Threat Researcher
π’ GreyNoise Intelligence Β· all GreyNoise Intelligence jobs
π Remote Β· North America
π
Posted 2026-08-23 Β· via RemoteIO
π· Threat Research,Cybersecurity,Data Analysis,Network Security,AI
Apply on original site βAbout GreyNoise
GreyNoise Intelligence is a mission driven security startup focused on helping organizations understand and mitigate risks from Internet scanning and exploitation. GreyNoise provides real-time, verifiable intelligence on all actors scanning the Internet and how some of them are attempting to exploit vulnerabilities on assets connected to corporate networks. The intelligence is highly trusted because itβs generated from a global fleet of thousands of purpose built sensors observing the Internet. Advanced data science techniques and AI are used to process millions of observed events into real-time intelligence for customers.
The GreyNoise Global Observation Grid observes and analyzes unique threat data at-scale that no one else can. GreyNoise provides the most actionable threat intelligence against perimeter threats, so that no attack works twice.
All US based positions are fully remote within the US, with optional office attendance at our DC area headquarters, unless otherwise specified. Applicants must have US work authorization.
Please see the specific job description for all international position locations.
The Role
GreyNoise is hiring a Threat Researcher who will develop and exploit first, second, and third-party access and sources to produce cyber threat intelligence that practitioners will use to detect, disrupt, and impose cost on adversaries.
Responsibilities:
- Hypothesis and lead driven hunting through existing first-party data and telemetry to identify, analyze, and expose new and novel malicious cyber activity and campaigns
- Cluster, track, attribute, research, and disrupt malicious cyber threats
- Develop and integrate new intelligence information, data sources, tools, systems, and tradecraft to produce a more comprehensive threat picture
- Produce and disseminate actionable intelligence to customers and the public
Required Skills
- Deep understanding of computer networking fundamentals and protocols
- Deep technical ability to hunt through network traffic (full PCAP) at the macro and packet level
- Deep technical skills with offensive tooling, tradecraft, and exploitation methodologies against network edge devices
- Experience in open and commercial source intelligence research (public blogs, commercial data sets, etc)
- Experience with hardware and embedded systems
- Experience with query languages (such as SQL)
- Experience producing and tuning detection rules (such as Suricata, YARA, etc)
- Experience with binary analysis and reverse engineering
- Experience with cyber threat intelligence frameworks and analytical tradecraft
- Experience tracking and analyzing analyzing threats using graph-based analysis tools (e.g., Synapse)
- Experience using AI (prompt engineering, harness engineering, etc)
- Experience presenting at relevant security and intelligence community conferences
A Few of our GreyNoise Labs Principles
- Honesty - Put your best understanding of the truth first in all that you do.
- Decency - Treat yourself and others with respect.
- Opinions - Frame opinions using data or experience; they are still opinions.
- Computers - Computers are cool, but that doesnβt mean you wonβt hate them.
Benefits
π΅ Equity in a high-growth, Series-A startup
π©ββοΈ 100% covered health, dental, vision, and life plans for all employees
6οΈβ£ Competitive 401k employer match of 6%, which is special for a startup. This will be 100% matched and vested from day 1
π Flexible paid time off. To encourage time off from work and ensure overall employee health and wellness, GreyNoise strongly recommends each employee to take at least 120 hours of PTO (3 weeks) annually, including at least five consecutive business days
π Remote-first culture. While we are headquartered in the Washington DC area, we have a distributed workforce -- with the majority of our team working remotely from across the country
π» Equipment budget. Every new employee gets an Apple Mac laptop and a $500 stipend for any eq