Halcyon Logo

Halcyon

Senior Threat Analyst

Posted 4 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in US
175K-200K Annually
Expert/Leader
Easy Apply
Remote
Hiring Remotely in US
175K-200K Annually
Expert/Leader
The Senior Threat Analyst monitors security events, conducts malware analysis, reverses engineering, and collaborates with teams to enhance threat detection and response capabilities.
The summary above was generated by AI

What we do:
Halcyon is the industry’s first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware.

Who we are:
Halcyon was formed in 2021 by a team of cyber industry veterans after battling the scourge of ransomware (and advanced threats) for years at some of the largest global security vendors. Comprised of leaders from Cylance (now Blackberry), Accuvant (now Optiv), Fireye and ISS X-Force (now IBM), Halcyon is focused on building products and solutions for mid-market and enterprise customers.

As a remote-native, completely distributed global team, we recognize great talent can exist anywhere. We invite you to apply to a job you’re interested in and we'll work a plan to meet your needs.

The Role: 

Halcyon’s mission is to empower our customers with a solution that defeats ransomware, makes "ransomware history", and ensures operational resilience. To support this mission, we are seeking a highly skilled Senior Threat Analyst with deep technical expertise in malware reversing, detection engineering, and security operations. This role is critical to advancing our detection, prevention, and response capabilities, ensuring broad coverage of emerging threats, eliminating false positives, and effectively responding to these threats. The right candidate will ensure that our customers are kept safe from the latest ransomware without impacting legitimate business operations.
 
Responsibilities

  • Monitor and analyze security events to detect, investigate, contain, and escalate potential threats. Correlate data across multiple sources to identify malicious activity and patterns.
  • Triage and assess events to determine impact, contain incidents, and drive threat remediation in a 24/7 security operations environment.
  • Willingness to accommodate changing shift schedules when necessary to support our 24/7/365 team.
  • Reverse engineer Windows PE files and other malicious binaries using static and dynamic techniques to uncover capabilities, persistence methods, and indicators of compromise (IOCs).
  • Design, develop, and maintain internal tools to support threat triage, correlation, and research (log parsers, incident tracking systems, custom sandboxes, etc.).
  • Conduct malware analysis in disassemblers, debuggers, and sandbox environments to understand payloads, infection chains, and evasion techniques.
  • Research and track evolving ransomware techniques, publishing findings to improve detection logic and response processes.
  • Collaborate closely with Customers, Incident Response, Engineering and Customer Success to improve product resilience and ensure smooth customer communication during security events.

Skills and Qualifications 

  • 10+ years of combined experience in reverse engineering, detection engineering, threat research, incident response, or security operations related roles.
  • High proficiency in malware reversing, with demonstrated expertise in analyzing Windows PE files, unpacking obfuscated samples, and extracting behavioral and static indicators.
  • Experience with Artificial Intelligence / Machine Learning methodologies and their practical use cases to enhance cybersecurity strategies and operational efficiency.
  • Hands-on experience with Yara, Python, and scripting languages (PowerShell, Bash/Shell, Batch).
  • Advanced knowledge of static and dynamic analysis using tools such as IDA Pro, Ghidra, x64dbg, WinDbg, Cuckoo or similar sandboxes.
  • Familiarity with EDR evasion techniques, persistence mechanisms, and exploitation methods.
  • Cloud Service Provider experience preferred (cloud log analysis, security, threat hunting in cloud environments).
  • Proven track record in cyber threat research, malware analysis, or security operations.
  • Strong collaboration and communication skills, with the ability to explain technical findings to both technical and non-technical stakeholders.

Benefits: 

Halcyon offers the following benefits to eligible employees:

  • Comprehensive healthcare (medical, dental, and vision) with premiums paid in full for employees and dependents.
  • 401k plan with a generous employer contribution.
  • Short and long-term disability coverage, basic life and AD&D insurance plans.
  • Medical and dependent care FSA options.
  • Flexible PTO policy.
  • Parental leave.
  • Generous equity offering. 

The Company reserves the right to modify or change these benefits programs at any time, with or without notice. 

Base Salary Range: $175,000 - $200,000, 10% bonus, and equity.

In accordance with applicable state and federal laws, the range provided is Halcyon’s reasonable estimate of the base compensation for this role. The actual amount may differ based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. Base pay is one part of the total package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and equity in the Company.

We understand it takes a diverse team of highly intelligent, passionate, curious, and creative people to develop the exceptional product we are building. Our dynamic team has incredible perspectives to share, just as we know you do, and we take great pride in being an equal opportunity employer.

Top Skills

Artificial Intelligence
Bash
Cuckoo
Ghidra
Ida Pro
Machine Learning
Malware Reversing
Powershell
Python
Windbg
X64Dbg

Similar Jobs

4 Days Ago
Remote or Hybrid
11 Locations
100K-155K Annually
Senior level
100K-155K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The role involves executing threat hunting operations, delivering high-impact intelligence briefings, and building partnerships with customers to enhance security against advanced threats.
Top Skills: CloudElastic StackHumioLinuxmacOSMitre Att&CkSplunkWindows
8 Days Ago
Remote or Hybrid
United States
Mid level
Mid level
Mobile • Security • Software • Cybersecurity
The Senior QA Analyst will design and execute testing strategies for AI-driven features, ensuring model accuracy and integration quality, while collaborating with engineering teams.
Top Skills: AWSHugging FaceJupyter NotebooksPytestPython
15 Days Ago
Remote
US
71K-124K Annually
Senior level
71K-124K Annually
Senior level
Insurance
The Senior Threat Intelligence Analyst will monitor, collect, analyze, and report threat-related data, partnering with internal teams to enhance security measures and reporting.
Top Skills: Stix,Taxii,Qualys,Grc Tools,Archer,Threatconnect

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account