Lead Cyber Threat Intelligence Engineer

2 days ago


Arlington, Virginia, United States CoStar Group Full time

Lead Cyber Threat Intelligence Engineer

Job Description

Overview

CoStar Group (NASDAQ: CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, CoStar Group is on a mission to digitize the world's real estate, empowering all people to discover properties, insights and connections that improve their businesses and lives.

We have been living and breathing the world of real estate information and online marketplaces for over 35 years, giving us the perspective to create truly unique and valuable offerings to our customers. We've continually refined, transformed and perfected our approach to our business, creating a language that has become standard in our industry, for our customers, and even our competitors. We continue that effort today and are always working to improve and drive innovation. This is how we deliver for our customers, our employees, and investors. By equipping the brightest minds with the best resources available, we provide an invaluable edge in real estate.

As the Cyber Threat Intelligence Lead Engineer, you will shape and mature our CTI capabilities to elevate our global Threat Management team's capabilities. This team is responsible for detection engineering, alert triage, and incident response with an emphasis on automation. This is a hands-on, strategic, and technical leadership role. You will have the opportunity to influence security strategy, design intelligence-driven processes, and mentor others while driving your own career path in a dynamic environment. We are looking for an innovative and self-driven individual to own responsibility for the team's threat intelligence maturation and will navigate our threat capabilities through the next major chapters of CoStar's global growth.

This position can be located in either Arlington, VA or Richmond, VA and is in office Monday -Thursday and work from home on Friday.

Responsibilities

  • Define, execute and lead the CTI strategy, aligning intelligence outputs with organizational risk priorities and security operations.

  • Transform raw threat data into actionable intelligence for SOC, Detection Engineering, Incident Response, Vulnerability Management, and non-security stakeholders.

  • Design and implement a scalable CTI platform, integrations, and automation workflows to enhance intelligence collection, enrichment, and processing.

  • Conduct detailed research on threat actors, campaigns, malware, and TTPs using frameworks such as MITRE ATT&CK to identify risk and threats specific to the business.

  • Partner and collaborate with cross-functional teams to embed intelligence into all aspects of security engineering, risk assessments, and business technology/architecture decision making processes.

  • Train and guide junior colleagues on intelligence production, analysis techniques, and operational applications.

  • Deliver regular reports and communications for disseminating CTI to drive both security operations.

Basic Qualifications

  • Bachelor's Degree required from an accredited, not for profit, in person, university or college.

  • A track record of commitment to prior employers

  • 10+ years in cybersecurity with a minimum of 7 focused on CTI

  • Proven leadership and communication skills with the ability to influence stakeholders across the business

  • Deep understanding of cybersecurity threats, attack vectors and trends

  • Proficiency in at least one scripting language or strong capabilities in a low-code automation solutions

  • Ability to produce detailed technical documentation

Preferred Qualifications and Skills

  • Experience working in a culturally diverse team, spanning multiple time zones within a global enterprise with multiple verticals

  • Experience building and maturing CTI programs from the ground up with a passion for mentoring and growing junior staff

  • Significant experience in incident response and detection engineering, i.e. direct experience applying CTI in operations

What's in it for You

When you join CoStar Group, you'll experience a collaborative and innovative culture working alongside the best and brightest to empower our people and customers to succeed.

We offer you generous compensation and performance-based incentives. CoStar Group also invests in your professional and academic growth with internal training, and tuition reimbursement.

Our benefits package includes (but is not limited to):

  • Comprehensive healthcare coverage: Medical / Vision / Dental / Prescription Drug

  • Life, legal, and supplementary insurance

  • Virtual and in person mental health counseling services for individuals and family

  • Commuter and parking benefits

  • 401(K) retirement plan with matching contributions

  • Employee stock purchase plan

  • Paid time off

  • Tuition reimbursement

  • On-site fitness center and/or reimbursed fitness center membership costs (location dependent), with yoga studio, Pelotons, personal training, group exercise classes

  • Access to CoStar Group's Diversity, Equity, & Inclusion Employee Resource Groups

  • Complimentary gourmet coffee, tea, hot chocolate, fresh fruit, and other healthy snacks

We welcome all qualified candidates who are currently eligible to work full-time in the United States to apply. However, please note that CoStar Group is not able to provide visa sponsorship for this position.

LI-AR

CoStar Group is an Equal Employment Opportunity Employer; we maintain a drug-free workplace and perform pre-employment substance abuse testing



  • Arlington, Virginia, United States Nightwing Full time $104,000 - $156,000 per year

    Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...


  • Arlington, Virginia, United States Nightwing Full time

    Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...


  • Arlington, Virginia, United States Gridiron IT Full time

    Cyber Threat Intelligence AnalystLocation: Arlington, VAWork Type:OnsiteRemote Work:NOJob DescriptionGridiron IT is supporting a customer by delivering intelligence support to customer through proactively identifying, analyzing, and responding to cyber threats to inform the customer's vulnerability management (VM) efforts. In support of the customer's...


  • Arlington, Virginia, United States Peraton Full time

    About PeratonPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...


  • Arlington, Virginia, United States Erias Ventures Full time

    Erias Ventures was founded to serve its customers with an entrepreneurial mindset. We value creative problem-solving, open communication, and empowering our employees to make decisions and put forth new ideas.We are seeking engineers who wish to grow their careers and want to become part of a strong, entrepreneurial-minded, and technical company focused...


  • Arlington, Virginia, United States Maximus Full time

    RequirementsDescription & RequirementsMaximus is looking for a Cyber Threat Analyst who can provide technical and analytical insights into information related to cyber incidents, vulnerabilities, and threat actor activity. They will also support daily operations management, communication with partners, and other administrative or program management duties as...


  • Arlington, Virginia, United States AGR, LLC Full time $120,000 - $180,000 per year

    We are currently seeking aSr. Cyber Systems Engineer (Vulnerability Assessment)to become part of the Department of State (DOS) Diplomatic Security Cyber Mission (DSCM) program.Location:Rosslyn, VA; This position requires 5-days per week on-site.Program OverviewThe DSCM program encompasses cyber security, data analytics, engineering, technical, managerial,...

  • Cyber Engineer

    2 weeks ago


    Arlington, Virginia, United States Space Systems Integration Full time $150,000 - $200,000 per year

    Space Systems Integration (SSI) is a fast-growing engineering company that provides aerospace solutions to a variety of government and commercial customers.  Our employees are forward-thinking, self-directed individuals who are committed to solving our customers' technical challenges.SSI is seeking a Cyber Engineer for a position located in Arlington, VA....


  • Arlington, Virginia, United States BCMC Full time

    BCMC provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for...


  • Arlington, Virginia, United States Booz Allen Hamilton Full time

    Cyber Data ScientistThe Opportunity:As an analytics professional, you're excited at the prospect of unlocking the secrets held by a data set, and you're fascinated by the possibilities presented by IoT, machine learning, and artificial intelligence. If you care about moving a mission forward as much as advancing the field of data science, this is the...