Senior/Staff Security Engineer, Threat Intelligence at Anthropic

Zürich, CH

on-site · full-time · Visa sponsorship

Apply for this role at Anthropic

Responsibilities:
- Research, track, and report on threat actors and campaigns targeting AI labs, cloud, and ML infrastructure; produce timely, actionable intelligence.
- Build and operate tooling and automated pipelines to collect, enrich, correlate, and push indicators into detection/alerting systems.
- Lead intelligence-driven hunts across endpoint, cloud, identity, and SaaS telemetry; convert findings into durable detections.
- Perform technical analysis of malware, phishing, and attacker tooling to extract indicators, TTPs, and attribution signals.
- Partner with Detection Engineering and Incident Response to translate intelligence into detection rules, context, and response playbooks.
- Curate inbound feeds and maintain external sharing relationships (peers, ISACs, government) and contribute to enterprise threat models.

Requirements:
- Hands-on experience in CTI, threat hunting, or intrusion analysis against sophisticated adversaries (nation-state/advanced criminal).
- Deep knowledge of specific threat actor tradecraft, tooling, infrastructure patterns, and targeting.
- Strong engineering ability: production-quality Python or similar, experience building automation and data pipelines.
- Experience authoring detection logic (YARA, Sigma, IDS rules) and operationalizing indicators in SIEMs or detection platforms.
- Background in malware/phishing analysis, cloud-native telemetry, and working with detection/IR teams; excellent written and verbal communication.