Technical Cyber Threat Investigator
Remote • Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC
Posted 16d ago
About the job
Anthropic is seeking a Technical Cyber Threat Investigator to join its Threat Intelligence team. This role is crucial for detecting, investigating, and disrupting the misuse of Anthropic's AI systems for malicious cyber operations. You will operate at the intersection of AI safety and cybersecurity, developing novel detection techniques and building defenses against emerging AI-enabled cyber threats. Your work will directly contribute to protecting the broader ecosystem from sophisticated threat actors leveraging AI for harm. Please note, this role may involve exposure to sensitive content and require responding to escalations during weekends and holidays.
Responsibilities
- Detect and investigate misuse of AI systems for cyber operations, including influence operations, malware development, and social engineering.
- Develop abuse signals and tracking strategies to proactively detect sophisticated threat actors.
- Create actionable intelligence reports on new attack vectors, vulnerabilities, and threat actor TTPs targeting LLM systems.
- Conduct cross-platform threat analysis using open-source research, dark web monitoring, and internal data.
- Implement systematic improvements to safety approaches and mitigate harm based on investigation findings.
- Study internal and external trends to anticipate AI system misuse and publish reports.
- Build and maintain relationships with external threat intelligence partners, information sharing communities, and government stakeholders.
- Collaborate cross-functionally to establish threat intelligence program processes, tools, and best practices.
Requirements
- Proficiency in SQL and Python for data analysis and threat detection.
- Experience with large language models and understanding of AI misuse for cyber threats.
- Subject matter expertise in abusive user behavior detection (e.g., influence operations, coordinated inauthentic behavior, cyber threat intelligence).
- Experience tracking threat actors across surface, deep, and dark web environments.
- Ability to derive insights from large datasets for decision-making and recommendations.
- Experience with threat actor profiling and utilizing threat intelligence frameworks (e.g., MITRE ATT&CK).
- Strong project management skills and ability to build processes from the ground up.
- Excellent communication skills for cross-functional collaboration and presenting to leadership.
Benefits
- Annual compensation range: $230,000 - $290,000 USD
- Visa sponsorship available