Cyber Threat Intelligence Analyst
פורסם אתמול · 0 מועמדים
- Several years of experience in threat intelligence, threat research, or a similar security analysis role
- Track record of building custom tools, methods, or workflows
- Familiarity with threat intelligence frameworks (MITRE ATT&CK, Diamond Model, or similar)
- Proficiency with reverse engineering of binary samples
- Python
- Experience shipping AI-powered tools or products
- Background in a government, military, or national intelligence environment
- Familiarity with mobile OS internals and/or forensic concepts
- Publications or public research related to mobile threats, spyware, or applied AI in security
חולץ מתיאור המשרה · מתעדכן אוטומטית
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןSecurity & Research
Full-time
Hybrid
Apply Here
We are seeking a talented and driven Cyber Threat Intelligence Analyst to work with us in Herzliya, with a strong foundation in threat research and applied AI.
In this role, you will build how we track and research mobile threats, including nation-state APT groups and mercenary and commercial spyware vendors, and turn that research into new detection logic, rules, tools, and other actionable outputs for DFFIND.
You'll bring that same builder's instinct to AI opportunities beyond threat intelligence as well, turning promising ideas into tools that make a real difference across the company.
Responsibilities
• Research and track threat actors relevant to mobile security, including nation-state APT groups and mercenary and commercial spyware vendors.
• Develop your own methods and tools for collecting and analyzing threat intelligence from open, commercial, and closed sources.
• Turn intelligence findings into new detection logic, rules, tools, and other actionable outputs for DFFIND.
• Maintain threat actor and campaign profiles, mapped to frameworks such as MITRE ATT&CK for Mobile.
• Identify gaps in current detection coverage and propose new priorities based on the threat landscape.
• Write clear intelligence reports, briefings, and blog posts for stakeholders.
• Spot opportunities to apply AI beyond threat intelligence, and design, build, and ship the tools to act on them.
• Carry AI projects from early ideas through to a working tool in production.
Requirements
• Several years of experience in threat intelligence, threat research, or a similar security analysis role.
• A track record of building your own tools, methods, or workflows rather than just using what's already there.
• Working knowledge of the mercenary spyware and mobile APT landscape, or a demonstrated ability to ramp up quickly in this space.
• Familiarity with threat intelligence frameworks (MITRE ATT&CK, Diamond Model, or similar).
• Proficiency with Reverse Engineering of binary samples
• Proficiency in Python and YARA, with the ability to also use other scripting and programming languages as required.
• Strong, practical knowledge of AI and LLMs, and experience applying them to real workflows, from prototyping through to production.
• Strong written communication skills.
• Comfort working independently and driving projects with minimal oversight.
• Eligibility to hold, or ability to obtain, a security clearance appropriate to the customer engagements this role supports.
Preferred
• Experience shipping AI-powered tools or products.
• Background in a government, military, or national intelligence environment.
• Familiarity with mobile OS internals and/or forensic concepts.
• Publications or public research related to mobile threats, spyware, or applied AI in security.
What We Offer
• Joining a team of established and experienced security experts in a mission-driven, high-impact company.
• Collaborative, creative, and growth-focused environment.
• High ownership: autonomy over how you approach the work.
• Meaningful problems: your work touches detection of the most sophisticated threats targeting government and national security customers.
• Deep technical exposure: close collaboration with engineers and researchers working on the newest mobile threats and exploitation techniques.
• Competitive compensation and access to the tools and infrastructure needed to do the job well.
Application form
Please upload your CV and cover letter using the form:
Or Send Us An Email At
careers@df-f.com
Download
PGP Public Key
Upload File
Max file size 10MB.
Uploading...
fileuploaded.jpg
Upload failed. Max size for files is 10 MB.
Full Name*
E-mail*
Phone Number (optional)
LinkedIn Profile (optional)
Cover letter
I have authority to submit these materials and am legally authorized to share them. I agree to the Recruitment Privacy Notice, Terms of Use, and Privacy Notice.
Thank you!
Your response has been submitted successfully.
Oops! Something went wrong while submitting the form.
HOME
Capabilities
Sectors
Privacy & Governance
DFFIND
Overview
Benefits
Features
Use Cases
Professional Services
About
Mission
Leadership
Dataflow Security
DFF LABS
Mobile Research
Xn00p
Assistance Requests
Upload Samples
CAREERS
Current Openings
How to Apply
Why Work With Us
CONTACT
Contact Form
PGP Public Key
RESOURCES
DFFenders Blog
Events & Announcements
Powered by zero-day research. Built to detect what nothing else can. DFFIND detects targeted mobile intrusions on iOS and Android devices at scale by going beyond the sandbox to expose threats that were never meant to be found.
PRIVACY NOTICE
TERMS OF USE
Dataflow Forensics © 2026
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- Several years of experience in threat intelligence, threat research, or a similar security analysis role, Track record of building custom tools, methods, or workflows, Familiarity with threat intelligence frameworks (MITRE ATT&CK, Diamond Model, or similar), Proficiency with reverse engineering of binary samples, Python