2

Freelance Remote Threat Intelligence Jobs (NOW HIRING)

Senior Cyber Threat Analyst

$99K - $128K/yr

They utilize advanced threat intelligence sources, security tools, and techniques to detect and ... Remote work requires a high level of trust in our employees, and we strictly adhere to the details ...

Senior Cyber Threat Analyst

$102K - $132K/yr

They utilize advanced threat intelligence sources, security tools, and techniques to detect and ... Remote work requires a high level of trust in our employees, and we strictly adhere to the details ...

Cybersecurity Threat Hunter - REMOTE

Houston, TX · On-site +1

$106K - $143K/yr

The work spans researching breaking threat intelligence, hands-on analysis, detection engineering ... remote friendly work environment, as well as training opportunities to expand your skill set (to ...

Threat Hunt Analyst

Lakewood, CO · On-site +1

$99K - $225K/yr

Remote Work: No Job Number: R0238495 Location: Lakewood,CO,US Share job via: Share Threat Hunt ... Working at the intersection of cyber threat intelligence, detection engineering, and operational ...

Movies Author

$21.75 - $28/hr

**This is a paid freelance, remote position** Collider is the #1 entertainment website and publishes ... Intelligence.

This is a remote position based in the United States, with occasional travel for conferences, team ... Published research in threat intelligence or cybersecurity (blog posts, whitepapers, conference ...

Showing results 21-40

Freelance Remote Threat Intelligence information

See salary details

$9

$22

$68

How much do freelance remote threat intelligence jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for freelance remote threat intelligence in the United States is $22.97, according to ZipRecruiter salary data. Most workers in this role earn between $18.75 and $18.75 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a freelance remote threat intelligence analyst, and why are they important?

To thrive as a Freelance Remote Threat Intelligence Analyst, you need a strong background in cybersecurity, threat analysis, and risk assessment, often supported by relevant degrees or industry certifications like CISSP or CompTIA Security+. Familiarity with threat intelligence platforms, SIEM tools, and open-source intelligence (OSINT) frameworks is typically required. Strong analytical thinking, attention to detail, and effective written communication set successful analysts apart in this role. These skills are vital for identifying emerging threats, communicating findings clearly to stakeholders, and supporting proactive defense strategies in a rapidly evolving security landscape.

What is a freelance remote threat intelligence specialist?

A Freelance Remote Threat Intelligence specialist is a cybersecurity professional who works independently, often from a remote location, to monitor, analyze, and report on potential threats to an organization’s digital assets. Their main role involves gathering information on current and emerging cyber threats, assessing risks, and providing actionable intelligence to help companies prevent or respond to cyberattacks. Unlike full-time employees, freelancers typically work for multiple clients and may offer specialized expertise on a project basis.

How does a freelance remote threat intelligence analyst typically collaborate with clients and other security teams?

As a freelance remote threat intelligence analyst, you will often collaborate with clients and their internal security teams through virtual meetings, secure communication platforms, and shared documentation. Clear communication and timely reporting are critical, as you'll need to regularly update stakeholders on emerging threats, indicators of compromise, and actionable recommendations. Building strong client relationships remotely requires being proactive, responsive, and adaptable to each organization's unique risk environment and protocols. Collaboration may also involve participating in incident response calls or contributing to cross-functional security projects alongside other remote professionals.
More about Freelance Remote Threat Intelligence jobs
What cities are hiring for Freelance Remote Threat Intelligence jobs? Cities with the most Freelance Remote Threat Intelligence job openings:
What are the most commonly searched types of Remote Threat Intelligence jobs? The most popular types of Remote Threat Intelligence jobs are:
What states have the most Freelance Remote Threat Intelligence jobs? States with the most job openings for Freelance Remote Threat Intelligence jobs include:
What job categories do people searching Freelance Remote Threat Intelligence jobs look for? The top searched job categories for Freelance Remote Threat Intelligence jobs are:
Infographic showing various Freelance Remote Threat Intelligence job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 9% Part Time, and 4% Contract. Highlights an 85% Physical, 4% Hybrid, and 11% Remote job distribution, with an average salary of $47,772 per year, or $23 per hour.

Sr. Principal Threat Intelligence Engineer- Remote or Hybrid in MN or DC

UnitedHealth Group

Washington, DC • On-site, Remote

Full-time

Retirement

Posted 3 days ago

New


UnitedHealth Group rating

7.6

Company rating: 7.6 out of 10

Based on 146 frontline employees who took The Breakroom Quiz

188th of 887 rated healthcare providers


Job description

Explore opportunities with the Enterprise Information Security (EIS) team at UnitedHealth Group. Join one of the world's largest health care companies and become part of the first line of defense against security threats. We are focused on strengthening our cyber defenses, ransomware resiliency, vulnerability mitigation, and securing all aspects of our systems and data globally. We are passionate about protecting the sensitive data of our members and providers. We are committed to leveraging every tool, partnership and process needed to enhance our security posture. It is our duty to protect the information of those we serve while Caring. Connecting. Growing together.
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.
The Senior Principal Threat Intelligence Engineer is responsible for designing, deploying and integrating threat intelligence technical capabilities across United Health Group's security ecosystem. The role focuses on ingesting, normalizing, and enriching threat intelligence information, integrating Threat Intelligence Platforms (TIPs) and intelligence sources with security tooling (e.g., SIEM, SOAR, EDR), and deploying automated intelligence-enabled detection and response workflows. The ideal candidate combines solid software engineering skills with deep cybersecurity domain knowledge to transform raw threat data into actionable intelligence that enhances detection, response, and risk mitigation. This technical role focuses on building automation, data pipelines, and detection mechanisms to proactively defend infrastructure against threats of varying technical sophistication.
The Senior Principal Threat Intelligence Engineer is expected to conceptualize, guide, and execute the delivery of technical intelligence solutions to CTI, SOC, Threat Detection, and Threat Hunting teams that accelerate the processing and dissemination of intelligence, increase speed of detection, and enable rapid response.
The Senior Principal Threat Intelligence Engineer will be a key driver of the technology development and deployment agenda within the CTI space at United Health Group to include tool selection, architectural design, tool development, and operational support. This role will have a primary voice in design decisions, tool selection, and tool development, and will be expected to exert senior influence and operate autonomously as required.
You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities:
  • Deploy, integrate, and maintain a threat intelligence platform that is integrated into United Health's security tooling ecosystem
  • Integrate threat intelligence into SIEM platforms (e.g., Splunk) for detection use cases and alert enrichment
  • Efficiently employ agentic AI, LLMs, and other associated capabilities to increase the availability and speed of delivery of contextualized threat intelligence to CTI, SOC, IR, and other SecOps members
  • Design, build, and deploy technology-supported workflows to execute diverse intelligence use cases across SOC, IR, Insider Risk, Fraud, Red Team, Threat Hunt, and other stakeholder environments
  • Develop and maintain SOAR playbooks for automated threat response and enrichment; utilize SOAR to optimize intelligence workflows
  • Orchestrate workflows across security tools to reduce manual analysis and response time
  • Design, build, and maintain integrations between threat intelligence feeds (commercial, open-source, ISACs) and internal security platforms
  • Integrate and operationalize Threat Intelligence Platforms (e.g., MISP, OpenCTI ThreatConnect, Anomali, ThreatQuotient) with enterprise security tools
  • Develop pipelines to ingest, normalize, deduplicate, and enrich Indicators of Compromise (IOCs) and threat data
  • Correlate intelligence with telemetry from SIEM, EDR, NDR, and cloud security tools to improve detection fidelity
  • Enable automated enrichment of alerts using threat intelligence data within SIEM workflows

You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:
  • 5+ years of experience in a cyber threat intelligence, cyber security engineering, incident response or malware analysis role with heavy emphasis on tool and technology integration
  • Proven solid coding ability is essential for this role due to the need for automation, integration, and data engineering
  • Proficiency in one or more of:
    • Python (primary) for automation, API integrations, and data processing
    • Java, JavaScript/Node.js, or Go for service development
  • Experience with:
    • REST APIs, JSON, STIX/TAXII protocols
    • Data parsing, transformation, and pipeline development
    • Scripting (Bash, PowerShell)
  • Demonstrated familiarity with version control (Git) and CI/CD pipelines
  • Demonstrated familiarity with a variety of OS's and platforms including Linux (Ubuntu, CentOS, RHEL, Kali), AWS, Docker, Windows Server (NT through 2012), Active Directory, Mac OS X
  • Experiences with AI employment in a threat intelligence framework including LLM, MCP server configuration, RAG and associated processes.
  • Hands-on experience with TIPs such as: MISP, OpenCTI, ThreatConnect, Anomali
  • Experience integrating multiple intelligence feeds and formats
  • Proven understanding of IOC lifecycle management and enrichment techniques
  • Solid experience with SIEM platforms: Splunk, Microsoft Sentinel, IBM QRadar, Elastic
  • Experience building detection rules, correlation searches, and dashboards
  • Demonstrated understanding of log ingestion, normalization, and enrichment pipelines
  • Experience with SOAR platforms such as Cortex XSOAR, Splunk SOAR, Swimlane, Tines
  • Development of playbooks/runbooks for automated response
  • Proven knowledge of orchestration across multiple security tools

Preferred Qualifications:
  • Relevant certifications (e.g., GCTI, GCIA, CISSP, Splunk certifications)
  • Demonstrated familiarity with EDR/XDR, IDS/IPS, firewalls, cloud security tools
  • Proven knowledge of structured threat data formats (STIX, TAXII)
  • Experience in large-scale security operations or SOC environments
  • Familiarity with data engineering technologies (Kafka, Spark, Elasticsearch)
  • Experience with cloud platforms (AWS, Azure, GCP) and security integrations
  • Experience in threat hunting and detection engineering

*All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy.
Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $134,600 - $230,800 annually based on full-time employment. We comply with all minimum wage laws as applicable.
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.

What UnitedHealth Group employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom