1

Threat Intelligence Researcher Jobs (NOW HIRING)

Conduct in-depth research and analysis across dark web, deep web, open-source, and other intelligence sources to identify threats relevant to the organization. * Investigate threat actor activity ...

... Research Centre (ARC). We help defend our customers against everyday threats with the tight ... The Threat Intelligence Analyst will collaborate with customers to enhance their cyber threat ...

The core responsibility of the Cyber Threat Intelligence Analyst is to conduct deep research into social engineering and cyber-attack campaigns and collaborate closely with data scientists ...

The core responsibility of the Cyber Threat Intelligence Analyst is to conduct deep research into social engineering and cyber-attack campaigns and collaborate closely with data scientists ...

We are seeking a Threat Intelligence Analyst with expertise in investigative analysis, threat ... and research or develop incident response tools and processes. * Produce intelligence products ...

New

Showing results 21-40

Threat Intelligence Researcher information

See salary details

$30K

$113.1K

$164.5K

How much do threat intelligence researcher jobs pay per year?

As of Aug 9, 2026, the average yearly pay for threat intelligence researcher in the United States is $113,102.00, according to ZipRecruiter salary data. Most workers in this role earn between $67,000.00 and $154,000.00 per year, depending on experience, location, and employer.

What skills and qualifications are needed to be a threat intelligence researcher?

To thrive as a Threat Intelligence Researcher, you need strong analytical skills, cybersecurity knowledge, and experience with threat detection, often supported by a degree in computer science or a related field. Familiarity with threat intelligence platforms (TIPs), SIEM systems, malware analysis tools, and certifications like GIAC or CEH are commonly required. Excellent critical thinking, attention to detail, and effective communication skills help you interpret complex data and share findings with technical and non-technical audiences. These skills are essential for proactively identifying, analyzing, and mitigating cyber threats to protect organizational assets.

What is the difference between Threat Intelligence Researcher vs Cybersecurity Analyst?

AspectThreat Intelligence ResearcherCybersecurity Analyst
Required CredentialsBachelor's in Cybersecurity, Computer Science, or related; certifications like GIAC, CISSPBachelor's in Cybersecurity, Information Technology, or related; similar certifications often preferred
Work EnvironmentResearch-focused, analyzing threat data, monitoring cyber threatsOperational, monitoring security systems, incident response
Employer & Industry UsageTech firms, government agencies, security consultanciesOrganizations across industries, including finance, healthcare, and government
Common Search & ComparisonThreat Intelligence Researcher vs Cybersecurity Analyst

Both roles require cybersecurity knowledge and certifications, but Threat Intelligence Researchers focus on analyzing and understanding emerging threats, while Cybersecurity Analysts handle day-to-day security monitoring and incident response. The roles often overlap but differ mainly in scope and focus area.

What does a threat intelligence researcher do?

A Threat Intelligence Researcher is responsible for identifying, analyzing, and reporting on cyber threats and vulnerabilities that could impact an organization. They collect data from various sources, such as the dark web, threat feeds, and security incidents, to understand the tactics, techniques, and procedures used by threat actors. Their work helps organizations anticipate, prepare for, and defend against cyber attacks by providing actionable intelligence to security teams. Additionally, they may contribute to developing threat detection tools and policies to enhance overall cybersecurity posture.

How does a threat intelligence researcher collaborate with other cybersecurity teams?

Threat Intelligence Researchers work closely with various cybersecurity teams, such as incident response, security operations, and vulnerability management. They provide actionable intelligence by analyzing emerging threats, sharing timely reports, and advising on mitigation strategies. Effective collaboration often involves regular briefings, cross-team meetings, and real-time communication to ensure that threat data is integrated into broader security operations. This teamwork helps organizations respond proactively to evolving cyber threats.
More about Threat Intelligence Researcher jobs
What cities are hiring for Threat Intelligence Researcher jobs? Cities with the most Threat Intelligence Researcher job openings:
What states have the most Threat Intelligence Researcher jobs? States with the most job openings for Threat Intelligence Researcher jobs include:
Infographic showing various Threat Intelligence Researcher job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 9% Part Time, and 4% Contract. Highlights an 85% Physical, 4% Hybrid, and 11% Remote job distribution, with an average salary of $113,102 per year, or $54.4 per hour.

Cyber Threat Intelligence Advisor

Southern California Edison (SCE)

Rosemead, CA • On-site

$161K - $242K/yr

Full-time

Posted 4 days ago


Job description

Join the Clean Energy Revolution
Become a Cyber Threat Intelligence Advisor at Southern California Edison (SCE) and build a better tomorrow. In this job, you'll be a part of the Cyber Threat Intelligence team, a sub-team under SCE's broader Cybersecurity Operations Center (CSOC) - the team responsible for keeping SCE's network and grid secure from emerging threats and cyber actors.
We are looking for an intelligence analyst that is not only comfortable working in a CSOC environment, but is also familiar with both classified and unclassified threat intelligence research and engagements.
In this role, you will:
  1. Help shape and mature SCE's Cyber Threat Intelligence program by refining intelligence strategy, processes, capabilities, operating models, collection priorities, toolsets, and workflows while contributing to both tactical execution and long-term program development.
  1. Lead the operationalization and sustainment of SCE's classified intelligence program, including engagement with federal, industry, and intelligence-sharing partners while providing onsite operational support within he classified facility as needed.
  1. Regularly develop intelligence products, executive briefings, and threat assessments that communicate actionable insights, emerging risks, and strategic intelligence to both technical stakeholders and senior leaders.
  1. Analyze emerging threats, adversary campaigns, tactics, techniques, and procedures (TTPs) through classified and unclassified sources to assess potential risks to SCE and drive intelligence activities aligned to Priority Intelligence Requirements (PIRs).
  1. Execute and support day-to-day intelligence program operations including developing and tuning intelligence-related alerts, leveraging intelligence platforms and tooling, conducting research in support of Priority Intelligence Requirements (PIRs), and integrating intelligence into CSOC activities such as incident response and investigations.

As a Cybersecurity Advisor, your work will help power our planet, reduce carbon emissions and create cleaner air for everyone. Are you ready to take on the challenge to help us build the future?
Responsibilities
  • Manages cybersecurity project delivery by ensuring the cybersecurity team meets success criteria.
  • Delivers project reporting for assigned projects, conducts critical analysis of project status, potential risks, and continual process improvement.
  • Coordinates and performs appropriate maintenance to ensure reliable and secure performance of the security systems, including applying security patches, implementing version upgrades, modifying and improving services, and performing ongoing operational management tasks.
  • Contributes to an overall cybersecurity governance strategy, standards, and operational procedures.
  • Ensures technology risks impacting the business are effectively identified, quantified, communicated, and managed, including recommendations for resolution and identifying root causes/key themes.
  • Prepares and updates Plan of Actions & Milestones (POA&M) that identify security weaknesses, establish milestones, and implements compensating controls for remediating these weaknesses, while tracking the progress and effectiveness of the remediation.
  • Oversees the production of evidence to support internal and external audits.
  • Provides cybersecurity and risk assessments for new networks, services, and devices as needed.
  • Drives periodic monitoring of audit logs in accordance with requirements, and reports findings and concerns for further analysis and action, including breach notification and initiation of incident response, in accordance with protocols and procedures.
  • Delivers programs and processes to reduce information security risk and strengthen SCE's security posture.
  • A material job duty of all positions within the Company is ensuring the protection of all its physical, financial and cybersecurity assets, and properly accessing and managing private customer data, proprietary information, confidential medical records, and other types of highly sensitive information and data with the highest standards of conduct and integrity.

Minimum Qualifications
  • Seven or more years of experience in information technology, information security and/or cybersecurity.
  • US Citizenship Required.
  • Active TS/SCI Security Clearance

Preferred Qualifications
  • Experience working in classified facilities and engaging in federal intelligence programs.
  • Experience as an Intel Analyst AND in a SOC, IR, or specialized cybersecurity role.
  • Understanding of threat intelligence collection methodologies.
  • Excellent verbal and written communication.
  • Experience with data analysis and threat intelligence platforms.

Additional Information
  • This position's work mode is hybrid. The employee will report to an SCE facility for a set number of days with the option to work remotely on the remaining days. Unless otherwise noted, employees are required to work and reside in the state of California. Further details of this work mode will be discussed at the interview stage. The work mode can be changed based on business needs.
  • Visit our Candidate Resource page to get meaningful information related to benefits, perks, resources, testing information, hiring process, and more!
  • Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
  • The primary work location for this position is Rosemead, CA.However, the successful candidate may also be asked to work for an extended amount of time at an alternate work location.
  • Position will require up to 20% traveling and being out in the field throughout the SCE service territory.
  • This position has been identified as a NERC/CIP impacted position - Prior to being hired, the successful candidate must pass a Personnel Risk Assessment (PRA) or Background Investigation. Once hired, the candidate must complete specified training prior to gaining un-escorted access to assigned work location and performing necessary job duties.
  • Relocation may apply to this position.

About Southern California Edison
The people at SCE don't just keep the lights on. Our mission is so much bigger. We're fueling the kind of innovation that's changing an entire industry, and quite possibly the planet. Join us and create a future with cleaner energy, while providing our customers with the safety and reliability they demand. At SCE, you'll have a chance to grow personally and professionally, making a real impact in Southern California and around the world.
Southern California Edison is a proud Equal Opportunity Employer, including disability and protected veteran status.
We are committed to ensuring that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodations at AskHR@sce.com or (626) 302-3456 and select option 2.