Support active ransomware and cyber extortion engagements by managing threat actor communications, maintaining case documentation, and conducting threat intelligence research. Collaborate with senior analysts to translate threat observations into actionable case support, ensuring compliance with security protocols. Fully remote role requiring strong analytical, research, and communication skills in a high-pressure incident response environment.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cyber Threat Analyst based in United States.
As a Cyber Threat Analyst, you’ll support active ransomware and cyber extortion engagements in a specialized incident response environment.
You’ll help manage threat actor communications, maintain accurate case documentation, and track critical developments throughout engagements.
The role combines cyber incident response, threat intelligence research, analytical investigation, and operational coordination.
You’ll work alongside senior analysts and engagement leads to turn threat observations and communications into actionable case support.
Your research will help teams understand threat actors, campaigns, malware, tactics, techniques, and procedures relevant to active incidents.
Attention to detail, clear communication, and disciplined documentation will be essential when handling sensitive and time-critical information.
This is a fully remote opportunity offering exposure to complex cybersecurity incidents and opportunities for professional growth.
Accountabilities
- Support ransomware and cyber extortion engagements by assisting with written communications with threat actors under the direction of engagement leads.
- Draft, organize, and maintain communication logs, negotiation notes, timelines, demands, concessions, and other critical case records.
- Track threat actor responses, deadlines, proof-of-life requests, and other engagement developments to keep stakeholders informed.
- Coordinate professionally with internal teams and external partners to ensure communications are accurate, timely, and appropriately documented.
- Prepare concise case updates, summaries, handoff notes, technical documentation, and other materials for engagement leads and supporting teams.
- Maintain and contribute to negotiation templates, playbooks, procedures, and other operational resources.
- Research threat actor groups, campaigns, malware families, tools, tactics, techniques, and procedures relevant to active cyber extortion cases.
- Collect, assess, and summarize open-source and internal intelligence to provide context for active cases and support engagement strategy.
- Maintain actor profiles, intelligence notes, reference materials, and related artifacts within approved repositories and tracking systems.
- Identify opportunities to improve processes, consistency, responsiveness, documentation quality, and operational effectiveness.
- Comply with applicable corporate policies, procedures, security requirements, and business controls.
Interested in remote work opportunities in Development & Programming? Discover Development & Programming Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related discipline.
- At least 2 years of professional experience in cyber incident response, threat intelligence, investigations, customer communications, or a related analytical role.
- Strong foundational knowledge of cybersecurity concepts, cyber threats, incident response, and threat actor behavior.
- Excellent written and verbal communication skills, with the ability to communicate clearly and professionally in sensitive, high-pressure situations.
- Strong analytical and research abilities, including the capacity to gather, evaluate, synthesize, and communicate threat intelligence.
- Exceptional attention to detail when managing communications, indicators, timelines, technical information, and case records.
- Ability to produce concise technical reports, documentation, summaries, and handoff materials.
- Strong organizational and planning skills, with the ability to manage multiple case-related priorities and deadlines.
- Ability to work independently with limited supervision while collaborating effectively with senior analysts, engagement leads, internal stakeholders, and external partners.
- Familiarity with threat actor tactics, techniques, procedures, malware, cyber extortion, ransomware, or related areas is highly valuable.
- Advanced cybersecurity certifications such as CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, or CCE are considered a plus.
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
- Competitive salary range of $87,400–$131,000, with compensation determined by factors including geographic location, qualifications, experience, education, and skills.
- 6% 401(k) employer match.
- 20 days of PTO plus 2 floating days.
- Paid parental leave.
- Competitive employee benefits package.
- Strong learning and professional development culture.
- Opportunities for career growth and advancement within a specialized cybersecurity environment.
- Fully remote work opportunity within the United States.
- Opportunity to contribute to meaningful ransomware, cyber extortion, and threat intelligence engagements.
- Collaborative environment working alongside experienced cybersecurity and incident response professionals.
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Similar Jobs
Explore other opportunities that match your interests