> Markdown version of [/jobs/ext/3014274-threat-intelligence-specialist](https://www.wearedevelopers.com/jobs/ext/3014274-threat-intelligence-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Threat Intelligence Specialist - **Company:** KODEX INC. - **Location:** San Francisco, CA, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Data Analysis, Digital Forensics, Domain Name System (DNS), Fraud Prevention and Detection, Open Source Technology, Open Source Intelligence, Mitre Att&ck, Cyber Threat Analysis, Cybercrime - **Published:** September 20, 2026 - **Apply:** https://startup.jobs/threat-intelligence-specialist-latam-kodex-10131227 ## About the Role * Minimum of 3 years of hands-on experience in threat intelligence, identity fraud investigation, or a related analytical discipline. * Demonstrated proficiency in pivot-based OSINT (passive DNS, ASN attribution, WHOIS/RDAP, certificate transparency, email infrastructure analysis). * Fluent in English, plus Brazilian Portuguese or Spanish; proficiency in all 3 is strongly desired. * Exceptional verbal and written communication skills. * Ability to seamlessly operate across various time zones. * Self-starter with the ability to work autonomously. * Excellent interpersonal skills to engage with diverse management levels., * Adversarial Knowledge: Direct experience with account takeover (ATO), synthetic identity fraud, data theft/extortion, spearphishing and targeted intrusions, underground cybercrime ecosystems, and organizational-level impersonation. * Technical Autonomy: Expertise in network and host based security controls, as well as designing, working with, and training others on homegrown and open-source tools (Shodan, Censys, VirusTotal, APIs) without dependency on a specific commercial vendor platform. * Intelligence Tradecraft: Proficiency in the operational application of the MITRE ATT&CK framework. * Domain Expertise: Background in law enforcement (cyber investigation, financial crimes, or digital forensics) or the legal process ecosystem (subpoenas, EDRs, court orders). * Sector Background: Experience in FinTech, crypto, or identity verification platforms where identity fraud is the primary threat vector. ## Description We're seeking a Threat Intelligence Specialist to spearhead our efforts in enhancing law enforcement operations across the LATAM Region. The ideal candidate will possess practical experience in law enforcement, adept relationship-building skills, and the ability to swiftly address threat detections with a critical, logical, and analytical mindset. As a key guardian of our platform's security, you'll play a vital role in ensuring the safety of our clients and their end-users, enriching their experience in ways that are indispensable., * Analyze data and information to identify confirmed relationships. * Research and document threat actor tactics, including the creation of fake law enforcement personas and agencies, the compromise of legitimate agent accounts and credentials, and the abuse of trusted access for fraudulent purposes. * Initiate communication with international government agencies across different time zones via calls and emails. * Establish and nurture relationships with law enforcement agencies and personnel worldwide. * Foster cross-departmental engagement and streamline workflows. * Respond promptly and efficiently to user needs. * Stay abreast of industry and market trends. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Data Science on Software Data](https://www.wearedevelopers.com/videos/162-data-science-on-software-data) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)