Researcher assisting the Cyber Threat Intelligence team at Anomali. Conducting OSINT research, sample analysis, and developing automation workflows.
Responsibilities
Conducting false positive/negative triage within ThreatStream, ensuring accurate classification and minimal intelligence misattribution.
Assist with sample collection and analysis, including handling malware samples, suspicious files, and malicious infrastructure.
Develop and refine custom scripts and automation workflows to improve threat analysis and intelligence ingestion.
Work with wider teams to research, structure, and publish the semi-annual State of OSINT Report.
Contribute to threat detection improvements, including refining behavioral indicators and intelligence structuring.
Develop behavioral detections with the Anomali Query Language (AQL)
Requirements
BSc/BEng in Computer Science, Cybersecurity or, an additional 3 years of relevant experience in lieu of degree
Basic knowledge of malware analysis techniques, including dynamic/static analysis, sandboxing, and unpacking.
Experience with triaging False Positives and False Negatives, ensuring accurate threat classifications.
Familiarity with scripting languages (e.g., Python, Bash, or PowerShell) to automate malware analysis and intelligence workflows.
Understanding of OPSEC principles and secure research practices, particularly in handling malware execution.
This position is not eligible for employment visa sponsorship. The successful candidate must not now, or in the future require visa sponsorship to work at our Belfast location.
Experience with reverse engineering tools such as IDA Pro, Ghidra, or Radare2.
Hands-on experience using sandbox environments (e.g., Cuckoo, Any.Run, VMRay, or Joe Sandbox) for malware behavior analysis.
Basic understanding of network security concepts, including traffic analysis, PCAP inspection, and C2 detection.
Prior experience with Threat Intelligence Platforms (TIPs) such as ThreatStream, MISP, or OpenCTI.
Web scraping and automation experience, preferably using Python, to collect and structure intelligence data.
Cyber Security Architect responsible for Cyber Risk Management and Security by Design at a Swiss utilities company. Engaging in projects to enhance information security and compliance.
IT Security Engineer managing Active Directory solutions for OCFO project. Requires 10+ years in Active Directory with a focus on security and automation.
Cybersecurity Engineer focusing on Digital Forensics and Incident Response at Assurity Trusted Solutions. Leading incident response activities and ensuring cybersecurity measures are effectively implemented.
Cybersecurity Officer responsible for driving the Cybersecurity program for Americas at Siemens Healthineers. Collaborating with global teams and overseeing cybersecurity operations.
Cybersecurity and Compliance Specialist at MAPFRE responsible for mitigating risks and ensuring data security compliance. Collaborating with internal teams to promote an ethical culture against internal fraud.
Security Architect for Qualysoft designing and reviewing security architecture for technology divisions. Collaborating on security assessments for infrastructure and endpoint solutions in IT services.
Health and Safety Technician responsible for improving workplace safety at Nespresso's headquarters and boutiques. Managing safety programs and compliance with regulations and standards.
Evaluador/a de Seguridad y Certificación Ferroviario en Bureau Veritas. Gestionando evaluaciones de seguridad en proyectos de transporte ferroviario a nivel internacional.
Cybersecurity Compliance Consultant responsible for documenting cybersecurity requirements while collaborating with stakeholders. Overseeing Cybersecurity Policy Administration program and technical writing.