1

Senior Security Engineer, Threat Intelligence

1Password
10 hours ago
Full-time
Remote
Worldwide
Remote Engineering
1Password is growing faster than ever. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing and the Utah Mammoth.

About 1Password

At 1Password, we’re building the foundation for a safe, productive digital future. Our mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application sign-in is secure, and every device is trusted. We innovated the market-leading enterprise password manager and pioneered Extended Access Management, a new cybersecurity category built for the way people and AI agents work today. As one of the most loved brands in cybersecurity, we take a human-centric approach in everything from product strategy to user experience. Over 180,000 businesses, from Fortune 100 leaders to the world’s most innovative AI companies, trust 1Password to help their teams securely adopt the SaaS and AI tools they need to do their best work.

If you're excited about the opportunity to contribute to the digital safety of millions, to work alongside a team of curious, driven individuals, and to solve hard problems in a fast-paced, dynamic environment, then we want to hear from you. Come join us and help shape a safer, simpler digital future.

At 1Password, security isn’t just a feature – it’s our foundation. The Security Operations team’s mission is to protect the business by securing the systems, tools, and processes that power how we work. Our mission is to keep 1Password productive, resilient, and safe through proactive monitoring, rapid response, and continuous improvement of preventative and detective controls.

The Cyber Threat Intelligence (CTI) function helps drive intelligence-led security. Our goal is not just to track threats, but to turn adversary behavior and emerging techniques into real improvements across detection, response, and adversary simulation.

This is not a traditional, reporting-heavy threat intelligence role.

This role is focused on operationalizing intelligence. You will build automation, integrate intelligence into security tooling, develop intelligence-driven hunting hypotheses, and help ensure threat intelligence directly influences how we detect, respond to, and simulate attacks.

This is a high-impact role that blends adversary research, technical engineering, and cross-functional collaboration.

This role reports to the Manager of Detection & Response.

What You’ll Do

- Track and analyze threat actors, campaigns, and techniques targeting identity and cloud environments

- Translate intelligence into actionable detections, hunting hypotheses, and adversary simulations

- Partner with Detection Engineering, Incident Response, and other security teams to drive security decisions

- Produce clear technical assessments and executive-ready insights to inform risk prioritization

- Build and maintain automated p