Intelligence Production Lead
Vollständige Stellenanzeige
Arbeitgeber- oder Partnerquelle · Status: aktiv · Bewerbungsweg sicher geprüft.
Vollständige Stellenanzeige von CloudFlare
Originaltext · vollständig und lesefreundlich formatiert
Available Locations
Washington DC
About The Team
Cloudforce One is Cloudflare’s threat operations and research team, responsible for identifying and disrupting cyber threats ranging from sophisticated cybercriminal activity to nation-state sponsored advanced persistent threats (APTs). Cloudforce One works in close partnership with external organizations and internal Cloudflare teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation. Members of Cloudforce One are at the helm of leveraging an incredibly vast and varied set of data points that only one of the world’s largest global networks can provide. The team is able to analyze these unique data points, at massive scale and efficiency, synthesizing findings into actionable threat intelligence to better protect our customers.
About The Role
Cloudflare is a global system on a mission to make the internet better, safer, and more powerful every day. To help fulfill this mission, we are seeking a seasoned Intelligence Production Lead to own the end-to-end intelligence production pipeline within our Cloudforce One Organization. As the Intelligence Production Lead, you will do everything a threat intelligence technical writer does — translating complex threat research into clear, concise, and actionable content — and you will also own the process, quality bar, and delivery cadence for the team's finished intelligence. You will function as the managing editor and production manager for our threat intelligence output, setting the publishing calendar, running review and fact-check cycles, enforcing source-handling and classification standards, and serving as the final quality gate before customer-facing publication. You will collaborate closely with threat researchers, intelligence analysts, security teams, and external partners to prioritize what ships when, and you will mentor writers and analysts to raise the overall standard of the team's tradecraft and written product. This position requires an independent, results-oriented leader with a passion for cybersecurity and threat intelligence analysis, and the editorial judgment to represent adversary tradecraft with precision.
Key responsibilities include
- Owning the end-to-end intelligence production pipeline — from research intake through drafting, editing, review, and publication — for intelligence reports, blog posts, briefing content, and technical documentation related to cyber threats and security research
- Setting and managing the production schedule and release calendar, coordinating across researchers and analysts to prioritize which intelligence products ship and when
- Serving as the final quality gate before customer-facing publication, running fact-check, technical-accuracy, and editorial review cycles and adjudicating changes to content
- Writing, editing, and publishing high-quality intelligence content, and translating raw researcher notes and technical analysis into accessible, well-structured, impactful narratives
- Developing, maintaining, and enforcing style guides, templates, classification markings, and source-handling and best-practice standards for threat intelligence briefings and publications
- Reviewing and refining threat research content to ensure clarity, consistency, technical precision, and adherence to Cloudflare's editorial standards
- Mentoring and coaching technical writers and analysts on writing craft, intelligence tradecraft, and reporting standards
- Collaborating with analysts and external partners to contextualize intelligence findings and communicate them effectively to customers and the public
- Partnering with marketing, design, PR, and communications teams to amplify intelligence content, manage workloads and deadlines, and develop a cohesive security narrative
Examples of Desirable Skills, Knowledge, and Experience
- Minimum 5 years of experience in a threat intelligence role within the Five Eyes (FVEY) community
- 7+ years of combined experience across technical writing, cybersecurity research, intelligence analysis, or a related field
- Minimum 3 years of technical copy editing experience
- Demonstrated experience leading or managing a threat intelligence reporting, editorial, or production function — owning the production workflow, setting cadence, managing review cycles, and serving as a final quality gate before publication
- Strong ability to craft — and to lead others in crafting — clear, concise, and engaging technical content for a variety of audiences, from technical defenders to executives
- Experience collaborating with cybersecurity researchers and analysts, with a strong understanding of intrusion analysis, incident response, malware, adversary TTPs, and network defense strategies
- Ability to use researcher notes and raw analysis to author articles about individual threats and campaigns, and to guide others in doing the same
- Understanding of geopolitical issues and their impact on cyber threats
- Familiarity with cyber threat intelligence frameworks such as the Cyber Kill Chain, MITRE ATT&CK, and the Diamond Model
- Familiarity with specific threat actor groups, their operations, and TTPs
- Experience with OSINT research and intelligence collection methodologies
- Background in intelligence or criminal investigation reporting
- Experience working in a threat intelligence or security operations center (SOC) environment
- Demonstrated operational security (OPSEC) awareness and experience with the secure handling of sensitive information
- Strong research, proofreading, and editing skills with a keen attention to detail
- Experience communicating with internal teams to negotiate suggested changes to edited content and answer questions on style, grammar, and voice
- Strong collaboration and leadership skills to work with analysts, marketing, design, and PR teams to coordinate workloads, deadlines, and responsibilities
- Excellent project management and organizational skills, with the ability to handle multiple priorities and competing deadlines in a fast-paced environment
- Proficiency in using Google Suite and content management systems (e.g., WordPress, Jira, or similar workflow tools)
- Bachelor's degree in English, Journalism, Cybersecurity, Computer Science, or a related field, or equivalent experience
Bonus Points
- Experience using AI and large language model (LLM) tools to accelerate research, drafting, editing, and intelligence production workflows
- Experience leading or managing a team of threat intelligence technical writers
- Certifications such as CISSP, GIAC GCTI, or similar cybersecurity credentials
- A portfolio of published, public-facing threat intelligence (bylined reports, advisories, or blog posts)
- Experience presenting threat research at industry conferences (e.g., Black Hat, DEF CON, RSA, FIRST, or SANS CTI Summit)
- Familiarity with threat intelligence platforms (TIPs) and structured threat-sharing standards
Compensation
Compensation may be adjusted depending on work location.
- For Washington DC based hires: Estimated annual salary of $160,000 - $220,000
Equity
This role is eligible to participate in Cloudflare’s equity plan.
Benefits
Cloudflare offers a complete package of benefits and programs to support you and your family. Our benefits programs can help you pay health care expenses, support caregiving, build capital for the future and make life a little easier and fun! The below is a description of our benefits for employees in the United States, and benefits may vary for employees based outside the U.S.
Health & Welfare Benefits
- Medical/Rx Insurance
- Dental Insurance
- Vision Insurance
- Flexible Spending Accounts
- Commuter Spending Accounts
- Fertility & Family Forming Benefits
- On-demand mental health support and Employee Assistance Program
- Global Travel Medical Insurance
Financial Benefits
- Short and Long Term Disability Insurance
- Life & Accident Insurance
- 401(k) Retirement Savings Plan
- Employee Stock Participation Plan
Time Off
- Flexible paid time off covering vacation and sick leave
- Leave programs, including parental, pregnancy health, medical, and bereavement leave
Equal Opportunity Employer
Cloudflare is proud to be an equal opportunity employer. We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to their, or any other person's, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA/Veterans/Disabled Employer.
Reasonable Accommodations
Cloudflare provides reasonable accommodations to qualified individuals with disabilities. Please tell us if you require a reasonable accommodation to apply for a job. Examples of reasonable accommodations include, but are not limited to, changing the application process, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment. If you require a reasonable accommodation to apply for a job, please contact us via e-mail at or via mail at 101 Townsend St. San Francisco, CA 94107.
Bereit?
Du wirst sicher zur Originalanzeige von CloudFlare weitergeleitet.
Aktuell die einzige offene Stelle bei CloudFlare.
Neue Stellen kommen monatlich dazu — schau gerne später noch mal rein.