Principal Applied Threat Intelligence Analyst

Microsoft

Actively hiring Posted this week Verified listing
Redmond, WA Posted 5 days ago Apply by Nov 25, 2026 $142,800$274,800 / year

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $166k
This role $209k
$102k most similar roles pay here $293k

This role pays more than 81% of similar roles. Most pay $136,750–$194,637 — the shaded band above. At the midpoint, this role pays about $209k versus about $166k for comparable roles.

Based on 239 similar postings.

Employer

About Microsoft

Microsoft Corporation is a global technology leader producing software, hardware, and cloud services including Windows, Office 365, Azure cloud platform, Xbox gaming, and Surface devices. Industry: Software & Cloud Computing

Microsoft currently has 571 open roles on FindRole.

Listed pay typically runs $119,800–$234,700 across 522 roles with salary data.

Most-posted roles

View all roles at Microsoft

At a glance

TL;DR

Join a leading cybersecurity team as a Senior Threat Intelligence Analyst where you will lead AI-driven initiatives to monitor and analyze emerging threats and attacker tactics. Your daily tasks include tracking threat actors, translating technical findings into actionable guidance, mentoring junior analysts, and contributing to knowledge sharing within the team. Ideal candidates possess extensive experience in software development, large-scale computing, and cybersecurity, with a strong background in threat analysis or modeling. Proficiency in Python, PowerShell, C#, or similar languages is essential, alongside expertise in AI tools and large language models for security applications. You will work on complex projects that involve understanding adversary tradecraft, the cyber kill chain, and frameworks like MITRE ATT&CK, requiring excellent communication skills to produce intelligence reports for both technical and executive audiences.

What you'll do

  • Track and analyze threat actors' infrastructure, targets, and techniques.
  • Translate technical findings into actionable guidance for security teams.
  • Mentor analysts and contribute to team-wide knowledge sharing.
  • Create threat intelligence reports for both technical and executive audiences.
  • Use AI tools to build agents and skills for information security applications.
  • Reverse-engineer malware using static and behavioral binary analysis methods.

What we're looking for

  • 10+ years of experience in cyber threat intelligence, threat hunting, incident response.
  • Master's degree in a relevant field and 4+ years or Bachelor's degree and 6+ years of software development lifecycle and cybersecurity experience.
  • Experience with AI tools and large language models for information security applications.
  • Ability to produce finished threat intelligence reporting for technical and executive audiences.
  • Understanding of adversary tradecraft, MITRE ATT&CK framework, and network protocols.
  • Reverse-engineering skills with static and behavioral binary analysis.
  • Track record in defending against financially motivated threat actors.

More like this

Similar roles

Principal Applied Threat Intelligence Manager

Microsoft

Redmond, WA 5 days ago $142,800$274,800
MITRE_ATT&CK Python PowerShell C# C++ AWS Kubernetes Docker CI/CD PostgreSQL Terraform Grafana Prometheus Linux Windows Network_Protocols Cyber_Kill_Chain Diamond_Model AI_Tools Large_Language_Models

Principal Advanced Threat Response Analyst

Hewlett Packard Enterprise

Remote (Locations All, Texas, US) 66 days ago $120,500$276,500
MITRE ATT&CK Python Splunk Sentinel CrowdStrike Carbon Black Defender ATP Mitre Attck AWS Azure GCP PowerShell Bash CI/CD SIEM EDR Red Team Offensive Security Cobalt Strike Metasploit Purple Team Exercises
Remote

Cyber Threat Intelligence Analyst

Leidos

9358 Undisclosed Dc Customer Site, US 84 days ago $107,900$195,050
MITRE ATT&CK Threat Intelligence Platform (TIP) Python PowerShell SPL KQL Elastic DSL AWS Azure O365 Cyber Kill Chain Diamond Model of Intrusion Analysis Anomali ThreatConnect MISP
Hybrid

Sr Threat Intelligence Investigator

Oracle

Austin, TX 6 days ago $104,200$234,600
TIPs CTI OSINT YARA Snort Suricata Bro/Zeek Windows UNIX/Linux macOS Cloud services Incident Response SOC Digital Forensics MALWARE ANALYSIS SQL CI/CD

Director, Threat Intelligence Research

Arctic Wolf

Remote (Remote - Usa - New York, US) 36 days ago $186,000$302,000
ATT&CK Python Threat Intelligence Cyber Threat Intelligence (CTI) Agentic Systems AI Native Analysis LLM Agents Retrieval Pipelines Automation Data Science Detection Engineering MSSP MDR EDR/XDR Incident Response PR and Communications Executive Briefings Podcasts Research Reports RSA Conference Black Hat FIRST SANS Summits FS-ISAC InfraGard ISAC
Remote