Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Cyber Threat Analyst  image - Rise Careers
Job details

Cyber Threat Analyst

About Us 

Chainlink Labs is one of the primary contributing developers of Chainlink, the industry-standard oracle platform bringing the capital markets onchain and powering the majority of decentralized finance. The Chainlink stack provides the essential data, interoperability, compliance, and privacy standards needed to power advanced blockchain use cases for institutional tokenized assets, Decentralized Finance (DeFi), payments, stablecoins, and more. Many of the world’s largest financial services institutions have also adopted Chainlink’s standards and infrastructure, including Swift, Euroclear, Mastercard, Fidelity International, UBS, ANZ, Aave, GMX, Lido, and many others.

Chainlink Labs is a world-class team of over 600 developers, researchers, and capital markets experts, and has ranked among Fortune's Best Workplaces in Technology, Fortune's Best Medium Workplace, and the Top 100 Global Most Loved Workplaces. Learn more at chain.link or chainlinklabs.com.

The Cyber Threat Analyst is responsible for conducting cyber threat intelligence analysis with a strong technical emphasis on infrastructure pivoting, malware analysis, and detection engineering in alignment with Chainlink Labs’ vision and objectives. The Analyst will play a critical role in proactively identifying, analyzing, and mitigating sophisticated cyber threats, dissecting malware and adversary techniques, conducting technical threat research, and developing detection methodologies to enhance security posture.

Your Impact

  • Proactively track malicious infrastructure, hunt for new malware samples, and adversary tools to identify new adversary tooling, detection opportunities, and mitigation strategies.

  • Create precise detection rules (e.g., YARA, Sigma) and develop custom tools and scripts to identify malicious activity proactively.

  • Conduct deep-dive intelligence analysis and investigations related to suspicious activity and attempted attacks.

  • Serve as an SME for malware reverse engineering, with a focus on ARM binaries.

  • Maintain a working knowledge of adversarial tactics and techniques, and how they are being used to achieve current objectives.

  • Collaborate with and support the investigations of other Cybersecurity Operations and Information Security teams.

Requirements

  • At least two years of experience in cyber threat analysis or threat investigations.

  • Demonstrated a high-level understanding of recent cyber trends, campaigns, incidents, and threat actor groups.

  • Familiarity with Vertex Synapse and its Storm scripting language or experience with similar intelligence analysis tools.

  • Real-life experience in detection engineering, including using SIEMs and writing effective detection rules in YARA or Sigma.

  • Experience using technical data sources like file repositories, passive DNS, or internet service scans for threat research purposes.

  • Understanding of network protocols such as HTTP, DNS, TLS.

  • Prior experience with automated malware sandboxes to analyze malicious samples and identify detection opportunities. Proficiency with reverse engineering tools, such as Binary Ninja and Ghidra.

Preferred Requirements

  • In-depth understanding of threats targeting the blockchain ecosystem, especially in relation to their tools and tradecraft, and how web2 threats affect web3 systems.

  • Proven track record of building and maintaining logging, analysis, or enrichment pipelines, preferred languages include Python, Rust or Golang.

  • Excellent verbal and written communication skills with prior experience in presenting research findings to internal and external stakeholders.

  • Understanding of structured analytic techniques to help mitigate bias in analysis.

All roles with Chainlink Labs are global and remote-based. Unless otherwise stated, we ask that you try to overlap some working hours with Eastern Standard Time (EST).

We carefully review all applications and aim to provide a response to every candidate within two weeks after the job posting closes. The closing date is listed on the job advert, so we encourage you to take the time to thoughtfully prepare your application. We want to fully consider your experience and skills, and you will hear from us regarding the status of your application shortly after the closing date.

Commitment to Equal Opportunity

Chainlink Labs is an equal opportunity employer. All qualified applicants will receive equal consideration for employment in compliance with applicable laws, regulations, or ordinances. If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us via this form.

Global Data Privacy Notice for Job Candidates and Applicants

Information collected and processed as part of your Chainlink Labs Careers profile, and any job applications you choose to submit is subject to our Privacy Policy. By submitting your application, you are agreeing to our use and processing of your data as required.

Chainlink Labs Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Chainlink Labs DE&I Review
4.6 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of Chainlink Labs
Chainlink Labs CEO photo
Unknown name
Approve of CEO

Average salary estimate

$120000 / YEARLY (est.)
min
max
$90000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Posted 23 hours ago

DXC Technology seeks a Junior Insurance Software Analyst in Plano, TX to assist with insurance system migration and modernization projects, focusing on requirements, data conversion, and testing for policy administration systems like wmA.

C4 Plans is hiring a Tier I Help Desk Analyst to provide frontline, 24/7 technical support and incident triage for Fleet Marine Forces and DoD personnel at Camp Pendleton.

Photo of the Rise User

BECU seeks a seasoned cybersecurity GRC leader to drive enterprise governance and operationalize PCI-DSS compliance while advising stakeholders and strengthening the organization’s cyber risk posture.

Photo of the Rise User

Lead the enterprise architecture and operations for McKesson's global contact center and telephony platforms, driving CCaaS/UCaaS strategy, integrations, and reliability.

Photo of the Rise User
KIHOMAC Hybrid No location specified
Posted 3 hours ago

A defense-focused organization is hiring a Configuration Manager to audit artifacts, maintain as-built models and CMDB records, and support change management using Visio and Remedy while holding a DoD Secret clearance.

Fortune Brands Hybrid 1 Horizon Way, Deerfield, ILLINOIS
Posted 2 hours ago

Lead Fortune Brands' ERP and finance transformation initiatives as Senior Manager, IT Finance Transformation, driving Oracle Cloud/EBS R12 implementations, process redesign, and finance systems strategy.

Photo of the Rise User
Posted 21 hours ago

Support Fort Worth city staff as an IT Help Desk Technician providing phone and email troubleshooting, ticket management, and Active Directory administration in a hybrid, public-sector environment.

Photo of the Rise User

Peraton is hiring an Onboarding Account Management Analyst in San Antonio to lead ICAM/Zero Trust onboarding, manage identity lifecycles, and ensure secure, compliant access for applications and users.

Photo of the Rise User
Posted 12 hours ago

Experienced Salesforce Administrator needed to support global users, manage account data and hierarchies, and monitor integrations for a leading technology consulting firm in the media and advertising space.

Photo of the Rise User
Posted 14 hours ago

CATHEXIS is hiring a Database Administrator to maintain, secure, and optimize databases that support the VA MDE Audit program and ensure high data quality and regulatory compliance.

Photo of the Rise User
Peraton Hybrid Washington
Posted 9 hours ago

Experienced NOSC Lead sought to lead incident response and network operations teams supporting high-value DoD missions with TS/SCI-cleared cyber expertise.

Photo of the Rise User
Posted 13 hours ago

Lead architecture and technical delivery for an enterprise Salesforce platform, shaping solutions across Sales Cloud, CPQ, Billing, and integrations while mentoring teams and influencing roadmap decisions.

Photo of the Rise User
Posted 9 hours ago

Support mission-critical DHS operations as an on-site Customer Technical Specialist providing hands-on desktop, network, and infrastructure support in the Washington, DC area and at U.S. airports.

Through a fusion of principled academic research, together with an industry focus on user needs, Chainlink Labs’ mission is to empower the next generation of smart contracts. We believe that oracle-powered, universally connected contracts will bec...

4 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
October 3, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!