part of the total package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and equity in the Company.

We understand it takes a diverse team of highly intelligent, passionate, curious, and creative people to develop the exceptional product we are building. Our dynamic team has incredible perspectives to share, just as we know you do, and we take great pride in being an equal opportunity employer.

Apply now Apply later
Job stats:  0  0  0
Category: Analyst Jobs

Tags: Cyber crime Malware Offensive security Open Source OSINT Python Threat intelligence

Perks/benefits: 401(k) matching Career development Equity / stock options Flex hours Flex vacation Health care Insurance Medical leave Parental leave Salary bonus

Region: Remote/Anywhere

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.