Skip to content
← Back to job listings

Principal Security Engineer (Threat Intelligence)

Snowflake · United States

External listingfull-timeabout 2 months ago

About The Role

Join Snowflake, a leading cloud data platform, as a Principal Security Engineer specializing in Threat Intelligence. In this role, you will shape the future of Snowflake's Threat Intelligence program, operationalize threat intelligence, and engineer solutions to improve the efficiency and impact of the program. You will work closely with various security teams and have a significant impact on the company's security posture.

  • Contribuer à la définition et à l'amélioration de la stratégie de renseignement sur les menaces chez Snowflake, en investissant dans les personnes, les processus, l'ingénierie et les capacités activées par l'IA.
  • Identifier, profiler et suivre les acteurs de la menace ciblant Snowflake, nos clients, nos partenaires et notre écosystème, et traduire ces informations en résultats concrets et exploitables.
  • Produire des rapports, des évaluations, des briefs et des communications de haute qualité sur le renseignement, en fonction des événements externes, des exigences internes et de la recherche proactive.
  • A humble, team-oriented mindset with a bias toward collaboration, execution, and raising the bar for the broader team
  • Deep experience in threat intelligence, with strong background in several of: adversary intelligence, intrusion intelligence, supply-chain intelligence, identity intelligence, domain intelligence, and threat-informed defense
  • Experience with OSINT tools, data sources, investigative methodologies, and intelligence reporting for technical and executive audiences
  • Experience building or driving AI-assisted workflows for intelligence analysis, research triage, summarization, collection, prioritization, or investigative support, and good judgment about where AI adds value versus where human analysis is required
  • Strong engineering skills, including experience writing code in high-level languages such as Python or Go, building automations, and working with data-heavy security workflows
  • Strong understanding of threat hunting and threat detection methodologies, and the ability to turn intelligence into hunts, detection opportunities, and control recommendations
  • Demonstrated ability to operationalize threat intelligence and influence security priorities in partnership with detection, incident response, product security, cloud security, anti-abuse, and other stakeholders
  • A risk-based approach to security, with the ability to prioritize work based on business impact and evolving threat conditions
  • Ability to research threat actors’ TTPs, infrastructure, targets, and objectives, and map those risks to Snowflake’s product, enterprise, and customer environment
  • Strong understanding of today’s threat actor ecosystem, including nation-state actors, criminal organizations, ransomware groups, fraud ecosystems, and the platforms and communities that enable them
  • Experience with one or more major cloud providers (AWS, Azure, GCP) and familiarity with the risks that impact cloud and SaaS environments
  • Experience researching and tracking sophisticated threat actors targeting cloud-native and SaaS environments
  • Experience collaborating across multiple security functions and communicating effectively with technical stakeholders and leadership
  • Experience handling data programmatically using tools such as SQL and Python, ideally against large datasets relevant to security analytics or intelligence workflows
  • Significant experience in threat intelligence, cyber threat research, intelligence engineering, or closely related security disciplines
  • Strong understanding of enterprise security controls, threat hunting, and detection methodologies
  • Experience writing code in a high-level programming language such as Python or Go and using code to automate manual workflows or analyze security data at scale
  • Experience leading or materially shaping a Threat Intelligence program at scale
  • Experience building AI/ML-assisted security workflows or evaluating AI systems for security use cases
  • Experience with data engineering, workflow orchestration, or production-grade systems that support intelligence or security operations at scale
  • Experience with Snowflake or equivalent cloud data platforms for large-scale analysis and investigative workflows
  • Experience presenting externally, publishing research, or demonstrating thought leadership in the security space
  • Experience building capabilities that support intelligence-driven detection, hunting, or response at a global scale

This is an external listing. JobSpring does not represent or verify the employer. Report this listing