{"schemaVersion":"jobsearcher.job.v1","id":"feb4e6aa084443a3d7bdf2fd","url":"https://jobsearcher.com/jobs/feb4e6aa084443a3d7bdf2fd","canonicalUrl":"https://jobsearcher.com/jobs/feb4e6aa084443a3d7bdf2fd","title":"Threat Researcher","description":"About GreyNoise\n\nGreyNoise Intelligence is a mission driven security startup focused on helping organizations understand and mitigate risks from Internet scanning and exploitation. GreyNoise provides real-time, verifiable intelligence on all actors scanning the Internet and how some of them are attempting to exploit vulnerabilities on assets connected to corporate networks. The intelligence is highly trusted because it's generated from a global fleet of thousands of purpose built sensors observing the Internet. Advanced data science techniques and AI are used to process millions of observed events into real-time intelligence for customers.\n\nThe GreyNoise Global Observation Grid observes and analyzes unique threat data at-scale that no one else can. GreyNoise provides the most actionable threat intelligence against perimeter threats, so that no attack works twice.\n\nAll US based positions are fully remote within the US, with optional office attendance at our DC area headquarters, unless otherwise specified. Applicants must have US work authorization.\n\nPlease see the specific job description for all international position locations.\n\nThe Role\n\nGreyNoise is hiring a Threat Researcher who will develop and exploit first, second, and third-party access and sources to produce cyber threat intelligence that practitioners will use to detect, disrupt, and impose cost on adversaries.\n\nResponsibilities:\nHypothesis and lead driven hunting through existing first-party data and telemetry to identify, analyze, and expose new and novel malicious cyber activity and campaigns\nCluster, track, attribute, research, and disrupt malicious cyber threats\nDevelop and integrate new intelligence information, data sources, tools, systems, and tradecraft to produce a more comprehensive threat picture\nProduce and disseminate actionable intelligence to customers and the public\n\nRequired Skills\nDeep understanding of computer networking fundamentals and protocols\nDeep technical ability to hunt through network traffic (full PCAP) at the macro and packet level\nDeep technical skills with offensive tooling, tradecraft, and exploitation methodologies against network edge devices\nExperience in open and commercial source intelligence research (public blogs, commercial data sets, etc)\nExperience with hardware and embedded systems\nExperience with query languages (such as SQL)\nExperience producing and tuning detection rules (such as Suricata, YARA, etc)\nExperience with binary analysis and reverse engineering\nExperience with cyber threat intelligence frameworks and analytical tradecraft\nExperience tracking and analyzing analyzing threats using graph-based analysis tools (e.g., Synapse)\nExperience using AI (prompt engineering, harness engineering, etc)\nExperience presenting at relevant security and intelligence community conferences\n\nA Few of our GreyNoise Labs Principles\nHonesty\nPut your best understanding of the truth first in all that you do.\nDecency\nTreat yourself and others with respect.\nOpinions\nFrame opinions using data or experience; they are still opinions.\nComputers\nComputers are cool, but that doesn't mean you won't hate them.\n\nBenefits\n\n Equity in a high-growth, Series-A startup\n\n‍⚕️ 100% covered health, dental, vision, and life plans for all employees\n\n6️⃣ Competitive 401k employer match of 6%, which is special for a startup. This will be 100% matched and vested from day 1\n\n Flexible paid time off. To encourage time off from work and ensure overall employee health and wellness, GreyNoise strongly recommends each employee to take at least 120 hours of PTO (3 weeks) annually, including at least five consecutive business days\n\n Remote-first culture. While we are headquartered in the Washington DC area, we have a distributed workforce - with the majority of our team working remotely from across the country\n\n Equipment budget. Every new employee gets an Apple Mac laptop and a $500 stipend for any equipment accessories.\n\n Paid family leave for all employees. We offer 4 months of paid leave (birth or adoption), plus 2 months of optional unpaid leave, so new parents have time to adjust to the new life (and work) schedule\n\n Learning & development budget. All employees receive an annual $1,500 towards professional development related to their job function. The stipend can be applied to tuition, books, conferences, and more\n\n Company offsites and monthly local hangouts to encourage team bonding\n\nGreyNoise Culture\nThe hallmark of any great company is a palpable and viscous culture. The most important pillars of our culture are:\n\nBe transparent, honest, and objective. This is what it means to be \"clinical\"\nEmpathize with customers, partners, and each other\nLearn from mistakes and share the knowledge\nThe way feedback is delivered to one another matters as much as the feedback itself\nGood work-life balance is the key to sustained productivity\nThe measure of a team member's effectiveness is how well the rest of the team operates in their unexpected absence\nNo such thing as a million dollar idea, only million dollar execution\nOut-innovate our previous selves\nCheck out our (work-in-progress) longform culture document.\n\nExplainability\n\nAny security product that is a \"black box\" that asks you to blindly trust it should raise red flags - we believe the same is true of your place of work. We obviously think GreyNoise is doing something unique, but don't take our word for it - ask any of our 150+ enterprise customers, investors, thousands of happy users, or dozens of journalists who have cited GreyNoise over the past few years.\n\nWhy You Should Work at GreyNoise\nYou enjoy identifying and solving hard problems\nYou are comfortable taking an idea from concept to customer\nYou are open to both explaining your stance and questioning others in a clinical, open-minded, and respectful manner\nYou want to directly impact users\nYou want to grow beyond your current skill set\n\nApply for the job\n\nDo you want to join our team? Then we'd love to hear about you!","company":"Greynoise Intelligence","rawCompany":"greynoise intelligence","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-08-22T11:30:32.099Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.04","title":"Penetration Testers","slug":"penetration-testers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541690","title":"Other Scientific and Technical Consulting Services","slug":"other-scientific-and-technical-consulting-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Threat Researcher","description":"About GreyNoise\n\nGreyNoise Intelligence is a mission driven security startup focused on helping organizations understand and mitigate risks from Internet scanning and exploitation. GreyNoise provides real-time, verifiable intelligence on all actors scanning the Internet and how some of them are attempting to exploit vulnerabilities on assets connected to corporate networks. The intelligence is highly trusted because it's generated from a global fleet of thousands of purpose built sensors observing the Internet. Advanced data science techniques and AI are used to process millions of observed events into real-time intelligence for customers.\n\nThe GreyNoise Global Observation Grid observes and analyzes unique threat data at-scale that no one else can. GreyNoise provides the most actionable threat intelligence against perimeter threats, so that no attack works twice.\n\nAll US based positions are fully remote within the US, with optional office attendance at our DC area headquarters, unless otherwise specified. Applicants must have US work authorization.\n\nPlease see the specific job description for all international position locations.\n\nThe Role\n\nGreyNoise is hiring a Threat Researcher who will develop and exploit first, second, and third-party access and sources to produce cyber threat intelligence that practitioners will use to detect, disrupt, and impose cost on adversaries.\n\nResponsibilities:\nHypothesis and lead driven hunting through existing first-party data and telemetry to identify, analyze, and expose new and novel malicious cyber activity and campaigns\nCluster, track, attribute, research, and disrupt malicious cyber threats\nDevelop and integrate new intelligence information, data sources, tools, systems, and tradecraft to produce a more comprehensive threat picture\nProduce and disseminate actionable intelligence to customers and the public\n\nRequired Skills\nDeep understanding of computer networking fundamentals and protocols\nDeep technical ability to hunt through network traffic (full PCAP) at the macro and packet level\nDeep technical skills with offensive tooling, tradecraft, and exploitation methodologies against network edge devices\nExperience in open and commercial source intelligence research (public blogs, commercial data sets, etc)\nExperience with hardware and embedded systems\nExperience with query languages (such as SQL)\nExperience producing and tuning detection rules (such as Suricata, YARA, etc)\nExperience with binary analysis and reverse engineering\nExperience with cyber threat intelligence frameworks and analytical tradecraft\nExperience tracking and analyzing analyzing threats using graph-based analysis tools (e.g., Synapse)\nExperience using AI (prompt engineering, harness engineering, etc)\nExperience presenting at relevant security and intelligence community conferences\n\nA Few of our GreyNoise Labs Principles\nHonesty\nPut your best understanding of the truth first in all that you do.\nDecency\nTreat yourself and others with respect.\nOpinions\nFrame opinions using data or experience; they are still opinions.\nComputers\nComputers are cool, but that doesn't mean you won't hate them.\n\nBenefits\n\n Equity in a high-growth, Series-A startup\n\n‍⚕️ 100% covered health, dental, vision, and life plans for all employees\n\n6️⃣ Competitive 401k employer match of 6%, which is special for a startup. This will be 100% matched and vested from day 1\n\n Flexible paid time off. To encourage time off from work and ensure overall employee health and wellness, GreyNoise strongly recommends each employee to take at least 120 hours of PTO (3 weeks) annually, including at least five consecutive business days\n\n Remote-first culture. While we are headquartered in the Washington DC area, we have a distributed workforce - with the majority of our team working remotely from across the country\n\n Equipment budget. Every new employee gets an Apple Mac laptop and a $500 stipend for any equipment accessories.\n\n Paid family leave for all employees. We offer 4 months of paid leave (birth or adoption), plus 2 months of optional unpaid leave, so new parents have time to adjust to the new life (and work) schedule\n\n Learning & development budget. All employees receive an annual $1,500 towards professional development related to their job function. The stipend can be applied to tuition, books, conferences, and more\n\n Company offsites and monthly local hangouts to encourage team bonding\n\nGreyNoise Culture\nThe hallmark of any great company is a palpable and viscous culture. The most important pillars of our culture are:\n\nBe transparent, honest, and objective. This is what it means to be \"clinical\"\nEmpathize with customers, partners, and each other\nLearn from mistakes and share the knowledge\nThe way feedback is delivered to one another matters as much as the feedback itself\nGood work-life balance is the key to sustained productivity\nThe measure of a team member's effectiveness is how well the rest of the team operates in their unexpected absence\nNo such thing as a million dollar idea, only million dollar execution\nOut-innovate our previous selves\nCheck out our (work-in-progress) longform culture document.\n\nExplainability\n\nAny security product that is a \"black box\" that asks you to blindly trust it should raise red flags - we believe the same is true of your place of work. We obviously think GreyNoise is doing something unique, but don't take our word for it - ask any of our 150+ enterprise customers, investors, thousands of happy users, or dozens of journalists who have cited GreyNoise over the past few years.\n\nWhy You Should Work at GreyNoise\nYou enjoy identifying and solving hard problems\nYou are comfortable taking an idea from concept to customer\nYou are open to both explaining your stance and questioning others in a clinical, open-minded, and respectful manner\nYou want to directly impact users\nYou want to grow beyond your current skill set\n\nApply for the job\n\nDo you want to join our team? Then we'd love to hear about you!","datePosted":"2026-08-22T11:30:32.099Z","dateModified":"2026-08-22T11:30:32.099Z","hiringOrganization":{"@type":"Organization","name":"Greynoise Intelligence","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"feb4e6aa084443a3d7bdf2fd"},"url":"https://jobsearcher.com/jobs/feb4e6aa084443a3d7bdf2fd"}}