Menu

Security Research Analyst - Threat Intelligence

at Cloudflare Inc. in Champaign, Illinois, United States

Job Description

About Us

At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine's Top Company Cultures list and ranked among the World's Most Innovative Companies by Fast Company.
We realize people do not fit into neat boxes. We are looking for curious and empathetic individuals who are committed to developing themselves and learning new skills, and we are ready to help you do that. We cannot complete our mission without building a diverse and inclusive team. We hire the best people based on an evaluation of their potential and support them throughout their time at Cloudflare. Come join us!
About the department
The Threat Intelligence team is responsible for helping teams build security intelligence into their products and delivering new, innovative products to our customers. The team fuses threat intelligence from a swath of external sources with intelligence mined from Cloudflare's world class data to provide threat intelligence used across a number of Cloudflare products. The team's core disciplines are data engineering, data science, devops, and security. We use data science and machine learning to process large volumes of data and build intelligence into Cloudflare's products.

Intel team consumes approximately 35 different threat data feeds, runs 5 different machine learning models, and has data integrated into six different products in the Cloudflare portfolio.
What you'll do
Initially this is a very tactical role, focused on supporting Intel Team's day-to-day operations.
Key Responsibilities include;
Review domain miscategorizations
Maintain Application classifications
Review email miscategorizations
Submit IOCs to data pipeline based on external reports
Define automations and software requirements for support tooling
Define processes and procedures to create 24x7 coverage of miscategorizations
Continually evaluate the quality of threat data feeds, work to maximize value from them, evaluate new potential sources of data
Research observed IoCs and network behavior patterns and label data
Work with data scientists to identify security threats and create machine learning models
Be a team SME and resource for data scientists building security models and application developers building security products
Become a subject matter expert for internal teams consuming Intel team security and categorization data
Become the owner for Intel Team's strategy for false positive controls
Learn and understand current processes
Identify gaps and risk areas
Work the data scientists to test remediation strategies
Work the engineering teams to implement remediation strategies
Define and implement metrics for product efficacy
Research and plan potential software, data science or machine learning projects to improve false positive and false negative rates
Continually monitor data quality and bring data quality issues and proposed solutions to team leadership
Identify topical areas in cybersecurity where Cloudflare's unique network can be leveraged to improve user security
Write blog posts and communicate both internally and externally about Intel Team's work
Execute daily operational tasks and define automations to streamline operational tasks
Work with team to define technical requirements for security products
Research threats, exploits, and TTPs being defended against in products and work with engineers to create products that defend against them

 

Required Skills & Abilities
Scripting in Python and Node/Javascript
Able to use git to create, edit, and review pull requests
Basic front-end or full-stack development skills preferred but not required
Knowledge of and passion for cybersecurity
Knowledge of cyber security... For full info follow application link.

Cloudflare is proud to be an equal opportunity employer.  We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness.  All qualified applicants will be considered for employment without regard to their, or any other person's, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA/Veterans/Disabled Employer.

To view full details and how to apply, please login or create a Job Seeker account
How to Apply Copy Link

Job Posting: 11866746

Posted On: Apr 29, 2024

Updated On: Apr 29, 2024

Please Wait ...