TRM Labs
Threat Intelligence Analyst, Financial Networks
North America, Australia, Canada, ...Full-timeGlobal
š Midš Remote
Job Description
[AI-summarized by JobStash]
You will collect, analyze, and report on actors and networks that use traditional financial systems alongside crypto to move value and evade detection. You will conduct proactive threat hunting across on-chain and off-chain data, develop novel collection strategies and analytic methodologies, map financial networks and corporate ownership structures, identify adversary TTPs to support detection and attribution, leverage OSINT to surface hidden threats, and produce clear, actionable intelligence reports. You will collaborate with data, engineering, and product stakeholders to improve intelligence capabilities and communicate findings to law enforcement and government partners.
Requirements
- āProven experience in threat intelligence cyber intelligence or national security intelligence roles
- āFluency in Russian Chinese (Mandarin or Cantonese) or Farsi with ability to conduct research and analysis in that language
- āTrack record of generating net-new intelligence by developing original hypotheses and pursuing non-obvious investigative threads
- āBackground in sanctions enforcement financial intelligence or corporate investigations
- āWorking knowledge of blockchain and cryptocurrency including transactions on-chain tracing concepts and role of crypto in financial crime
- āAbility to analyze corporate ownership structures beneficial ownership and cross-border fund flows
- āExperience tracking threat actors nation-state activity or sanctioned entities including analysis of TTPs infrastructure and financial behavior
- āStrong analytical and communication skills with ability to produce clear actionable intelligence reports
- āAbility to collaborate cross-functionally with technical and non-technical stakeholders
- āComfort operating in ambiguous low-signal environments and ownership mindset to drive investigations independently
- āHands-on experience with blockchain analysis tools (e.g., Chainalysis Reactor TRM Elliptic) or formal cryptocurrency investigation experience
- āRelevant certifications (e.g., GIAC CEH Chainalysis Reactor Certification) or background in cybersecurity intelligence or investigations
Responsibilities
- āDevelop novel collection strategies and analytic methodologies
- āConduct proactive threat hunting across on-chain and off-chain data sources
- āMap financial networks for sanctions evasion including commodity flows and corporate ownership structures
- āTrack, analyze, and report on threat actors, campaigns, and illicit networks
- āIdentify and assess adversary tactics techniques and procedures to support detection and attribution
- āLeverage OSINT and other intelligence methods to generate actionable insights
- āProduce high-quality intelligence reports for law enforcement and government partners
- āCollaborate with data engineering and product teams to enhance intelligence capabilities
- āAdvocate how adversaries exploit traditional finance and crypto to move illicit value
Benefits & Perks
- āRemote work
- āFlexible schedules
- āAsynchronous communication
Tech Stack
threat huntingthreat intelligencecryptocurrencyinvestigationownership structurefinancial intelligenceEllipticanalysis