Paranoids Sr. Cyber Threat Investigator (Russia SME)
YahooAbout the role
A Little About Us
When you impact millions of people every day, you become a large target for adversaries of all types within all layers of the stack. Our job is to keep our users safe and make Yahoo one of the safest places on the Internet.
We are the information security team at Yahoo; known as "The Paranoids".
As a part of the Paranoids Advanced Cyber Threats Team, we protect Yahoo, its brands, and their users. We ensure that our users are kept safe from targeted attacks and account hijacking by government backed attackers. We investigate cyber threats that affect Yahoo's infrastructure, properties, and worldwide user base and apply innovative legal and technical remedies to mitigate those activities.
A Lot About You
We’re looking for a forward-thinking investigator who is passionate about protecting our company and users from cyber threats at Yahoo scale. We value collaboration and often partner with others in industry and academia. In this role, you will manage multiple technically-demanding cases and inform detection strategies. We’re looking for someone who can proactively produce intelligence and apply methodologies to identify and track current foreign adversaries and/or emerging threat groups targeting our platform. We also work closely with internal Yahoo teams - such as Legal, Mail, Incident Response, Security Operations, Business Human Rights Program (BHRP) and others - to ensure that any targeted threat issues encountered are identified, raised and remediated appropriately.
You are an ideal candidate for our team if you value:
Protecting employees, users and making the Internet a safer place for everyone
Demonstrating a high level of curiosity and staying ahead of the latest cyber threat landscape and threat intelligence trends
Taking a proactive nature to identify gaps and resolve problems
Exercising sound judgment and reason
Working independently, effectively, and with integrity
Collaborating with internal team members
Demonstrating responsibility, reliability, and compassion
Safeguarding business operations and brand integrity
In a typical day, you may find yourself:
Utilizing internal Yahoo tools, cyber-threat intelligence feeds, and external open-source resources to conduct independent, efficient, and comprehensive investigations to affect company defensive posture.
Working on a geographically diverse team to protect Yahoo consumers and corporate assets.
Working with multiple engineering teams to improve detection capabilities for mitigating abuse against Yahoo.
Communicating the results of your work to a variety of audiences, either verbally or in written format
Disseminate operational and/or strategic threat analysis to appropriate stakeholders
Collaborating with trusted industry partners on emerging threats posed by cyber threat actors
Collaborating with cross-functional teams to enhance the integration of tactical and/or strategic intelligence into incident response, risk management, and business development
You must have:
Requirements include a bachelor's degree, or the ability to demonstrate equivalent work experience
Expertise and knowledge of Advanced Persistent Threat (APT) groups, especially Russia/Eastern European Cyber Threat Groups and their respective tactics, techniques, and procedures (TTPs)
Experience conducting cyber threat investigations using industry standard models such as the Cyber Killchain, Diamond Model and/or MITRE ATT&CK
An understanding of cyber threat intelligence and how it impacts the threat detection/defense cycle
An understanding of geopolitical issues and how it impacts the cyber threat landscape (ie: global legislations, conflict zones, regional conflicts etc)
Nice to have (but not required):
Expertise in
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s