Defend (Services)

(Senior) Technical Threat Intelligence Researcher/Analyst (f/m/d)

Chancengleichheit und Vielfalt werden bei uns großgeschrieben. Wir begrüßen daher alle Bewerbungen – unabhängig von Nationalität, Religion/Weltanschauung, ethnischer und sozialer Herkunft, Alter sowie sexueller Orientierung und Identität.

f/m/d

Diversity

1. August 2026

Beginn

Vollzeit

Arbeitszeit

Berlin/Remote

Standort

Der Job

Du hast eine Leidenschaft für Cybersecurity?

Your team:

Our technical threat intelligence team tracks attackers and their activities to provide our clients with up-to-date information on malicious activity – both in the form of technical indicators and signatures as well as technical reports. To achieve this, we work with our Incident Response team, our SOC, as well as with external research teams. Our information is used daily by our stakeholders to protect their critical infrastructures and our European values. Within the team, we value the right balance between continuously producing technical content, responding to ad-hoc requests, and conducting long-term research projects.

Your Job:

  • You collect and analyze technical information from public and commercial sources, as well as from our own telemetry, to create technical threat intelligence, identify and understand attack patterns, tactics/techniques, and campaigns of cyber actors.
  • You translate the insights you gather about attackers, their malware, malicious infrastructure, and TTPs for our clients, helping them understand how to effectively protect themselves. You are responsible for independently creating indicators, signatures, and, if necessary, technical reports.
  • You correlate information from various data sources and develop your own tools (preferably in a scripting language like Python) and methods for analyzing large datasets or unknown data.
  • You communicate clearly and effectively with our clients about current threats and recommended protective measures.
  • You work closely with other teams and external partners to share knowledge and gain new insights.
  • With your experience, you help shape the direction in which the team’s capabilities and our threat intelligence services evolve

Skills

Dein Profil*

What you bring:

  • At least three years of professional experience in the technical analysis of cyber threats (threat intelligence) or a related field (for example threat hunting, incident response).
  • Strong analytical skills and experience using relevant threat intelligence sources (e.g., passive DNS, Netflow, host scanning, malware repositories).
  • In-depth knowledge of attack strategies (TTPs) and threat analysis, including methods used by state-sponsored groups and cybercriminals
  • Experience in the technical and continuous tracking of attacker groups, infrastructure and TTPs
  • Experience creating detection content such as indicators and signatures (e.g., Suricata/Yara/Sigma)
  • Experience with analysis tools such as MISP, Elastic Search, Splunk, SQL, and other big data applications, as well as developing your own tools (preferably in a scripting language like Python).
  • A university degree in computer science, IT security, or a related field is ideal; alternatively, relevant professional experience is welcome
  • Methodological knowledge for generating cyber threat intelligence (intelligence cycle, defining priority intelligence requirements) is a plus
  • Independent working style, strong communication skills, and the ability to convey complex information clearly
  • Fluent English skills (C1 level) and ideally good German skills (B2); additional language skills are a plus

 

*Don’t let a gap in your resume hold you back: Do you feel your resume is missing some experience, and you don’t quite meet all our requirements? We’d still love to hear from you!

*Mut zur Lücke: Dir fehlen Kenntnisse im Lebenslauf und Du erfüllst unsere Anforderungen nicht zu 100%? Wir freuen uns trotzdem auf Deine Bewerbung!

Wir möchten den Anteil von Frauen in den Bereichen erhöhen, in denen sie unterrepräsentiert sind, und freuen uns daher besonders über Bewerbungen von Frauen. BIPOCs und Menschen aus der LGBTQIA+-Community sowie Menschen mit Migrationsgeschichte werden ebenfalls ausdrücklich ermutigt, sich zu bewerben. Bei gleicher Eignung werden Bewerbungen von schwerbehinderten Menschen bevorzugt berücksichtigt.

BENEFITS

Best Place to Work

  • DCSO Vibes

    Internationale Teams
    Firmenevents
    Enger Zusammenhalt
    Vertrauenskultur
    Offenheit und Transparenz

  • Modern Working Environment

    Vertrauensarbeitszeit
    Mobiles Arbeiten
    Teilzeitmodelle
    Ergonomische Büroausstattung
    Barrierefreiheit
    "Bring your dog"
    Sabbatical

  • Feel well

    Obst und Gemüse
    Vielfältige Getränkeauswahl
    Täglicher Essenszuschuss
    Gesundheitsvorsorge
    Sprachkurse mit Babbel
    Zuschuss Urban Sports Club
    Zuschuss EGYM Wellpass

  • Financials

    Marktadäquate Vergütung
    30 Tage Urlaub
    Betriebsruhe am 24.12. und 31.12.
    Betriebliche Altersvorsorge
    Weiterbildung und Schulungen
    Urlaubszuschuss Ehrenamt
    Zuschuss BusinessBike
    Zuschuss Deutschlandticket Job
    Shoppingrabatte über Corporate Benefits