Jobs /

Senior Threat Intelligence Engineer

Infoblox

Apply Now

Job Details

Location: Future Rome Italy Temple, Via di Settebagni, Zona IV Casal Boccone, Rome, Roma Capitale, Lazio, 00137, Italy Italy Italy at Home, Vaughan Road, Humewood, Toronto—St. Paul's, York, Toronto, Golden Horseshoe, Ontario, M6C 2P1, Canada Posted: Dec 03, 2021

Job Description

It’s an exciting time to be at Infoblox. Named a Top 25 Cyber Security Company by The Software Report and one of Inc. magazine’s Best Workplaces for 2020, we are leading the way to next-level DDI with our Secure Cloud-Managed Network Services, bringing next-level security, reliability, and automation to cloud and hybrid systems—all managed through a single pane of glass. Our success depends on bright, energetic, talented people who share a passion for building the next generation of networking technologies—and having fun along the way.

We are looking for a Senior Threat Intelligence Engineer to join our Analysis and Research team in EMEA. The team produces the content for Infoblox’s DNS security products. You will contribute to the discovery and assessment of threat indicators that appear in the Domain Name System (DNS). You will also create ways for our customers to better understand and prioritize their security events. We are rich in data, creating an exciting but challenging environment for discovery and analysis at scale. Here you’ll be able to use your subject matter expertise in modern threats and data analysis to identify, evaluate and extract intelligence from emerging threats.

You’re the ideal candidate if you are an experienced intelligence or threat researcher who knows and understands DNS (protocols, datasets, tunnelling); if you love to code and build features that help customers understand their network; and if you love to analyse malware and malicious documents or sites and create detectors for them. Individuals with strong logic, correlation, analytical, communication and technical skills; the motivation to continuously learn; and who thrive in a fast-paced, dynamic office will fit well on our team.

What you’ll do:

  • Discover threats related to DNS and script algorithms to deliver indicators to protect customer networks
  • Contribute workflows, algorithms, and/or enrichments to help customers prioritize and understand threats within their network
  • Research, design, develop, and build repeatable analytics, heuristics and rules-based detection around threats, tactics/techniques/procedures (TTPs), and indicator scoring
  • Use statistics, and scripting in python and pyspark, to draw insights from very large, diverse data sets
  • Analyse structured and unstructured data sets to identify trends and anomalies that could indicate malicious activity
  • Collaborate with others of different expertise to address complex threat problems
  • Craft reports on discoveries such as threat actors, malware, and campaigns

What you’ll bring:

  • Bachelor’s Degree in Computer Science or equivalent experience
  • Minimum 5 years of experience in Threat Research
  • Familiarity with AWS technologies and comfort with Python and Command Line Interface
  • Subject matter expertise in threat analysis and research including open source intelligence
  • Coding and data skills such as Python, data analysis and statistics, use of notebooks (Jupyter, Databricks)
  • Ability to analyse threat signatures in DNS traffic and other data sources to find and identify malicious activity, campaigns, and the threat landscape
  • Experience using virtual environments for analysis of suspicious sites and files
  • Experience writing intelligence reports and presentations

What success looks like:

After six months you will have...
  • Learned our methods for identifying and contributing indicators of compromise for our products
  • Published whitepapers on discovered campaigns
  • Built automation to process or enrich indicators to protect customers
  • An understanding of our data sources, pipelines, tools, and techniques
After about a year you will...
  • Collaborate with others to execute research agendas
  • Create proof-of-concept (PoC) code and prototypes to demonstrate real value for our product teams
  • Use our data sources and develop new analytics in threat intelligence and prioritization

We’ve got you covered:

Our holistic benefits package includes coverage of your health, wealth, and wellness—as well as a great work environment, employee programs, and company culture. We offer a competitive salary and benefits package and generous paid time off to help you balance your life. We have a strong culture and live our values every day—we believe in transparency, curiosity, respect, and above all, having fun while delighting our customers.

Why Infoblox?

We’ve created a culture that embraces diversity, equity, and inclusion and rewards innovation, curiosity, and creativity. We achieve remarkable results by working together in a supportive environment that focuses on continuous learning and embraces change. So, whether you’re a software engineer, marketing manager, customer care pro, or product specialist, you belong here, where you will have the opportunity to grow and develop your career. Check out what it’s like to be a Bloxer. We think you’ll be excited to join our team.
#LI-Remote

About Infoblox

Infoblox develops network identity solutions enabling businesses to automate network control functions to reduce costs and boost security.

View Website

Get More Interviews for This and Many Other Jobs

Huntr helps you instantly craft tailored resumes and cover letters, fill out application forms with a single click, effortlessly keep your job hunt organized, and much more.

Sign Up for Free