Researcher assisting the Cyber Threat Intelligence team at Anomali. Conducting OSINT research, sample analysis, and developing automation workflows.
Responsibilities
Conducting false positive/negative triage within ThreatStream, ensuring accurate classification and minimal intelligence misattribution.
Assist with sample collection and analysis, including handling malware samples, suspicious files, and malicious infrastructure.
Develop and refine custom scripts and automation workflows to improve threat analysis and intelligence ingestion.
Work with wider teams to research, structure, and publish the semi-annual State of OSINT Report.
Contribute to threat detection improvements, including refining behavioral indicators and intelligence structuring.
Develop behavioral detections with the Anomali Query Language (AQL)
Requirements
BSc/BEng in Computer Science, Cybersecurity or, an additional 3 years of relevant experience in lieu of degree
Basic knowledge of malware analysis techniques, including dynamic/static analysis, sandboxing, and unpacking.
Experience with triaging False Positives and False Negatives, ensuring accurate threat classifications.
Familiarity with scripting languages (e.g., Python, Bash, or PowerShell) to automate malware analysis and intelligence workflows.
Understanding of OPSEC principles and secure research practices, particularly in handling malware execution.
This position is not eligible for employment visa sponsorship. The successful candidate must not now, or in the future require visa sponsorship to work at our Belfast location.
Experience with reverse engineering tools such as IDA Pro, Ghidra, or Radare2.
Hands-on experience using sandbox environments (e.g., Cuckoo, Any.Run, VMRay, or Joe Sandbox) for malware behavior analysis.
Basic understanding of network security concepts, including traffic analysis, PCAP inspection, and C2 detection.
Prior experience with Threat Intelligence Platforms (TIPs) such as ThreatStream, MISP, or OpenCTI.
Web scraping and automation experience, preferably using Python, to collect and structure intelligence data.
IT Infrastructure & Security Engineer managing and developing network and server infrastructure at L - mobile. Collaborating on security measures and supporting internal audits in a hybrid role.
Cyber Security Consultant to deliver Wanstor’s security offerings and improve customer Cyber Security and Data Security. Involves consulting, implementation, and oversight of security measures.
Senior Manager in IT - Strategieberatung for Defense & Security, developing client relationships and growth strategies. Leading IT transformation projects in security - critical organizations.
Information Security Expert overseeing ISMS development and IT security compliance in Germany. Collaborates with management and leads regulatory requirements implementation.
IT Professional responsible for implementing innovative industrial IT solutions. Working in an agile environment while ensuring IT and OT security for production networks.
Security Compliance Specialist enhancing cybersecurity and compliance framework at Trezor. Collaborating across teams to shape security and compliance operations in the tech sector.
Cyber Security Specialist focusing on IT security measures and infrastructure protection for a motivated team. Engaging in both project work and internal security processes.
IT & Cybersecurity Intern assisting with help desk support and IT system maintenance at OBDeleven. Collaborating with teams and improving IT documentation in a fun workplace culture.
Werkstudent supporting information security management and business continuity projects for Syneco's energy operations. Engaging in the development and upkeep of management systems and reporting tools.