Junior Cyber Security Intel Researcher (Belfast)
Belfast, United Kingdom
Anomali
Anomali is a security and IT operations platform harnessing the power of AI to deliver breakthrough threat detection, visibility, and cyber exposure management.Do more with less. Be Different. Be the Anomali.
Learn more at http://www.anomali.com.
Job Description
Anomali Threat Research (ATR) is the Cyber Threat Intelligence (CTI) team at Anomali. ATR is responsible for conducting OSINT research, in addition to intelligence engineering and data science objectives. We are seeking a passionate Researcher to join ATR to assist in the collection and curation of open source intelligence and also help build automation to help our Threat Research team. The researcher will also support sample collection and analysis, including developing custom scripts for automation where needed. The researcher will be responsible for handling malware samples, analyzing suspicious files, and identifying malicious behaviors while maintaining strict OPSEC measures. Additionally, they will support ThreatStream false positive triage, ensuring accuracy in threat detections and classifications. This role also includes developing scripts and automation to enhance intelligence workflows and collaborating with the Anomali Content Team on structured reporting and intelligence insights. Responsibilitieso Conducting false positive/negative triage within ThreatStream, ensuring accurate classification and minimal intelligence misattribution.o Assist with sample collection and analysis, including handling malware samples, suspicious files, and malicious infrastructure.o Develop and refine custom scripts and automation workflows to improve threat analysis and intelligence ingestion.o Work with wider teams to research, structure, and publish the semi-annual State of OSINT Report.o Contribute to threat detection improvements, including refining behavioral indicators and intelligence structuring.o Develop behavioral detections with the Anomali Query Language (AQL)
Required Skillso BSc/BEng in Computer Science, Cybersecurity or equivalent experience in lieu of degreeo Basic knowledge of malware analysis techniques, including dynamic/static analysis, sandboxing, and unpacking.o Experience with triaging False Positives and False Negatives, ensuring accurate threat classifications.o Familiarity with scripting languages (e.g., Python, Bash, or PowerShell) to automate malware analysis and intelligence workflows.o Understanding of OPSEC principles and secure research practices, particularly in handling malware execution.o This poistion is not eligible for employment visa sponsorship. The successful candidate must not now, or in the future require visa sponsorship to work at our Belfast location.
Desired Skillso Experience with reverse engineering tools such as IDA Pro, Ghidra, or Radare2.o Hands-on experience using sandbox environments (e.g., Cuckoo, Any.Run, VMRay, or Joe Sandbox) for malware behavior analysis.o Basic understanding of network security concepts, including traffic analysis, PCAP inspection, and C2 detection.o Prior experience with Threat Intelligence Platforms (TIPs) such as ThreatStream, MISP, or OpenCTI.o Web scraping and automation experience, preferably using Python, to collect and structure intelligence data.
BenefitsSalaryo Competitive Salary
Medicalo Private Healthcare Plano Dental Plano Optical Plan
Work-Life Balanceo Paid Public Holidayso Accrued Paid Time Off – 25 dayso Quarterly event with your Geographic Team
Equal Opportunities MonitoringIt is our policy to ensure that all eligible persons have equal opportunity for employment and advancement on the basis of their ability, qualifications and aptitude. We select those suitable for appointment solely on the basis of merit without regard to an individual's disability, race, religion, sex, age or sexual orientation. Monitoring is carried out to ensure that our equal opportunity policy is effectively implemented.
If you are interested in applying for employment with Anomali and need special assistance or accommodation to apply for a posted position, contact our Recruiting team at recruiting@anomali.com.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Automation Bash Cloud Computer Science Ghidra IDA Pro Malware MISP Monitoring Network security Open Source OSINT PCAP PowerShell Python Reverse engineering Scripting SIEM SOAR Threat detection Threat intelligence Threat Research XDR
Perks/benefits: Competitive pay
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.