Jobs and Careers
YA

Paranoids Sr. Cyber Threat Investigator (Russia SME)

Yahoo
US - United States of America, United Statesfull_timeVerifiedPosted 26 Jun 2025
💰 $266,875/yr($128,250/yr$266,875/yr)

About the role

It takes powerful technology to connect our brands and partners with an audience of hundreds of millions of people. Whether you’re looking to write mobile app code, engineer the servers behind our massive ad tech stacks, or develop algorithms to help us process trillions of data points a day, what you do here will have a huge impact on our business—and the world.

A Little About Us

When you impact millions of people every day, you become a large target for adversaries of all types within all layers of the stack. Our job is to keep our users safe and make Yahoo one of the safest places on the Internet.

We are the information security team at Yahoo; known as "The Paranoids".

As a part of the Paranoids Advanced Cyber Threats Team, we protect Yahoo, its brands, and their users. We ensure that our users are kept safe from targeted attacks and account hijacking by government backed attackers. We investigate cyber threats that affect Yahoo's infrastructure, properties, and worldwide user base and apply innovative legal and technical remedies to mitigate those activities.

A Lot About You

We’re looking for a forward-thinking investigator who is passionate about protecting our company and users from cyber threats at Yahoo scale. We value collaboration and often partner with others in industry and academia. In this role, you will manage multiple technically-demanding cases and inform detection strategies. We’re looking for someone who can proactively produce intelligence and apply methodologies to identify and track current foreign adversaries and/or emerging threat groups targeting our platform. We also work closely with internal Yahoo teams - such as Legal, Mail, Incident Response, Security Operations, Business Human Rights Program (BHRP) and others - to ensure that any targeted threat issues encountered are identified, raised and remediated appropriately.

You are an ideal candidate for our team if you value:

  • Protecting employees, users and making the Internet a safer place for everyone

  • Demonstrating a high level of curiosity and staying ahead of the latest cyber threat landscape and threat intelligence trends

  • Taking a proactive nature to identify gaps and resolve problems

  • Exercising sound judgment and reason  

  • Working independently, effectively, and with integrity

  • Collaborating with internal team members  

  • Demonstrating responsibility, reliability, and compassion 

  • Safeguarding business operations and brand integrity

In a typical day, you may find yourself:

  • Utilizing internal Yahoo tools, cyber-threat intelligence feeds, and external open-source resources to conduct independent, efficient, and comprehensive investigations to affect company defensive posture.

  • Working on a geographically diverse team to protect Yahoo consumers and corporate assets.

  • Working with multiple engineering teams to improve detection capabilities for mitigating abuse against Yahoo.

  • Communicating the results of your work to a variety of audiences, either verbally or in written format

  • Disseminate operational and/or strategic threat analysis to appropriate stakeholders 

  • Collaborating with trusted industry partners on emerging threats posed by cyber threat actors

  • Collaborating with cross-functional teams to enhance the integration of tactical and/or strategic intelligence into incident response, risk management, and business development

You must have: 

  • Requirements include a bachelor's degree, or the ability to demonstrate equivalent work experience

  • Expertise and knowledge of Advanced Persistent Threat (APT) groups, especially Russia/Eastern European Cyber Threat Groups and their respective tactics, techniques, and procedures (TTPs)

  • Experience conducting cyber threat investigations using industry standard models such as the Cyber Killchain, Diamond Model and/or MITRE ATT&CK

  • An understanding of cyber threat intelligence and how it impacts the threat detection/defense cycle

  • An understanding of geopolitical issues and how it impacts the cyber threat landscape (ie: global legislations, conflict zones, regional conflicts etc)

Nice to have (but not required):

  • Expertise in

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Yahoo

View company profile →