Director, Threat Intelligence

1 month ago


Arlington, Virginia, United States Rapid7 Full time

About the Team

This position is in our Managed Detection and Response (MDR) service, guiding the formation and execution of the company's detection strategy and overseeing the direction of Threat Intelligence and Detection Engineering (TIDE) team, including our Threat Hunting program. The mission of this function is to deliver world class detection engineering, threat hunting, and malware analysis to Rapid7 customers and partners across the globe.

Our detection engineering professionals curate threat intelligence to create detections resulting in alerts worthy of human review through applied research, observation of malicious actor behavior, and emerging threats. Our vision is to know when, by whom and why. We work across the incident lifecycle to build detections and identify patterns of activities to better understand an adversary's actions, expedite response, and constantly update the collective understanding of threats. We leverage this knowledge to arm security practitioners with the actionable intelligence they need to defend their organizations.

About the Role

Are you passionate about changing the game in security? How about leading the charge against adversaries across a dynamic target base? As the leader of Rapid7's detection engineering, you will oversee a team of extremely talented, driven, and creative front line practitioners, and you will drive our detection strategy, having an ownership role in our future direction in this critical capability.

In this role, you will:

  • Oversee the direction of our TIDE function, including our malware analysts and detection engineers.
  • Lead the formulation and evolution of Rapid7's detection and threat hunting strategy.
  • Collaborate closely with our global MDR Operations, Product, Engineering, PMO, and Customer Advisor teams to facilitate positive outcomes for internal and external customers.
  • Serve as a technical and managerial escalation point for complex challenges.
  • Promote healthy, positive work habits and environments to reduce fatigue and encourage a sustainable work-life balance.
  • Drive innovation for our products and services to streamline processes, improve reliability and efficacy of our tools, and reduce noise.
  • Be an escalation point for more senior team members and Rapid7 customers.

The skills you'll bring include:

  • 10+ years of cyber security experience (preferably focused on detection, malware analysis, incident response, and/or threat intelligence)
  • 5+ years of experience leading security practitioners and detection functions
  • Prior experience with graphical link analysis tools (Maltego, Analyst Notebook, Palantir)
  • Prior experience with threat indicator management platforms (ThreatQ, Anomali, RecordedFuture)
  • Advanced knowledge of common operating systems, services, networking protocols, logging, attacker techniques and tools
  • Prior operational experience leveraging threat intelligence to detect and respond to adversaries
  • Expertise in tools and techniques for analyzing large sets of data
  • Extremely strong written and verbal skills

A plus if you have:

  • Scripting, software development, engineering, and/or devops experience
  • Prior MDR and/or MSSP experience
  • Publications and conference speaking engagements
  • Maltego experience
  • ThreatQ experience

We know that the best ideas and solutions come from multi-dimensional teams. That's because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don't be shy - apply today.

About Rapid7

At Rapid7, we are on a mission to create a secure digital world for our customers, our industry, and our communities. We do this by embracing tenacity, passion, and collaboration to challenge what's possible and drive extraordinary impact.

Here, we're building a dynamic workplace where everyone can have the career experience of a lifetime. We challenge ourselves to grow to our full potential. We learn from our missteps and celebrate our victories. We come to work every day to push boundaries in cybersecurity and keep our 11,000+ global customers ahead of whatever's next.

Join us and bring your unique experiences and perspectives to tackle some of the world's biggest security challenges.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or any other status protected by applicable national, federal, state or local law.



  • Arlington, Virginia, United States SAIC Full time

    About the RoleWe are seeking a highly skilled Threat Intelligence Analyst to join our team at SAIC. As a Threat Intelligence Analyst, you will play a critical role in supporting our national security efforts by analyzing and interpreting complex data to identify potential threats.Key ResponsibilitiesWork in Cyber and Virtual EnvironmentDemonstrate knowledge...


  • Arlington, Virginia, United States DivvyCloud Full time

    About the TeamThis role is situated within our Managed Detection and Response (MDR) service, steering the development and implementation of the organization's detection strategy while supervising the Threat Intelligence and Detection Engineering (TIDE) team, which includes our Threat Hunting initiative. The objective of this function is to provide...


  • Arlington, Virginia, United States Nightwing Full time

    About NightwingAt Nightwing, we are a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence support services to the U.S. government. With a rich history of delivering mission-critical solutions, we are committed to shaping the future of cybersecurity and intelligence.Job SummaryWe are seeking a highly skilled Cyber...


  • Arlington, Virginia, United States Pueo Business Solutions Full time

    Job OverviewPosition Summary: The role of a Threat Intelligence Analyst involves a comprehensive approach to understanding and mitigating risks associated with emerging threats. This position requires a blend of analytical expertise and strategic communication skills to support organizational objectives.Key Responsibilities:Intelligence Analysis:Conduct...


  • Arlington, Virginia, United States Pueo Business Solutions Full time

    Job OverviewPosition Summary: The role of a Threat Intelligence Analyst involves critical analysis and strategic communication to enhance organizational security measures against emerging threats.Key Responsibilities:Intelligence Analysis:Conduct thorough evaluations and synthesis of data in accordance with established analytical standards.Focus on...


  • Arlington, Virginia, United States Pueo Business Solutions Full time

    Job OverviewPosition Summary: The role of a Threat Intelligence Analyst involves a comprehensive approach to understanding and mitigating risks associated with emerging threats. This position is crucial for ensuring informed decision-making at the highest levels of leadership.Key Responsibilities:Intelligence Analysis:Conduct thorough evaluations and...


  • Arlington, Virginia, United States DivvyCloud Full time

    About the TeamThis role is situated within our Managed Detection and Response (MDR) service, where you will guide the development and implementation of the company's detection strategy while overseeing the Threat Intelligence and Detection Engineering (TIDE) team, which includes our Threat Hunting initiative. The mission of this function is to provide...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Senior Cyber Threat Intelligence Analyst, you will play a crucial role in safeguarding national interests against cyber threats. Your primary responsibility will be to analyze, interpret, and disseminate intelligence related to cyber threats, providing actionable insights to enhance the client's security posture.Key...


  • Arlington, Virginia, United States ANALYGENCE Inc Full time

    Job SummaryANALYGENCE Inc is seeking a highly skilled Junior All-Source Intelligence Analyst to support our client in Arlington, VA. As a key member of our team, you will play a critical role in developing, providing, and integrating timely, insightful, objective, and relevant all-source intelligence analysis into our operations.Key ResponsibilitiesData...


  • Arlington, Virginia, United States Cayuse Holdings Full time

    About the RoleCayuse Holdings is seeking a highly skilled All-Source Intelligence Analyst to join our team. As a key member of our intelligence team, you will be responsible for developing, providing, and integrating timely, insightful, objective, and relevant all-source intelligence analysis into our operations.Key ResponsibilitiesSupport data fusion from...


  • Arlington, Virginia, United States Peraton Full time

    Peraton is currently hiring an Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber programs to work o n-site role in Arlington, VA.Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.Map ICS activity and threats using MITRE ATT&CK...


  • Arlington, Virginia, United States Nodel Full time

    Job OverviewPosition: Cyber Threat AnalystLocation: Arlington, VASecurity Clearance: Top Secret RequiredNode is dedicated to providing expert support to U.S. Government clients, focusing on incident response for civilian agencies and critical infrastructure owners facing cyber threats. Our team is responsible for immediate investigation and resolution of...


  • Arlington, Virginia, United States Intelligence and National Security Alliance Full time

    Position OverviewAs a pivotal member of our team, you will contribute to the mission of the Intelligence and National Security Alliance by providing essential analysis and support in the vetting of local national employees and job applicants for Regional Security Offices. Our organization is dedicated to enhancing security and operational readiness through...


  • Arlington, Virginia, United States Arlo Solutions Full time

    About the RoleArlo Solutions is seeking a highly skilled Insider Threat Policy Analyst to join our team in support of the OUSD I&S CL&S Support Division. As an Insider Threat Policy Analyst, you will play a critical role in developing, implementing, and maintaining strategies, policies, and procedures to prevent, detect, and respond to insider threats within...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Cyber Threat Intelligence Analyst, you will play a crucial role in safeguarding national interests against cyber threats. Your primary responsibility will be to analyze, process, and research various cyber threats to deliver actionable intelligence. This includes identifying adversary indicators of compromise, understanding their...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Cyber Threat Intelligence Analyst, you will play a crucial role in safeguarding national interests against cyber threats. Your responsibilities will include processing, analyzing, and researching cyber threats to deliver actionable intelligence. This encompasses identifying adversary indicators of compromise, understanding techniques,...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Cyber Threat Intelligence Analyst, you will play a crucial role in safeguarding national interests against cyber threats. Your primary responsibility will be to analyze, process, and research various cyber threats to deliver actionable intelligence. This includes identifying adversary indicators of compromise, understanding techniques,...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Senior Cyber Threat Intelligence Specialist, you will play a crucial role in safeguarding national interests against cyber threats. Your primary responsibility will be to analyze, interpret, and research cyber threats, providing actionable intelligence that includes adversary indicators, techniques, tactics, procedures, and emerging...


  • Arlington, Virginia, United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cyber Threat Analyst to join our team in Arlington, VA. The successful candidate will be responsible for leading onsite incident response and investigation, assessing cyber-attack severity, developing mitigation strategies, and aiding in service restoration for civilian government agencies and critical...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Position Overview:As a Cyber Threat Intelligence Analyst, you will play a crucial role in safeguarding national interests against cyber threats. Your primary responsibility will be to process, analyze, and investigate cyber threats, providing actionable intelligence that includes adversary indicators, tactics, techniques, and procedures, as well as trends...