HimalayasHimalayas logo
Arctic WolfAW

Director, Threat Intelligence Research

Arctic Wolf is a global leader in security operations, providing a cloud-native platform and concierge services to help organizations end cyber risk. They offer managed detection and response, managed risk, cloud security posture management, and security awareness training.

Arctic Wolf

Employee count: 1001-5000

Salary: 186k-302k USD

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

At Arctic Wolf, you won’t just watch the cybersecurity industry evolve – you'll help lead the change. Our global Pack is made up of people who thrive on solving hard problems, moving fast, and building technology that protects organizations around the world. We’re proud to be recognized by Forbes, CNBC, Fortune, CRN, Bartner Peer Insights and IDC MarketScape – but what matters most is the work behind it: delivering real outcomes for customers through award winning innovation like our Aurora Platform.

If you’re looking for meaningful work, smart teammates and the chance to make a real impact in a high-growth company that’s redefining security operations, Arctic Wolf is the right place for you!

Our mission is simple: End Cyber Risk. We’re looking for a Director, Threat Intelligence Research to be part of making that happen.  

About the Role

This senior leadership role owns the strategy and execution of Cyber Threat Intelligence (CTI) at Arctic Wolf, an AI-native security operations company. The mission is singular: anticipate what will hurt our customers, and translate that foresight into prioritized, contextual intelligence that directly drives detection engineering, threat operations, and product outcomes. The Director leads multiple intelligence teams, sets collection and analytic priorities tied to Arctic Wolf’s customer base, and builds an agentic-first operating model that transforms CTI into the engine of an AI-native security organization. The role is also a primary public face of Arctic Wolf threat research, driving rapid-response publications, executive briefings, media engagement, and industry keynotes that establish the company’s authority in the threat landscape, on par with the standard set by leading research programs in the industry.

Job Scope

Owns the vision and execution of Arctic Wolf’s Cyber Threat Intelligence function. Directs multiple intelligence teams, defines collection and analytic priorities tied to customer risk, and is accountable for the speed, relevance, and downstream impact of intelligence on detection engineering, threat operations, and product.

Key Responsibilities

  • Drive detection engineering through intelligence-led collection and prioritization, ensuring every campaign, TTP, and threat actor tracked translates into a ranked detection backlog tied to customer risk.

  • Anticipate what will hurt customers: define collection priorities, PIRs, and coverage goals grounded in Arctic Wolf’s customer base, sectors, attack surface, and adversary landscape.

  • Lead the rapid-response function for high-severity events (zero-days, mass exploitation, breach disclosures, geopolitically driven campaigns), coordinating cross-functional response and public communications.

  • Partner with Data Science, Threat Operations, Detection Engineering, Product Management, and Engineering to productize intelligence, turning research into customer-facing capabilities, signals, and content.

  • Build an agentic-first operating model: codify intelligence workflows as agentic systems, evaluate and adopt frontier AI tooling, and lead the team’s transformation into AI-native analysts.

  • Set the internal CTI frameworks (PIRs, ATT&CK alignment, attribution discipline, confidence and probability language, intel-to-detection pipeline) used across the company.

Expert Positioning Goal:

  • Establish Arctic Wolf as a recognized authority in threat research through rapid-response publications, blogs, podcasts, and original research reports.

  • Engage with PR, Communications, and Marketing to ensure timely, accurate, and high-impact external messaging during major incidents and disclosures, and to amplify research that defines the company’s voice in the market.

  • Speak at top-tier industry and government forums (e.g., RSA, Black Hat, FIRST, SANS Summits, FS-ISAC, InfraGard, ISAC and government exchanges) and represent Arctic Wolf in public-private partnerships.

  • Brief customers, executives, and boards on the threats most relevant to their environment, sector, and risk profile.

Example Key Results:

  • Launched an intelligence-driven detection prioritization program that measurably increased coverage of customer-relevant TTPs and reduced time from intel surface to deployed detection.

  • Stood up a rapid-response capability that delivered authoritative public analysis of major incidents within hours, generating earned media, customer trust, and measurable share-of-voice in the threat research community.

  • Transformed CTI workflows to agentic-first, with documented gains in throughput and analyst leverage; established AI-native tradecraft as the team standard.

  • Productized intelligence outputs in partnership with Product, Data Science, and Engineering, shipping customer-facing capabilities, signals, and content packs that materially improved customer protection.

Complexity & Problem Solving

Leads strategic vision-setting at the intersection of threat research, detection engineering, AI and agentic systems, and product. Solves complex org-wide problems involving collection prioritization, intelligence-to-detection pipelines, attribution under uncertainty, AI-native workflow design, and cross-functional alignment with Data Science, Threat Operations, Detection Engineering, Product Management, and Engineering.

Knowledge & Experience

  • Demonstrated leadership of a regional or global CTI function with direct, measurable impact on detection engineering, threat operations, or product outcomes — ideally within an MDR, MSSP, EDR/XDR, or major incident response practice.

  • Expertise in threat actor attribution, campaign tracking, TTP analysis, and translating intelligence into ranked detection priorities and customer-relevant guidance.

  • Hands-on track record of operating in agentic and AI-native workflows: building, evaluating, or leading teams that use LLM agents, retrieval pipelines, and automation as a primary mode of work, not as an experiment.

  • Proven ability to partner with Data Science, Detection Engineering, Threat Operations, and Product Management to productize intelligence capabilities and ship customer-facing outcomes.

  • Experience leading rapid-response programs and serving as a public-facing voice during major incidents: blogs, briefings, podcasts, conference keynotes, and earned media engagement with PR and Communications.

  • Experience engaging with senior stakeholders, executive and board briefings, and public-private partnerships (e.g., ISACs, industry coalitions, government exchanges).

  • Has developed other managers; strong people leadership skills with a bias toward building small, senior, AI-leveraged teams.

  • Able to define and execute long-term intelligence strategies and metrics aligned with customer protection, detection coverage, time-to-detection for emerging threats, and product outcomes.

Collaboration & Interaction

Interfaces daily with Detection Engineering, Threat Operations, Data Science, Product Management, and Engineering leadership to align intelligence to customer protection. Engages senior leaders, customers, public/private coalitions, regulators, media, and the broader security community; shapes the team’s external presence and reputation as a primary public face of Arctic Wolf threat research.

Achieve Results

Drives intelligence programs whose impact is measured in customer protection, detection coverage, time-to-detection for emerging threats, productized capabilities shipped, and earned authority in the threat research community. Develops managers and senior individual contributors operating natively with agentic systems.

About Arctic Wolf
At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA (2021-2024), Best Places to Work – USA (2021-2024), Great Place to Work – Canada (2021-2024), Great Place to Work – UK (2024), and Kununu Top Company – Germany (2024). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 7,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.

Our Values 
Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that—by protecting people’s and organizations’ sensitive data and seeking to end cyber risk— we get to work in an industry that is fundamental to the greater good. 

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.  

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities. 

All wolves receive compelling compensation and benefits packages, including: 

  • Equity for all employees

  • Flexible time off and paid volunteer days

  • RRSP and 401k match

  • Training and career development programs

  • Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services

  • Robust Employee Assistance Program (EAP) with mental health services

  • Fertility support and paid parental leave

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire employee experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodations by emailing recruiting@arcticwolf.com. 

Security Requirements 

  • Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes, and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies). 

  • Background checks are required for this position.  

  • This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (“EAR”).  Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations. 

The base salary range for this job family is 186,000 to 302,000 USD annually. This range reflects the base pay the company reasonably expects to offer for this position, aligned to the broader job family base pay structure. Actual base pay may vary based on skills, experience, and location, including job family level. In addition to base pay, Arctic Wolf offers variable incentive compensation, new hire equity grants, and a comprehensive benefits package.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Salary

Salary: 186k-302k USD

Location requirements

Hiring timezones

United States +/- 0 hours

About Arctic Wolf

Learn more about Arctic Wolf and their company culture.

View company profile

At Arctic Wolf, the core of our mission is to end cyber risk. We envision a future where every organization, regardless of size, can operate with such effective security operations that the likelihood and impact of a cyber attack are minimized to virtually zero. This vision drives our culture, which is built on a foundation of collaboration, innovation, and a relentless focus on customer security. We believe in empowering our 'Pack members' – our employees – to make a real impact, fostering an environment where initiative is celebrated and bureaucracy is minimized. If you see a gap, you have the power to fill it; if something isn't working, you have the authority to drive change. This sense of ownership and accountability, combined with a fast-paced, energetic atmosphere, makes Arctic Wolf a truly unique and rewarding place to work.

Our 'Pack Unity' is central to who we are. We are committed to fostering a diverse, equitable, and inclusive workplace, believing that a variety of backgrounds, cultures, and ideas makes our team stronger as we continue our global expansion. This commitment extends beyond our office walls, as we encourage our employees to give back to their communities through initiatives like volunteer time off. We understand that our strength lies in our people, and we invest in their growth through mentorship, training, and support for professional development. We also prioritize the well-being of our Pack, offering benefits like flexible paid time off, family-forming benefits, and robust employee assistance programs, because we know that well-rested and supported individuals deliver the best results. Our culture is one where people feel welcomed, are equipped with the resources they need to succeed, and are proud to be part of a team that is redefining the cybersecurity landscape. It's about more than just the cutting-edge technology we develop; it's about the dedicated people who make our mission possible and who are passionate about protecting our customers.

Employee benefits

Learn about the employee benefits and perks provided at Arctic Wolf.

View benefits

Mental health practitioner benefit

Mental health practitioner benefit.

Matching RSP

Long-term savings, defined-contribution (DC) pension, matching RSP.

Health plan premium

As part of the health plan, the employer pays up to 100% of the premiums.

Equity For All Employees

Our salary and benefits packages always include equity, so every employee has a stake in the company's success.

View Arctic Wolf's employee benefits
Claim this profileArctic Wolf logoAW

Arctic Wolf

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

26 remote jobs at Arctic Wolf

Explore the variety of open remote roles at Arctic Wolf, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Arctic Wolf

Remote companies like Arctic Wolf

Find your next opportunity by exploring profiles of companies that are similar to Arctic Wolf. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan