About Us
At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company.
At Cloudflare, we’re not looking for people who wait for a polished roadmap; we’re looking for the builders who see the cracks in the Internet that everyone else has simply learned to live with. We value candidates who have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools. Our culture is built on iteration, leveraging AI to ship faster today to make it better tomorrow, while ensuring that every improvement, no matter how small, is shared across the team to lift everyone up. If you’re the type of person who values curiosity over bureaucracy, and that AI is a partner in solving tough problems to keep the Internet moving forward, you’ll fit right in.
Available Locations: Washington DC
About The Team
Cloudforce One is Cloudflare’s threat operations and research team, responsible for identifying and disrupting cyber threats ranging from sophisticated cybercriminal activity to nation-state sponsored advanced persistent threats (APTs). Cloudforce One works in close partnership with external organizations and internal Cloudflare teams, continuously developing operational tradecraft and expanding ever-growing sources of threat intelligence to enable expedited threat hunting and remediation. Members of Cloudforce One are at the helm of leveraging an incredibly vast and varied set of data points that only one of the world’s largest global networks can provide. The team is able to analyze these unique data points, at massive scale and efficiency, synthesizing findings into actionable threat intelligence to better protect our customers.
About The Role
Cloudflare is a global system on a mission to make the internet better, safer, and more powerful every day. To help fulfill this mission, we are seeking a seasoned Intelligence Production Lead to own the end-to-end intelligence production pipeline within our Cloudforce One Organization. As the Intelligence Production Lead, you will do everything a threat intelligence technical writer does — translating complex threat research into clear, concise, and actionable content — and you will also own the process, quality bar, and delivery cadence for the team's finished intelligence. You will function as the managing editor and production manager for our threat intelligence output, setting the publishing calendar, running review and fact-check cycles, enforcing source-handling and classification standards, and serving as the final quality gate before customer-facing publication. You will collaborate closely with threat researchers, intelligence analysts, security teams, and external partners to prioritize what ships when, and you will mentor writers and analysts to raise the overall standard of the team's tradecraft and written product. This position requires an independent, results-oriented leader with a passion for cybersecurity and threat intelligence analysis, and the editorial judgment to represent adversary tradecraft with precision.
Key responsibilities include:
- Owning the end-to-end intelligence production pipeline — from research intake through drafting, editing, review, and publication — for intelligence reports, blog posts, briefing content, and technical documentation related to cyber threats and security research
- Setting and managing the production schedule and release calendar, coordinating across researchers and analysts to prioritize which intelligence products ship and when
- Serving as the final quality gate before customer-facing publication, running fact-check, technical-accuracy, and editorial review cycles and adjudicating changes to content
- Writing, editing, and publishing high-quality intelligence content, and translating raw researcher notes and technical analysis into accessible, well-structured, impactful narratives
- Developing, maintaining, and enforcing style guides, templates, classification markings, and source-handling and best-practice standards for threat intelligence briefings and publications
- Reviewing and refining threat research content to ensure clarity, consistency, technical precision, and adherence to Cloudflare's editorial standards
- Mentoring and coaching technical writers and analysts on writing craft, intelligence tradecraft, and reporting standards
- Collaborating with analysts and external partners to contextualize intelligence findings and communicate them effectively to customers and the public
- Partnering with marketing, design, PR, and communications teams to amplify intelligence content, manage workloads and deadlines, and develop a cohesive security narrative
Examples of Desirable Skills, Knowledge, and Experience
- Minimum 5 years of experience in a threat intelligence role within the Five Eyes (FVEY) community
- 7+ years of combined experience across technical writing, cybersecurity research, intelligence analysis, or a related field
- Minimum 3 years of technical copy editing experience
- Demonstrated experience leading or managing a threat intelligence reporting, editorial, or production function — owning the production workflow, setting cadence, managing review cycles, and serving as a final quality gate before publication
- Strong ability to craft — and to lead others in crafting — clear, concise, and engaging technical content for a variety of audiences, from technical defenders to executives
- Experience collaborating with cybersecurity researchers and analysts, with a strong understanding of intrusion analysis, incident response, malware, adversary TTPs, and network defense strategies
- Ability to use researcher notes and raw analysis to author articles about individual threats and campaigns, and to guide others in doing the same
- Understanding of geopolitical issues and their impact on cyber threats
- Familiarity with cyber threat intelligence frameworks such as the Cyber Kill Chain, MITRE ATT&CK, and the Diamond Model
- Familiarity with specific threat actor groups, their operations, and TTPs
- Experience with OSINT research and intelligence collection methodologies
- Background in intelligence or criminal investigation reporting
- Experience working in a threat intelligence or security operations center (SOC) environment
- Demonstrated operational security (OPSEC) awareness and experience with the secure handling of sensitive information
- Strong research, proofreading, and editing skills with a keen attention to detail
- Experience communicating with internal teams to negotiate suggested changes to edited content and answer questions on style, grammar, and voice
- Strong collaboration and leadership skills to work with analysts, marketing, design, and PR teams to coordinate workloads, deadlines, and responsibilities
- Excellent project management and organizational skills, with the ability to handle multiple priorities and competing deadlines in a fast-paced environment
- Proficiency in using Google Suite and content management systems (e.g., WordPress, Jira, or similar workflow tools)
- Bachelor's degree in English, Journalism, Cybersecurity, Computer Science, or a related field, or equivalent experience
Bonus Points
- Experience usin