{"id":1297130,"url":"https://alion.io/job/insane-cyber-threat-intelligence-and-detection-engineer","title":"Threat Intelligence and Detection Engineer","company":{"id":3787426,"name":"Insane Cyber","domain":"insanecyber.com","url":"https://alion.io/company/insanecyber","size_band":"11-50","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"BambooHR","truth_index":null},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":[],"countries":[],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Go","optional":true},{"name":"JavaScript","optional":true},{"name":"MITRE ATT&CK","optional":true},{"name":"MITRE D3FEND","optional":true},{"name":"Python","optional":true},{"name":"Rust","optional":true},{"name":"Suricata","optional":true},{"name":"Threat Modeling","optional":true},{"name":"YARA","optional":true},{"name":"Zeek","optional":true}],"status":"live","first_seen_at":"2026-02-03T00:00:00Z","employer_posted_date":"2026-02-03","last_verified_at":"2026-09-30T07:43:44Z","board_verified":true,"closed_at":null,"days_open":240,"trust":{"level":"stale","repost_count":0,"flags":["stale"],"days_open":240},"description":"At Insane Cyber, we’refocused on advancing cybersecurity for the better. We’vedeveloped innovative tools backed by expert support to change how organizations perform deep level proactiveand reactive analysis. We partner with our customers to provide cutting-edgesolutions and services to help protect our critical infrastructure and critical operations from threats - from the power grid to manufacturing.\nOur flagship Valkyrie and Cygnet products provide host and network analysis automation beyond the capabilities of other products on the market. Our Corvus and Aesir product lines deliver managed and professional services to help assess and fill gaps and weaknesses in the security posture of clients' security programs.\nIt’san exciting time for us as we continue to grow our products and services, and we need a great teamin place!\nAs we grow, we are seeking a Threat Intelligence and Detection Engineer to join our team.This role is crucial for the continued development and enhancement of our flagship products, Valkyrieand Cygnet. You will be a key player in our professional services team, bringing your expertiseand innovative thinking to advance our technology and maintainour competitive edge in the market.\nResponsibilities\nProvide expert proactiveand reactive consultancy services to clients, helping them understand and mitigate cybersecurity risks. Typical services include, but are not limited tothreat hunting, incident response, digital forensics, and architecture reviews\nKeep up with current and emerging threats and develop innovative ways to implement detection of threats in Valkyrie and Cygnet with both host and network data\nCollaborate with engineering, professional services, external customersand other internal and external groups to identify, architect, develop and deliver capabilities to end users\nPerform analysis and investigations, correlating events and data to detect security incidents\nParticipate in incident response efforts throughoutthe IR life cycle. \nDevelop and maintainsecurity incident response plans\nOperationalize, monitor, and optimize security and network monitoring solutions \nImprove observability and monitoring of the customer environments, collaborating with internal and customer teams to enhance visibility into security events and incidents\nApply working experience with protocol dissection and proprietary protocol analysis-preferablyin the industrial space\n\nWork with a cross-functional team to develop new detections specifically for industrial environments\nDeliver solutions to and manage cybersecurity projects, ensuring alignment with client needs and best industry practices\nBuild and maintainstrong relationships with clients, acting as a trusted advisor in cybersecurity matters\nEnsure the quality and timeliness of service delivery, adhering to project deadlines and client expectations\nStay updated on the latest cybersecurity trends and technologies, applying this knowledge to improve service quality\nQualifications\nMinimum 3-5 years of full-time experience in cybersecurity\nBachelor’s or Master’s degree in Information Technology, Cybersecurity, or a related field, or equivalent experience\nExperience in digital forensics, incident response, or threat hunting is a plus\nExperience in industrial sectors, Operational Technology (OT), Industrial Control Systems (ICS)and/or critical operations assurance is a plus\nExperience in a startup or rapidly growing professional services organization is a plus\nWorking knowledge of proprietary and open-sourcethreat detection engines and rulesets (Suricata, Yara, Sigma, Zeek, etc.)\nWorking experience with host and network data analysis across packet capture files, host logs, registry, memoryand/or disk artifacts\nWorking knowledge of major nation state and criminal level threats and experiencebuilding host and network detections to identifythose threats\nDeep working knowledge of MITRE ATT&CK, D3FEND, orother threat modeling frameworks\n[Nice to Have] Proficiency in backend languages and frameworks, such as Python, JavaScript, C, Go, Rust, or similar technologies\nProven track recordof successful delivery in a consulting environment\nExcellent client relationship management skills and the ability to explain complex technical concepts clearly\nStrong communicationskills, collaboration mindset, and an ability to learn quickly required\nBenefits\nCompetitive Base Salary\nEquity offering subject to board approval\nComprehensive medical/dental/vision/life insurance plan \nRetirement plan with employer match \nFlexible working hours and generous time-off policy \nInsane Cyberis proud to be an equal-opportunity employer. We celebrate diversity and strive to foster an inclusive environment for all employees. If you'rea visionary with a passion for pushing the boundaries of industrial cybersecurity, we'dlove to hear from you.","description_format":"text","description_chars":4844,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Equity","Flexible schedule","Life insurance","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Threat Intelligence","Information Security","Cybersecurity"],"lifecycle":[{"event":"open","at":"2026-09-26T09:52:49Z"}],"liveness":{"score":6,"band":"cold","label":"Long shot","p_open":1,"p_active":0.204,"p_room":0.28,"age_days":240,"expected_fill_days":26,"reasons":["conf:22","win:tail","crowd:"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/insane-cyber-threat-intelligence-and-detection-engineer","json_url":"https://alion.io/job/insane-cyber-threat-intelligence-and-detection-engineer.json","meta":{"generated_at":"2026-10-01T11:34:46Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3270,"day_limit":5000,"remaining_today":1730,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}