← All jobs · Robinhood

Staff Security Analyst, Threat Intelligence

Robinhood ·
32
AI-Agency
B25 U45
📍 Toronto, CA Staff 8–12+ yrs
SQLPythonOSINT toolingSIEMSOAROpenCTIAWSGCPAzure
TL;DR

Staff Security Analyst, Threat Intelligence at Robinhood. Proactively hunt criminal ecosystems targeting the platform and customers, build scalable threat detection systems, and coordinate infrastructure takedowns. Requires 8–12+ years experience including 3–5+ years at senior/staff level in threat intelligence or cyber investigations.

Apply at Robinhood →
you'll be redirected to the company's career page

Job description

Join us in building the future of finance.

Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards. 

The Threat Intelligence team reduces organizational risk by rapidly detecting, understanding, and disrupting adversary activity. We research criminal ecosystems targeting our brand, customers, and infrastructure, and work with partners to translate that intelligence into detections, controls, and customer protections. Our work enables Security, Engineering, Trust & Safety, and executive leaders to focus resources where risk is highest. We operate with a strong sense of ownership, clear communication, and a commitment to protecting customers so they can confidently participate in the financial system!

As a Staff Security Analyst, Threat Intelligence, you will operate at the forefront of advanced and evolving threats targeting Robinhood and our customers. You will actively hunt for emerging phishing, scam, impersonation, fraud, and infrastructure abuse campaigns while building scalable systems that turn intelligence into action. This role combines hands-on investigation, program design, mentorship, and stakeholder engagement. Your work will shape proactive controls, influence product and security decisions, and strengthen our overall threat defense strategy.

This role is based in our Toronto, Canada office(s), with in-person attendance expected at least 3 days per week. 

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

What you’ll do

What you bring

Nice to have

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards. 

The Red Team team’s mission is to proactively identify and simulate real-world threats against Robinhood’s platforms, properties, and people. Through red teaming and adversarial simulations, the team evaluates security controls, uncovers vulnerabilities, and helps continuously strengthen Robinhood’s overall security posture in close partnership with Detection & Response, Physical Security, and Engineering.

As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response. You’ll leverage threat modeling, penetration testing, and research-driven techniques to emulate sophisticated attackers, while collaborating cross-functionally to improve defenses and shape more secure systems.

This role is based in our Toronto, Canada office(s), with in-person attendance expected at least 3 days per week. 

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

What you’ll do

What you bring

Bonus points:

What we offer

 

Our team is committed to providing an inclusive and welcoming interview experience for all candidates. If you require a specific accommodation during the application or interview process due to a physical or mental condition, please complete this Applicant Accommodation Form to notify our team. The form should only be completed if you need a specific accommodation.

AI Usage Disclosure: Robinhood uses artificial intelligence (AI) tools to support parts of our recruiting process. These tools enhance the efficiency and consistency of our hiring process; however, all hiring decisions are made by our hiring teams.

Vacancy Notice: This job posting represents an existing vacancy that we are actively seeking to fill.

In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed.

Base Pay Range:

Toronto, ON
$144,500$170,000 CAD

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Apply at Robinhood →

More open roles at Robinhood

Robinhood ·
Staff Machine Learning Engineer, Agentic
📍 Bellevue, US 🛠 AI tools welcome at work · Staff
Staff Machine Learning Engineer at Robinhood building agentic AI systems. Defines evaluation frameworks, guides model selection, and ensures agent systems meet standards for correctness, safety, latency, and user satisfaction across the organization.
LLMagentic systemsevaluation frameworks
83
AI-core
Robinhood ·
Senior Machine Learning Engineer, Agentic
📍 Menlo Park, US 🛠 AI tools welcome at work · Senior
Senior Machine Learning Engineer at Robinhood building production AI agents for financial products. Focus on evaluation harnesses, optimization pipelines (DPO, PPO), and deploying fine-tuned models with robust monitoring.
PythonLLMDPOPPOagentic systems
83
AI-core
Robinhood ·
Staff Product Manager, Cortex
📍 Menlo Park, US 🛠 AI tools welcome at work · Staff
Staff Product Manager for Cortex, Robinhood's consumer AI assistant. Lead product strategy from research tool to AI-powered financial planning, owning roadmap, technical direction, and evaluation frameworks across investing, spending, and saving.
LLMRAGagentic systems
79
AI-core
Robinhood ·
Senior Security Engineer, AI Vulnerability Management
📍 Toronto, CA 🛠 AI tools welcome at work · Senior
Senior Security Engineer at Robinhood building AI-driven vulnerability management systems. Focus on architecting agentic AI agents for automated triage, remediation, and risk prioritization at scale.
GoPythonAWSKubernetesLangChainSnyk
78
AI-core
Robinhood ·
Senior Security Engineer, AI Vulnerability Management
📍 Menlo Park, US 🛠 AI tools welcome at work · Senior
Senior Security Engineer at Robinhood building AI-driven vulnerability management systems. Focus on architecting agentic AI for automated security triage, remediation, and risk-based prioritization across Kubernetes and AWS infrastructure.
GoPythonLangChainAWSKubernetesSnyk
78
AI-core