904,400open jobs
55,732companies
149,454added this week
Browse all
Salary
≈ $37k – $105k per year (Estimated)
Location
In office (Belfast)

Confirmed on the employer's own hiring board on Sep 28, 2026. First seen by Alion on Jul 17, 2026. Black Duck scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Black Duck is a leading application security enterprise specializing in software supply chain security and open-source risk management. The company focuses on delivering automated solutions to detect software vulnerabilities, manage license compliance, and secure digital codebases. Headquartered in Burlington, Massachusetts, it serves enterprise clients worldwide to streamline secure software development workflows.

Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.

The Threat Intelligence Engineer supports the research, collection, and analysis of threat data that enables Black Duck to detect and respond to threats targeting the enterprise and its software supply chain. Working within the Threat Intelligence function under moderate supervision, you apply foundational knowledge of adversary tradecraft to assist in producing intelligence products, maintaining indicator pipelines, and contributing threat context to security workflows across the organization. This role solves moderately complex problems within defined guidelines and policies, collaborates with senior engineers on intelligence operations, and supports broader cybersecurity and security operations functions as capacity allows.

Essential Functions/Responsibilities

  • Assist with collection, processing, and analysis tasks across the intelligence requirements-to-dissemination workflow.
  • Help maintain the intelligence requirements register under guidance from senior team members.
  • Draft threat actor profiles, campaign summaries, and indicator packages for technical audiences; refine products based on senior engineer feedback.
  • Ingest, validate, and score indicators of compromise (IOCs) from commercial feeds (e.g., Recorded Future), open-source, and internal sources.
  • Support integration of IOC pipelines with SIEM and EDR platforms, including Sumo Logic and CrowdStrike Falcon/NG SIEM.
  • Apply confidence scoring and structured formats (e.g., STIX 2.1) to intelligence artifacts; escalate data quality issues to senior team members.
  • Monitor open-source package registries (npm, PyPI, Go, Maven, and others) and CI/CD pipeline integrity signals for indicators of adversarial activity including typosquatting, dependency confusion, and build-pipeline compromise.
  • Contribute to the internal supply chain threat detection program by assisting with data collection, documentation, and detection logic testing.
  • Assist broader cybersecurity and security operations functions - including CSIRT, Vulnerability Management, and PSIRT - with alert triage, threat research, and DLP investigation enrichment, as capacity allows.
  • Support security investigations by researching threat actor behaviors, identifying relevant IOCs, and providing contextual summaries.
  • Prepare threat intelligence summaries and briefing materials for internal consumers including CSIRT and Vulnerability Management.
  • Identify opportunities for workflow improvements within own area and recommend changes to senior team members.
  • Learn and follow applicable standards for intelligence data handling, sharing agreements, and governance; contribute to supporting documentation as directed.
  • Other tasks and activities as assigned.

Required Education/Experience & Skills

  • Typically at least two (2) years of experience in threat intelligence, security operations, threat hunting, or a closely related cybersecurity role; demonstrated ability to solve moderately complex problems within established guidelines.
  • Working familiarity with the intelligence production lifecycle, threat actor profiling concepts, and structured formats (e.g., STIX 2.1); ability to apply MITRE ATT&CK for basic TTP mapping.
  • Practical experience working within enterprise SIEM or EDR environments; ability to run queries, review alerts, and support detection validation (current platforms include Sumo Logic and CrowdStrike Falcon/NG SIEM).
  • Conceptual understanding of adversarial techniques targeting open-source ecosystems - including typosquatting, dependency confusion, registry abuse, and build-pipeline compromise - and the ability to identify relevant indicators.
  • Strong written and verbal English communication skills; able to explain moderately complex threat information clearly to peers and adjacent teams; comfortable escalating appropriately under moderate supervision.
  • Bachelor's degree in computer science, information security, or a related field preferred; entry-level security certified

Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
904,400 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Belfast
≈ $42k – $118k per year (Estimated) • Hybrid • 2+ years exp • London
Cybersecurity
ISO 27001
SOC 2
GDPR
HIPAA
Apply
≈ $70k – $139k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Belfast
DevOps
Splunk
GCP
Azure
AWS
Cybersecurity
Crowdstrike
Microsoft Sentinel
ISO 27001
Microsoft Defender
MITRE ATT&CK
NIST CSF
SIEM
Management
Microsoft Teams
Apply
$80k per year • Equity • Remote (United Kingdom, UTC+1 – UTC+10 hours) • 3+ years exp
Python
DevOps
TCP/IP
DNS
Cybersecurity
SIEM
Apply
≈ $58k – $115k per year (Estimated) • In office • Full-Time • 1+ year exp • Associate's Degree • Edinburgh
DevOps
IAM
Management
Outlook
Microsoft Office
Apply
≈ $85k – $168k per year (Estimated) • Remote (United Kingdom) • 5+ years exp • London
Python
DevOps
Splunk
Terraform
IAM
Cybersecurity
Crowdstrike
Zero Trust
osquery
DLP
Apply
≈ $53k – $125k per year (Estimated) • In office • 6+ years exp • Singapore
C#
C#
.NET
DevOps
CI/CD
Apply
≈ $54k – $150k per year (Estimated) • Remote (Canada) • 3+ years exp • Ottawa
Python
SQL
C++
Databases
ClickHouse
ElasticSearch
DevOps
Rest API
GitHub Actions
CI/CD
Docker
GitHub
Linux
Cybersecurity
Trivy
Grype
Apply
≈ $54k – $150k per year (Estimated) • Remote (Canada) • 3+ years exp • Toronto
Python
SQL
C++
Databases
ClickHouse
ElasticSearch
DevOps
Rest API
GitHub Actions
CI/CD
Docker
GitHub
Linux
Cybersecurity
Trivy
Grype
Apply
≈ $64k – $134k per year (Estimated) • Remote (United States) • 3+ years exp • San Francisco
Python
SQL
C++
Databases
ClickHouse
ElasticSearch
DevOps
Rest API
GitHub Actions
CI/CD
Docker
GitHub
Linux
Cybersecurity
Trivy
Grype
Apply
Cloud SRE Engineer 3 days ago
≈ $108k – $242k per year (Estimated) • Remote (United States) • San Francisco
Go
Databases
ClickHouse
ElasticSearch
DevOps
Terraform
CI/CD
AWS
Kubernetes
GitHub
DNS
Cybersecurity
ISO 27001
SOC 2
Apply
≈ $76k – $150k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Belfast
Python
DevOps
Terraform
GCP
Helm
CloudFormation
Azure
CI/CD
AWS
Kubernetes
Cybersecurity
ISO 27001
SOC 2
Threat Modeling
Apply
≈ $102k – $263k per year (Estimated) • Remote (Canada) • 8+ years exp • Bachelor's Degree
AI/ML
LLM
DevOps
GCP
Azure
AWS
Cybersecurity
OWASP Top 10
OWASP SAMM
CVSS
Threat Modeling
SBOM
GitGuardian
Management
Jira
Apply
$136k – $204k per year • Remote (United States, Canada) • Bachelor's Degree • Washington
Python
Java
PowerShell
C#
C++
Perl
DevOps
CI/CD
Cryptography
OpenSSL
Apply
≈ $20k – $46k per year (Estimated) • In office • 10+ years exp • Bengaluru
Cybersecurity
SBOM
Apply
$170k – $220k per year • In office • 10+ years exp • Bachelor's Degree • Calgary
DevOps
Azure
IAM
Cybersecurity
Okta
Zero Trust
Microsoft Entra ID
Ping Identity
Auth0
Apply
≈ $78k – $178k per year (Estimated) • In office • 5+ years exp • Belfast
DevOps
CI/CD
SLI/SLO/SLA
Cybersecurity
CVSS
EPSS
KEV
Management
ITSM
Apply
≈ $59k – $115k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Belfast • Derry
Python
PowerShell
DevOps
Rest API
Terraform
Azure
CI/CD
Platform Engineering
Bicep
Cybersecurity
Microsoft Defender for Cloud
SIEM
DLP
Apply
In office • Part-Time • Belfast
Apply
Hybrid • Full-Time • 3+ years exp • Belfast • Derry
Python
JavaScript
DevOps
Azure
CI/CD
AWS
Cybersecurity
Least Privilege
SIEM
DLP
Management
Agile
Apply
Hybrid • Full-Time • 4+ years exp • Belfast • Derry
Python
DevOps
Terraform
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Management
Agile
Apply
See all jobs
This is one of many
904,400 more open roles from verified company boards, updated every day.