Security Engineer - Threat Intel
WFA Digital Insight
The demand for skilled security engineers has surged, with a 25% increase in 2025 alone. In this role at Anthropic, you'll be at the forefront of protecting AI systems from sophisticated threats. With the rise of nation-state and advanced criminal actors, your expertise in threat intelligence will be crucial. As a remote worker, you'll need to be highly self-motivated and experienced in cyber threat intelligence, threat hunting, or intrusion analysis. Before applying, consider your ability to work independently and collaborate with cross-functional teams to drive security outcomes.
Job Description
About the Role
As a Security Engineer - Threat Intel at Anthropic, you will play a critical role in protecting the company's AI systems from sophisticated threats. Your primary focus will be on producing actionable intelligence that drives detections, hunts, and defensive priorities. You'll track adversaries, build tooling and pipelines, and work closely with detection engineers and incident responders to ensure intelligence informs security outcomes.The Threat Intelligence function within the Detection & Response team is essential to Anthropic's security posture. As a Threat Intelligence Engineer, you'll be responsible for researching, tracking, and reporting on threat actors and campaigns targeting AI labs, cloud infrastructure, and the broader technology sector. Your findings will directly impact the company's security architecture and defensive investment.
Anthropic is a quickly growing company with a strong focus on creating reliable, interpretable, and steerable AI systems. The security team is a high-leverage team, and as a Threat Intelligence Engineer, you'll have broad latitude to shape how threat intelligence is collected, analyzed, and operationalized.
What You Will Do
- Research, track, and report on threat actors and campaigns targeting AI labs, cloud infrastructure, and the broader technology sector
- Build and maintain tooling and automated pipelines to collect, enrich, correlate, and operationalize indicators of compromise
- Develop and execute intelligence-driven threat hunts across endpoint, cloud, identity, and SaaS telemetry
- Perform technical analysis of malware, phishing infrastructure, and attacker tooling to extract indicators, TTPs, and attribution signals
- Partner with Detection Engineering and Incident Response to translate intelligence into detection rules, hunting hypotheses, and incident context
- Curate and triage inbound intelligence from commercial feeds, open source, government, and trusted peer relationships
- Contribute to threat models and risk assessments that inform security architecture and defensive investment
- Build and maintain external intelligence-sharing relationships with peer companies, ISACs, and government partners
- Collaborate with cross-functional teams to drive security outcomes
- Stay up-to-date with the latest threat intelligence and security trends
What We Are Looking For
- 5+ years of hands-on experience in cyber threat intelligence, threat hunting, or intrusion analysis
- Deep, demonstrable knowledge of specific nation-state or advanced criminal threat actors
- Strong engineering skills, including Python programming and experience building automation and data pipelines
- Ability to perform malware analysis, infrastructure analysis, and log analysis
- Experience authoring detection logic and understanding what makes a detection durable vs. brittle
- Strong writing and communication skills, with the ability to produce clear and concise intelligence products
- Existing network in the threat intelligence community and a track record of productive bidirectional sharing
- Ability to work independently and collaborate with cross-functional teams
Nice to Have
- Experience with cloud security and infrastructure
- Knowledge of AI and machine learning concepts
- Familiarity with security frameworks and compliance regulations
- Experience with threat intelligence platforms and tools
Benefits and Perks
- Competitive salary and equity package
- Comprehensive health, dental, and vision insurance
- Generous PTO and paid holidays
- Remote work stipend and flexible working hours
- Opportunities for professional growth and development
- Collaborative and dynamic work environment
- Access to cutting-edge technology and tools
- Recognition and reward for outstanding performance
How to Stand Out
- Tip: Highlight your experience with threat intelligence platforms and tools, and be prepared to provide examples of your work.
- To stand out, showcase your ability to analyze complex threat data and communicate insights effectively to both technical and non-technical stakeholders.
- Familiarize yourself with Anthropic's approach to AI security and be prepared to discuss how your skills and experience align with the company's mission.
- Build a strong portfolio that demonstrates your expertise in threat intelligence, including any relevant certifications or training.
- Be prepared to negotiate your salary based on your experience and qualifications, and don't be afraid to ask about benefits and perks.
- Red flag: If the company is unwilling to provide clear information about the role, team, or expectations, it may be a sign of a poorly organized or unsupportive work environment.
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.