Who we are
About Stripe
Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.
About the team
The Attacker Engineering team validates Stripe’s defenses and measures security controls by providing actionable attacker-derived products, datasets, and insights into real attacks. The team is distributed, working primarily across US time zones but will regularly coordinate with stakeholders in Europe and Asia.
What you’ll do
We are seeking a skilled and motivated cyber intelligence professional who will conduct comprehensive research and analysis of cyber threat intelligence data from diverse sources. As part of our team, you will provide valuable insights and recommendations to support informed decision-making and effective risk mitigation strategies. Your ability to communicate complex cyber threat intelligence findings to non-technical stakeholders is crucial in ensuring its understanding and application. Collaborating with internal teams and external partners, you will play a vital role in enhancing security and staying ahead of emerging cyber threats. Your dedication to continuous improvement and alignment with organizational goals will contribute to the overall effectiveness of our intelligence operations. Join us in our mission to safeguard our organization and stakeholders from evolving cyber risks.
Responsibilities
- Collaborate closely with relevant stakeholders, such as product teams, engineering teams, and business units, to understand their intelligence needs and requirements.
- Proactively identify and analyze potential cyber-related threats and risks to the organization by conducting comprehensive research and analysis using various intelligence sources and methodologies.
- Provide timely and actionable intelligence reports and briefings to key stakeholders, including executives, business leaders, and operational teams, supporting informed decision-making and risk mitigation strategies.
- Monitor and analyze threat intelligence feeds, open-source intelligence, social media platforms, trust groups, and other relevant sources to identify emerging cyber threats, attack trends, and potential threat actors.
- Conduct in-depth investigations and analyses of security incidents, data breaches, and cyber attacks to determine the nature, scope, and impact of the incidents and provide recommendations for response and remediation.
- Develop and maintain threat profiles and actor attribution information to enhance the organization's understanding of threat landscapes and potential adversaries.
- Collaborate with internal teams and external partners to share and exchange threat intelligence, improving collective defenses and response capabilities.
- Stay current with the latest trends, techniques, and tools in cyber threat intelligence and contribute to continuously improving intelligence practices and methodologies within the organization.
- Develop relationships with external intelligence providers, industry peers, and trusted communities to stay informed about emerging threats and share relevant intelligence.
- Participate in incident response activities, providing intelligence support to effectively detect, investigate, and respond to cyber incidents and contribute to post-incident analysis and lessons learned exercises.
Who you are
We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
Minimum requirements
- 5+ years of experience in cyber threat intelligence or a related area
- Bachelor's degree in a relevant field, such as Cybersecurity, Computer Science, or a related discipline
- In-depth knowledge and understanding of the cyber threat landscape, attack vectors, and emerging trends in the field of cybersecurity
- Demonstrated experience collecting, analyzing, and interpreting intelligence from various sources, including open-source intelligence, threat feeds, social media, and underground forums
- Proficiency in utilizing intelligence analysis tools and technologies to process, visualize, and present data in a meaningful and actionable manner
- Strong understanding of intelligence methodologies, frameworks, and best practices, with the ability to apply them effectively in a practical setting
Preferred qualifications
- Excellent written and verbal communication skills, with the ability to convey complex technical concepts to technical and non-technical stakeholders
- Proven ability to work collaboratively with cross-functional teams and stakeholders to identify intelligence requirements and provide timely and relevant intelligence support
- Familiarity with relevant industry standards and regulations about cyber threat intelligence and data privacy
- Continuous learning mindset with a desire to stay up-to-date with the latest threats, intelligence techniques, and tools in the cybersecurity field
This role is available either in an office or a remote location (35+ miles or 56+ km from a Stripe office).
Office-assigned Stripes spend at least 50% of the time in a given month in their local office or with users. This hits a balance between bringing people together for in-person collaboration and learning from each other, while supporting flexibility about how to do this in a way that makes sense for individuals and their teams.
A remote location is defined as being 35 miles (56 kilometers) or more from one of our offices. While you would be welcome to come into the office for team/business meetings, on-sites, meet-ups, and events, our expectation is you would regularly work from home rather than a Stripe office. Stripe does not cover the cost of relocating to a remote location. We encourage you to apply for roles that match the location where you currently live or plan to live.