What we do:
Halcyon is the industry’s first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware.

Who we are:
Halcyon was formed in 2021 by a team of cyber industry veterans after battling the scourge of ransomware (and advanced threats) for years at some of the largest global security vendors. Comprised of leaders from Cylance (now Blackberry), Accuvant (now Optiv), Fireye and ISS X-Force (now IBM), Halcyon is focused on building products and solutions for mid-market and enterprise customers.

As a remote-native, completely distributed global team, we recognize great talent can exist anywhere. We invite you to apply to a job you’re interested in and we'll work a plan to meet your needs.

The Role:

Halcyon’s goal is to deliver an anti-ransomware solution that breaks new ground as to what a security product can deliver. Aligned with this goal, Halcyon is looking for an experienced threat analyst to advance our detection and prevention capabilities by ensuring the widest detection while eliminating false positives. Individuals filling this role will ensure that Halcyon’s customers are protected from the latest threats without interfering with legitimate business function.

Responsibilities:

  • Monitor security events to detect and scrutinize potential security incidents. This process involves analyzing and correlating data from diverse sources to identify trends, patterns, and anomalies to identify malicious activity.

  • Analyze and triage events to determine the degree of compromise and take action to contain, mitigate, and eliminate threats.

  • Design, develop, and maintain bespoke tools to support triage and response activities. In the realm of threat research, these tools may comprise log parsers, alert correlation tools, incident tracking systems, and other utilities to bolster efficiency and effectiveness.

  • Conduct static and dynamic analyses of suspicious files and malware samples to identify indicators of compromise (IOCs) and understand the nature of the threat.

  • Collaborate cross-functionally with Customer Success and Engineering to ensure efficient communication and coordination during security events, sharing knowledge to enhance future threat detection and response initiatives.

Skills and Qualifications:

  • Development in Yara, Python, and scripting languages such as Powershell, Batch Files, Shell Scripting

  • Ability to reverse engineer malware using static and dynamic analysis techniques using disassemblers, debuggers, and sandboxes.

  • Cyber Threat Research: Previous experience in working in the cyber threat research or investigation field.

  • Collaboration and Communication: Excellent interpersonal skills for effective cross-functional collaboration; ability to clearly convey technical information to non-technical team members.

In accordance with applicable state and federal laws, the range provided is Halcyon’s reasonable estimate of the base compensation for this role. The actual amount may differ based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. Base pay is one part of the total package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and equity in the Company.

We understand it takes a diverse team of highly intelligent, passionate, curious, and creative people to develop the exceptional product we are building. Our dynamic team has incredible perspectives to share, just as we know you do, and we take great pride in being an equal opportunity employer.

Apply for this Job

* Required

resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)


Enter the verification code sent to to confirm you are not a robot, then submit your application.

This application was flagged as potential bot traffic. To resubmit your application, turn off any VPNs, clear the browser's cache and cookies, or try another browser. If you still can't submit it, contact our support team through the help center.