Hiring.Camp

Threat Analyst

Threatlocker

·

Aug 7, 2026

Location
Orlando, FL · Maitland, Florida, United States
Workplace
Onsite
Department
INFORMATION TECHNOLOGY
Experience
3+ years
Source
Greenhouse

Description

COMPANY OVERVIEW

ThreatLocker® is a leader in endpoint protection technologies, providing enterprise-level cybersecurity tools to improve the security of servers and endpoints. The ThreatLocker® platform with Application Allowlisting, Ringfencing™, Storage Control, Elevation Control, Endpoint Network Control, Configuration Management, and Operational Alert solutions are leading the cybersecurity market toward a more secure approach of blocking the exploits of application vulnerabilities.

POSITION OVERVIEW

The Threat Analyst plays a key role within the ThreatLocker Threat Intelligence team, driving research and intelligence efforts focused on identifying and investigating new and emerging cybersecurity threats. This position is responsible for tracking advanced persistent threat (APT) adversaries, analyzing tactics, techniques, and procedures (TTPs), conducting malware and infrastructure investigations, and producing high-impact technical intelligence.

The Threat Analyst will author technical blog posts on malicious software, finished intelligence reports on malicious campaigns, threat actor profiles, and analyses of the evolving threat landscape. Artifacts and telemetry collected through malware analysis, infrastructure investigation, and campaign research will be leveraged to identify and address ThreatLocker Detect coverage deficiencies in partnership with Detection Engineering team members.

This role will be based in Orlando, FL and is an in-office position.

JOB SCOPE

  • Identify and investigate new and emerging cybersecurity threats.
  • Track APT adversaries and characterize their tactics, techniques, and procedures (TTPs).
  • Conduct malware analysis, reverse engineering, infrastructure investigations, and campaign research.
  • Analyze artifacts and telemetry to identify malicious activity and emerging threat patterns.
  • Author high-impact technical blog posts covering malicious software, campaigns, and threat research.
  • Produce finished intelligence reports on malicious campaigns, threat actor profiles, and threat landscape trends.
  • Leverage research findings and collected telemetry to identify potential ThreatLocker Detect coverage deficiencies.
  • Collaborate with Detection Engineering team members to improve and expand threat detection coverage.
  • Analyze Windows operating system artifacts, including mechanisms associated with persistence, privilege escalation, and defense evasion.
  • Apply the MITRE ATT&CK framework to threat research and analysis within enterprise environments.
  • Communicate complex technical findings and threat intelligence to both technical and non-technical stakeholders.
  • Provide professional insight and recommendations regarding product functionality and roadmap considerations.
  • Collaborate effectively with team members across Threat Intelligence, Detection Engineering, and other relevant functions.
  • Manage multiple research priorities and meet time-sensitive deadlines.
  • Perform other duties as assigned.

REQUIRED QUALIFICATIONS

  • Minimum of 3 years of experience in Information Security.
  • Minimum of 2 years of experience in malware analysis, reverse engineering, digital forensics, or a related discipline.
  • Familiarity with malware analysis and reverse engineering tools such as IDA Pro, Binary Ninja, Detect It Easy, x64dbg, Malcat, HxD, or similar platforms.
  • Experience with Windows operating systems and associated forensic artifacts.
  • Knowledge of common mechanisms used for persistence, privilege escalation, and defense evasion.
  • Familiarity with common parent-child process structures within Windows environments.
  • In-depth knowledge of the MITRE ATT&CK framework and its application within enterprise environments.
  • Strong understanding of security technologies and their relevant applications within enterprise environments.
  • Excellent analytical, critical-thinking, and problem-solving skills.
  • Ability to communicate abstract and complex technical concepts to non-technical stakeholders.
  • Strong written and verbal communication skills.
  • Content development or technical writing experience strongly preferred.
  • Self-starting mentality with the ability to work independently and take ownership of research initiatives.
  • Ability to perform effectively in a high-pressure environment.
  • Ability to collaborate and work effectively in a team setting.
  • Strong time management skills with the ability to meet time-sensitive deadlines.
  • Confidence in conveying professional opinions regarding product functionality and roadmap considerations.

RELEVANT CERTIFICATIONS

The following certifications are relevant to this position:

  • GIAC Certified Forensic Analyst (GCFA).
  • GIAC Certified Incident Handler (GCIH).
  • GIAC Certified Intrusion Analyst (GCIA).
  • GIAC Reverse Engineering Malware (GREM).
  • GIAC Information Security Professional Certification (GISP).

WORKING CONDITIONS

The duties described below are representative of those encountered while performing the essential functions of this position. If necessary, reasonable accommodation may be requested and will be evaluated for its relationship to the essential functions that must be performed.

  • The job will generally be performed in an office environment but may require travel to visit company offices, customers, prospects, partners, trade shows, conferences, or other business locations.
  • While performing the duties of this job, the employee may occasionally be required to stand, walk, sit, reach with hands and arms, climb or balance, stoop or kneel, talk and hear, and use fingers and hands to feel objects and tools.
  • Must occasionally lift and/or move up to 25 pounds.
  • Specific vision abilities required include close vision, distance vision, depth perception, and the ability to adjust focus.

A background check and drug/substance screening are required after a conditional offer. Employment will proceed only upon receiving clear results from both.

ThreatLocker also conducts randomized drug and substance testing approximately every 60 days, in line with the same screening standards.

Skills

CybersecurityTechnical Writing

Similar Jobs

30

Threat Analyst

Peraton·Honolulu, HI·Onsite

2mo ago

Threat Analyst

Socket·US

9mo ago

Staff Cybersecurity Threat Analyst

PayPal·SGP - Central Singapore - Corp - Temasek Blvd

Today

Threat Detection & Response Tier 1 Analyst - AZ

Mufgub·Watermark - 410 North Scottsdale Road, US·Remote, Onsite

1d ago

Insider Threat Analyst, TS/SCI with Polygraph

GDIT·USA VA Chantilly - 14675 Lee Rd, US

1d ago

Travel Risk and Threat Intelligence Analyst – Dedicated GSOC

Global Guardian·San Mateo, CA

1d ago

Information Security Analyst II ( Social Engineer Threat Analyst)

Td·310, 320 Front Street West Corporate·Onsite

1d ago

Insider Threat Analyst, TS/SCI with Polygraph

Gdit·USA VA Chantilly - 14675 Lee Rd, US

1d ago

Threat & Intelligence Analyst

Pinkerton·Bangalore, KA

1d ago

Staff Cyber Threat Intelligence Analyst, Executive Protection

Coupang Internal·Seattle, US

1d ago

Threat Analyst 3

Sophos·Canada·Remote

1d ago

Insider Threat Program Hunt Team Analyst

Leidos·5554 Springfield VA, US

2d ago

Cybersecurity Senior Threat Analyst (Hybrid)

Bancorpbank·Wilmington, DE·Hybrid

2d ago

Analyst IV-Threat Intel

Verizon Communications·VDSI, IND +1

2d ago

Analyst II-Threat Intel

Verizon Communications·VDSI, IND +1

2d ago

Analyst IV-Threat Intel

Verizon Communications·VDSI, IND +1

2d ago

Analyst III-Threat Intel

Verizon Communications·VDSI, IND +1

2d ago

Threat Detection Analyst

Team Cymru·Lake Mary·Remote

2d ago

Cybersecurity Incident Response & Threat Detection Analyst

LOGC2·Columbus, OH

2d ago

Operational Technology Threat Intelligence Analyst

Horizon Industries·Columbus, OH

2d ago

Cybersecurity Incident Response & Threat Detection Analyst

Horizon Industries·Columbus, OH

2d ago

Threat Operations Analyst

Internova·Montevideo, UY

3d ago

SOF Threat Analyst

Caci·0ML FORT BRAGG NC, US·Onsite

3d ago

Cyber Threat Analyst

Peraton·Linthicum, MD·Onsite

3d ago

IT Threat and Vulnerability Management Analyst (Hybrid Office Schedule)

AFL·Duncan, SC

5d ago

Insider Threat Monitoring Analyst - Mid-Level [U.S. Citizenship & CBP BI - High Trust Required]

Via Logic LLC·Ashburn, VA +1·Onsite

5d ago

Cyber Threat Intelligence Analyst - Mid-Level & Senior [U.S. Citizenship, Top Secret Clearance w/SCI Eligibility Required]

Via Logic LLC·Ashburn, VA +1·Onsite

5d ago

Cyber Threat Hunt Analyst - Junior, Mid-Level & Senior [U.S. Citizenship, Top Secret Clearance w/SCI Eligibility Required]

Via Logic LLC·Ashburn, VA +1·Onsite

5d ago

Threat Intelligence Response Analyst

Recordedfuture·London, England +1·Hybrid

5d ago

Insider Threat Analyst II -TS/SCI Required

Blueorigin·WA - O'Neill Building, US +1·Onsite

6d ago