Threat Intelligence / Reverse Engineering Investigator
Adobe
- Location
- San Jose
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 221 approvals (FY2023)
- Posted
- Sep 11, 2026
About this role
The Threat Intelligence / Reverse Engineering Investigator identifies, investigates, and disrupts fraud, abuse, and adversarial activity targeting Adobe's products, services, and ecosystem. Through threat intelligence, reverse engineering, technical investigations, detection engineering, and AI-driven capabilities, the team delivers actionable intelligence and scalable mitigations that strengthen platform resilience and protect Adobe, its customers, and its ecosystem. Key Responsibilities & Areas of Impact - The responsibilities below represent the primary areas of focus for this role and may evolve alongside emerging risks, business priorities, and organizational needs. Threat Intelligence & Adversary Research Monitor and assess adversarial activity, fraud, abuse, and emerging threats impacting Adobe products, services, and business operations. Assess threat actors, campaigns, and evolving adversarial behaviors to understand risk exposure and support proactive threat mitigation efforts. Leverage open- and closed-source intelligence, industry partnerships, intelligence-sharing communities, and emerging data sources to enhance threat visibility and intelligence collection capabilities. Produce intelligence assessments and threat reporting that inform detection, investigations, and operational decision-making. Reverse Engineering, Investigations & Detection Reverse engineer and analyze malicious tooling, automation frameworks, browser extensions, attack infrastructure, and other mechanisms used to target or abuse Adobe services, documenting attacker methodologies and identifying opportunities for disruption. Evaluate emerging technologies, including AI-enabled attack techniques, adversarial tooling, and automation frameworks, to identify evolving threats and develop scalable detection and mitigation strategies. Conduct complex technical investigations into fraud, abuse, account compromise, platform misuse, and other malicious activity, including escalation analysis, attribution, root cause determination, and identification of coordinated threat activity. Discover exploited or potential vulnerabilities and partner with stakeholders to develop mitigation strategies, remediation plans, and long-term risk reduction approaches. Translate intelligence and investigative findings into scalable detection, monitoring, prevention, and enforcement capabilities. Develop and maintain investigative methodologies, detection workflows, and operational processes that support effective threat detection, analysis, and response. Strategic Collaboration & Influence Partner with Product, Security, Engineering, Data Science, Risk, Trust & Safety, and other stakeholders to mitigate threats, improve platform resilience, and strengthen customer protection. Support incident response and emerging threat investigations by providing intelligence, attribution analysis, investigative expertise, and strategic guidance. Develop executive-ready briefings, investigative summaries, and risk assessments that communicate findings, business impact, and strategic recommendations. Advise stakeholders on intelligence-driven risk mitigation, fraud prevention, abuse prevention, and vulnerability management strategies. Serve as a subject matter expert on adversarial behavior, emerging threats, and fraud trends, helping inform long-term threat reduction and platform protection strategies. Qualifications & Core Competencies : Exceptional written, verbal, and presentation skills, with the ability to translate complex investigative, intelligence, and technical findings into clear, actionable recommendations for technical, operational, and executive audiences. Strong analytical and investigative skills, with the ability to identify patterns, assess risk, and transform complex data and intelligence into meaningful insights that drive informed decision-making. Creative and strategic