远程工作雷达

威胁情报工程师

Threat Intelligence Engineer

开发工程全球可投
公司Anthropic
薪资未公开
工作地点Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间2026-01-21
数据来源Greenhouse
前往企业招聘页投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

关于 Anthropic

Anthropic 的使命是创造可靠、可解释且可引导的 AI 系统。我们希望 AI 对我们的用户以及整个社会都是安全且有益的。我们的团队是由一群快速成长的致力于研究、工程、政策专家和商业领袖组成的团队,共同打造有益的 AI 系统。

关于该职位

我们正在寻找一名威胁情报工程师加入我们的威胁情报团队。在此职位上,你将构建支持我们威胁发现能力的基础架构——整合外部数据源,开发用于自动化线索生成的检测系统,并创建内部工具以扩大调查人员的影响。

这是在一支小型、高影响力团队中的基础工程角色。你将把项目从概念验证推进到生产环境,与调查人员紧密合作以了解他们的需求,并帮助扩展可能成为多人协作功能的收集工作。

职责:

  • 构建自动化检测系统,利用多种信号识别滥用行为。
  • 将系统从想法推进到概念验证,再到生产级系统,同时建立适当的监控、文档和维护流程
  • 开发和维护 YARA 规则基础设施,包括用于编写、验证和测试规则的工具
  • 通过 MCP 服务器与外部威胁情报平台(如 VirusTotal、Censys、Urlscan)进行集成,以在调查过程中实现多源相关性分析
  • 构建数据管道,从 RSS 订阅、CTI 新闻来源和合作伙伴共享中获取情报,使用 Claude 提取 TTPs 并生成针对性的狩猎查询
  • 使用 DBT 基础框架开发行为分析能力,并创建可搜索的审计日志基础设施
  • 与调查人员建立反馈循环,优化检测系统并减少误报
  • 从外部来源抓取并标准化数据,为威胁检测和丰富流程提供支持

你可能适合这个职位,如果你:

  • 具有使用 Python 和 SQL 构建检测逻辑、数据管道和自动化的强大编程能力
  • 有使用数据管道编排工具(如 Airflow、DBT 或类似工具)的经验
  • 熟悉威胁情报概念,包括 IOC、YARA 规则和威胁相关技术
  • 有集成外部 API 和构建数据摄入系统的经验
  • 能够将调查人员的需求和工作流程转化为技术方案
查看英文原文

About Anthropic

Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the Role

We are looking for a Threat Intelligence Engineer to join our Threat Intelligence team. In this role, you will build the infrastructure that powers our threat discovery capabilities—integrating external data sources, developing detection systems for automated lead generation, and creating internal tooling that scales our investigators' impact.

This is a foundational engineering role on a small, high-impact team. You will take projects from proof-of-concept to production, work closely with investigators to understand their needs, and help scale what may become a multi-person collections function.

Responsibilities:

  • Build automated detection systems that use disparate signals to identify abusive behavior.
  • Take systems from idea to proof-of-concept to production-grade with appropriate monitoring, documentation, and maintenance processes
  • Develop and maintain YARA rule infrastructure, including tools for writing, validating, and testing rules against real data
  • Create integrations with external threat intelligence platforms (e.g. VirusTotal, Censys, Urlscan) via MCP servers to enable multi-source correlation during investigations
  • Build data pipelines that ingest intelligence from RSS feeds, CTI news sources, and partner sharing, using Claude to extract TTPs and generate targeted hunting queries
  • Develop behavioral analytics capabilities using DBT-based frameworks and create searchable audit logging infrastructure
  • Establish feedback loops with investigators to tune detection systems and reduce false positives
  • Scrape and normalize data from external sources to feed threat detection and enrichment workflows

You may be a good fit if you:

  • Have strong coding proficiency in Python and SQL for building detection logic, data pipelines, and automation
  • Have experience with data pipeline orchestration tools (Airflow, DBT, or similar)
  • Have familiarity with threat intelligence concepts including IOCs, YARA rules, and threat correlation techniques
  • Have experience integrating external APIs and building data ingestion systems
  • Can translate investigator needs and workflows into technical requirements
  • Are comfortable building v0 systems and iterating based on user feedback
  • Have strong communication skills for working closely with non-engineering stakeholders

Strong candidates may also have:

  • Experience with threat intelligence sharing frameworks (e.g. MISP, STIX/TAXII)
  • Background in cyber threat intelligence, security operations, or abuse detection
  • Experience building MCP servers or similar tool integrations for AI systems
  • Familiarity with web scraping and data extraction at scale
  • Experience with behavioral analytics or anomaly detection systems
  • Understanding of LLM capabilities and how to leverage them for automation
  • A Top Secret Clearance

Deadline to apply:
None. Applications will be reviewed on a rolling basis.
The annual compensation range for this role is listed below.

For sales roles, the range provided is the role’s On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.

Annual Salary:
$320,000—$405,000 USD

Logistics

Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience

Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience

Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position

Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.

Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.

We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed.  Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team.

Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit anthropic.com/careers directly for confirmed position openings.

How we're different

We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.

The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.

Come work with us!

Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process.

本页面信息整理自 Greenhouse,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

技术架构师

AnthropicRemote-Friendly (Travel-Required) | San Fr4 天前
开发工程市场运营全球可投

← 返回全部职位