远程工作雷达

安全工程师 - 威胁情报

Security Engineer - Threat Intel

开发工程全球可投
公司Anthropic
薪资未公开
工作地点New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC; San Francisco, CA | New York City, NY
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间2026-04-22
数据来源Greenhouse
前往企业招聘页投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

关于 Anthropic

Anthropic 的使命是创造可靠、可解释且可操控的 AI 系统。我们希望 AI 对我们的用户以及整个社会都是安全且有益的。我们的团队是一支快速发展的由坚定的研究人员、工程师、政策专家和商业领袖组成的团队,共同致力于构建有益的 AI 系统。

关于该职位:

Anthropic 处于 AI 开发的最前沿,这使我们成为全球国家支持者和高级犯罪分子最感兴趣的靶标之一。在我们的检测与响应团队中的威胁情报职能,旨在确保我们能够预见这些威胁。作为威胁情报工程师,你将是一名实践者,负责生成推动我们检测、狩猎和防御优先级的可操作情报。你将追踪最可能针对前沿 AI 实验室的对手,构建工具和流程,将原始指标转化为运营防御,并与检测工程师和事件响应人员并肩工作,确保情报真正改变结果。这是一个在小型高影响力团队中发挥建设者作用的职位——你将有广泛的自由度来塑造 Anthropic 中威胁情报的收集、分析和操作方式。

职责:

  • 研究、追踪并报告针对 AI 实验室、云基础设施和更广泛的科技行业的威胁行为者和活动——为安全工程相关方提供及时、可操作的情报
  • 构建和维护工具和自动化流程,以收集、丰富、关联并操作化漏洞指标到我们的检测和警报系统中
  • 在终端、云、身份和 SaaS 遥测数据上开展基于情报的威胁狩猎,并将发现转化为持久的检测手段
  • 对恶意软件、钓鱼基础设施和攻击者工具进行技术分析,提取指标、战术、技巧和程序(TTPs)以及归因信号
  • 与检测工程和事件响应团队合作,实时将情报转化为检测规则、狩猎假设和事件背景
  • 整理和优先处理来自商业数据源、开源、政府和可信同行关系的内部情报——确定对 Anthropic 威胁模型最重要的内容
  • 参与威胁模型和风险评估,为整个企业的安全架构和防御投资提供依据
  • 构建和维护外部情报共享机制
查看英文原文

About Anthropic

Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the Role:

Anthropic sits at the frontier of AI development, which makes us one of the most interesting targets in the world for nation-state and advanced criminal actors. The Threat Intelligence function within our Detection & Response team exists to make sure we see them coming. As a Threat Intelligence Engineer, you'll be a hands-on practitioner responsible for producing the actionable intelligence that drives our detections, hunts, and defensive priorities. You'll track the adversaries most likely to target a frontier AI lab, build the tooling and pipelines that turn raw indicators into operational defenses, and work shoulder-to-shoulder with detection engineers and incident responders to make sure intelligence actually changes outcomes. This is a builder's role on a small, high-leverage team — you'll have broad latitude to shape how threat intelligence is collected, analyzed, and operationalized at Anthropic.

Responsibilities:

  • Research, track, and report on threat actors and campaigns targeting AI labs, cloud infrastructure, and the broader technology sector — producing timely, actionable intelligence for Security Engineering stakeholders
  • Build and maintain tooling and automated pipelines to collect, enrich, correlate, and operationalize indicators of compromise into our detection and alerting stack
  • Develop and execute intelligence-driven threat hunts across endpoint, cloud, identity, and SaaS telemetry, and turn findings into durable detections
  • Perform technical analysis of malware, phishing infrastructure, and attacker tooling to extract indicators, TTPs, and attribution signals
  • Partner with Detection Engineering and Incident Response to translate intelligence into detection rules, hunting hypotheses, and incident context in near-real-time
  • Curate and triage inbound intelligence from commercial feeds, open source, government, and trusted peer relationships — prioritizing what matters for Anthropic's threat model
  • Contribute to threat models and risk assessments that inform security architecture and defensive investment across the enterprise
  • Build and maintain external intelligence-sharing relationships with peer companies, ISACs, and government partners

You may be a good fit if you:

  • Have 5+ years of hands-on experience in cyber threat intelligence, threat hunting, or intrusion analysis at an organization facing sophisticated adversaries
  • Have deep, demonstrable knowledge of specific nation-state or advanced criminal threat actors — their tooling, infrastructure patterns, tradecraft, and targeting
  • Are a strong engineer: you write production-quality Python (or similar), have built automation and data pipelines, and don't need to hand requirements to someone else to get tooling built
  • Are comfortable performing malware analysis, infrastructure analysis (passive DNS, certificate pivoting, netflow), and log analysis to develop and validate your own findings
  • Have experience authoring detection logic (YARA, Sigma, Snort/Suricata, or SIEM-native queries) and understand what makes a detection durable vs. brittle
  • Can write clearly and concisely — your intelligence products are read and acted on, not filed away
  • Have an existing network in the threat intelligence community and a track record of productive bidirectional sharing

Strong candidates may have:

  • Experience defending cloud-native and research-heavy environments (AWS/GCP, Kubernetes, ML infrastructure, developer tooling and supply chain)
  • Prior work operating in a threat intelligence role tracking sophisticated or state-sponsored adversaries, where your analysis directly informed detection, threat hunting, and incident response
  • Experience applying LLMs or other AI tooling to accelerate intelligence collection, enrichment, and analysis
  • Public research, conference talks, or open-source tooling contributions in the CTI space

Deadline to apply: None. Applications will be received on a rolling basis.
The annual compensation range for this role is listed below.

For sales roles, the range provided is the role’s On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.

Annual Salary:
$320,000—$405,000 USD

Logistics

Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience

Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience

Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position

Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.

Visa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.

We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed.  Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team.

Your safety matters to us. To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you're ever unsure about a communication, don't click any links—visit anthropic.com/careers directly for confirmed position openings.

How we're different

We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.

The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.

Come work with us!

Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process.

本页面信息整理自 Greenhouse,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

技术架构师

AnthropicRemote-Friendly (Travel-Required) | San Fr4 天前
开发工程市场运营全球可投

← 返回全部职位