Staff Security Engineer for Threat Intel
Remote / Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA
Full Time Senior-level / Expert USD 230K - 275K
CoreWeave
Discover CoreWeave’s GPU cloud, purpose-built for AI with scalable, high-performance infrastructure and 24/7 support. Learn more today.CoreWeave is the AI Hyperscaler™, delivering a cloud platform of cutting edge services powering the next wave of AI. Our technology provides enterprises and leading AI labs with the most performant, efficient and resilient solutions for accelerated computing. Since 2017, CoreWeave has operated a growing footprint of data centers covering every region of the US and across Europe. CoreWeave was ranked as one of the TIME100 most influential companies of 2024.
As the leader in the industry, we thrive in an environment where adaptability and resilience are key. Our culture offers career-defining opportunities for those who excel amid change and challenge. If you’re someone who thrives in a dynamic environment, enjoys solving complex problems, and is eager to make a significant impact, CoreWeave is the place for you. Join us, and be part of a team solving some of the most exciting challenges in the industry.
CoreWeave powers the creation and delivery of the intelligence that drives innovation.
As a Staff Threat Intelligence Engineer, you will be responsible for developing and operationalizing CoreWeave’s threat intelligence program. You will analyze emerging threats, conduct advanced threat modeling, and provide actionable intelligence to enhance our security posture. This role requires deep expertise in cyber threat intelligence, adversary tracking, and security research, as well as strong leadership in guiding cross-functional teams through intelligence-driven security initiatives.
What You’ll Do
- Threat Intelligence & Analysis
- Develop, maintain, and operationalize a comprehensive threat intelligence program to proactively detect, analyze, and respond to cyber threats.
- Collect, analyze, and disseminate threat intelligence from open sources (OSINT), dark web monitoring, and proprietary sources.
- Identify and track threat actors, tactics, techniques, and procedures (TTPs) relevant to CoreWeave’s industry and cloud infrastructure.
- Incident Response & Threat Hunting
- Collaborate with incident response teams to investigate and contain security incidents using intelligence-driven insights.
- Conduct proactive threat hunting activities to detect potential compromises or anomalous behavior in CoreWeave’s cloud environments.
- Automation & Tooling
- Develop and maintain threat intelligence automation pipelines to ingest, normalize, and correlate data from multiple sources.
- Implement threat intelligence feeds, SIEM integrations, and enrichment processes to enhance real-time security monitoring.
- Collaboration & Communication
- Work closely with security engineering, SOC, and DevOps teams to integrate threat intelligence into security workflows.
- Provide regular briefings, reports, and recommendations on emerging threats, vulnerabilities, and mitigations to executive leadership and security teams.
- Represent CoreWeave in threat intelligence sharing communities, industry forums, and external collaborations.
Who You Are
- 15+ years of experience in cyber threat intelligence, threat hunting, or security operations, with a focus on cloud environments.
- Deep understanding of threat actor tactics, attack frameworks (MITRE ATT&CK), and malware analysis methodologies.
- Experience with cyber threat intelligence platforms (TIPs), SIEM, SOAR, and EDR solutions.
- Proficiency in scripting languages (Python, Bash, etc.) for automating threat intelligence workflows.
- Strong knowledge of cloud security best practices, particularly in containerized and GPU-accelerated cloud environments.
- Familiarity with dark web monitoring, intelligence collection techniques, and adversary tracking.
- Excellent written and verbal communication skills for conveying intelligence insights to technical and non-technical audiences.
- Experience in securing AI/ML workloads, high-performance computing (HPC), or GPU-accelerated environments.
- Hands-on experience with security tools like MISP, YARA, Suricata, Zeek, or Sigma rules.
- Prior experience working in fast-paced, cloud-native, or high-growth technology companies.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $230,000-$275,000. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.
What We Offer
The range we’ve posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location.
In addition to a competitive salary, we offer a variety of benefits to support your needs, including:
- Medical, dental, and vision insurance - 100% paid for by CoreWeave
- Company-paid Life Insurance
- Voluntary supplemental life insurance
- Short and long-term disability insurance
- Flexible Spending Account
- Health Savings Account
- Tuition Reimbursement
- Mental Wellness Benefits through Spring Health
- Family-Forming support provided by Carrot
- Paid Parental Leave
- Flexible, full-service childcare support with Kinside
- 401(k) with a generous employer match
- Flexible PTO
- Catered lunch each day in our office and data center locations
- A casual work environment
- A work culture focused on innovative disruption
Our Workplace
At CoreWeave, we are committed to operating as a hybrid workplace, offering employees flexibility in how they structure their time between in-office and remote work. We recognize the significance of fostering connections, collaboration, and creativity within our office culture and its positive impact on our business. Our philosophy operating as a hybrid workplace underscores our dedication to enabling employees to tailor work-life balance to their individual preferences.
For those who do not live within 30 miles of one of our offices, we are open to considering remote work for candidates whose skills and experience strongly align with the role. While we prioritize a hybrid work environment for most roles, we understand the importance of flexibility and are open to remote work for specific positions and specialized skill sets. Onboarding is essential to your success. New employees not based out of an office will be invited to attend onboarding training at one of our hubs within their first month of employment. We continue to foster a collaborative environment by bringing teams together quarterly.
California Consumer Privacy Act - California applicants only
CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information.
As part of this commitment and consistent with the Americans with Disabilities Act (ADA), CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: careers@coreweave.com.
Tags: Automation Bash CCPA Cloud DevOps EDR Incident response Malware MISP MITRE ATT&CK Monitoring OSINT Privacy Python Scripting SIEM SOAR SOC Threat intelligence TTPs Vulnerabilities
Perks/benefits: 401(k) matching Competitive pay Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Parental leave Startup environment Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.