Threat Analyst
COMPANY OVERVIEW ThreatLocker® is a leader in endpoint protection technologies, providing enterprise-level cybersecurity tools to improve the security of servers and endpoints. The ThreatLocker® platform with Application Allowlisting, Ringfencing™, Storage Control, Elevation Control, Endpoint Network Control, Configuration Management, and Operational Alert solutions are leading the cybersecurity market toward a more secure approach of blocking the exploits of application vulnerabilities. POSITION OVERVIEW The Threat Analyst plays a key role within the ThreatLocker Threat Intelligence team, driving research and intelligence efforts focused on identifying and investigating new and emerging cybersecurity threats. This position is responsible for tracking advanced persistent threat (APT) adversaries, analyzing tactics, techniques, and procedures (TTPs), conducting malware and infrastructure investigations, and producing high-impact technical intelligence. The Threat Analyst will author technical blog posts on malicious software, finished intelligence reports on malicious campaigns, threat actor profiles, and analyses of the evolving threat landscape. Artifacts and telemetry collected through malware analysis, infrastructure investigation, and campaign research will be leveraged to identify and address ThreatLocker Detect coverage deficiencies in partnership with Detection Engineering team members. This role will be based in Orlando, FL and is an in-office position. JOB SCOPE Identify and investigate new and emerging cybersecurity threats. Track APT adversaries and characterize their tactics, techniques, and procedures (TTPs). Conduct malware analysis, reverse engineering, infrastructure investigations, and campaign research. Analyze artifacts and telemetry to identify malicious activity and emerging threat patterns. Author high-impact technical blog posts covering malicious software, campaigns, and threat research. Produce finished intelligence reports on malicious campaigns, threat actor profiles, and threat landscape trends. Leverage research findings and collected telemetry to identify potential ThreatLocker Detect coverage deficiencies. Collaborate with Detection Engineering team members to improve and expand threat detection coverage. Analyze Windows operating system artifacts, including mechanisms associated with persistence, privilege escalation, and defense evasion. Apply the MITRE ATT&CK framework to threat research and analysis within enterprise environments. Communicate complex technical findings and threat intelligence to both technical and non-technical stakeholders. Provide professional insight and recommendations regarding product functionality and roadmap considerations. Collaborate effectively with team members across Threat Intelligence, Detection Engineering, and other relevant functions. Manage multiple research priorities and meet time-sensitive deadlines. Perform other duties as assigned. REQUIRED QUALIFICATIONS Minimum o...