KnowBe4 is the global leader in Human Risk Management, trusted by over 70,000 organizations worldwide to secure their employees and AI agents for over 15 years. We're pioneering a new era of security. AI-powered since 2016. And market-leading since day one.
Our HRM+ combines continuous risk intelligence, advanced technical defenses, and personalized training to help organizations build strong security cultures. We help organizations understand, measure, and reduce human risk across their entire workforce, defending against, deepfakes, and emerging AI-powered threats.
We believe that protecting organizations from cyberthreats and creating a positive environmental impact go hand in hand. True resilience is collective, it requires us to protect our people, our data, and our planet.

As an Email Security Analyst at KnowBe4's Threat Labs, you'll conduct hands-on analysis of real-world email-based cyber threats by investigating suspicious emails to identify phishing, malware, and social engineering attacks, extracting indicators of compromise (IOCs) like URLs, domains, and file hashes, tracking ongoing threat campaigns using OSINT tools and mapping them to MITRE ATT&CK frameworks, and contributing technical research blogs and intelligence documentation that helps protect users globally—all while working alongside experienced security researchers in a collaborative environment using industry-standard tools like VirusTotal, URLscan.io, and Python scripting to turn raw threat data into actionable cybersecurity intelligence
Responsibilities:
- Manual Threat Analysis: Investigate and classify suspicious emails to identify phishing, malware, spam, and benign attempts from real-world attack scenarios using our internal tooling.
- IOC Extraction: Extract and document Indicators of Compromise—URLs, domains, file hashes, sender information—from email headers, body content, and attachments.
- Campaign Tracking: Research and monitor ongoing email-based threat campaigns, mapping attacker tactics, techniques, and procedures (TTPs) to MITRE ATT&CK.
- Intelligence Contribution: Build and maintain internal threat intelligence datasets, detection patterns, and research documentation.
- Collaboration: Partner with senior researchers and participate in threat reviews to share observations and enhance detection quality.
- Growth: Keep learning! Share discoveries, explore new analysis techniques, and raise the bar for the team.
Requirements:
- Educational Background: A university degree is not required. We actively encourage applications from individuals with vocational IT training, technical diplomas, relevant certifications (e.g., CompTIA IT Fundamentals), or those returning to the workforce who possess strong digital literacy.
- 1-2 years experience in the field
- An understanding of common cybersecurity threats (e.g., domain spoofing, spear-phishing)
- Exceptional attention to detail and the stamina to maintain focus during highly repetitive analytical tasks
- Experience handling large datasets
Our Fantastic Benefits
We offer company-wide bonuses based on monthly sales targets, employee referral bonuses, adoption assistance, tuition reimbursement, certification reimbursement, and certification completion bonuses - all in a modern, high-tech, and fun work environment. For more details about our benefits in each office location, please visit
www.knowbe4.com/careers/benefits.
Note: An applicant assessment and background check may be part of your hiring procedure.
Individuals seeking employment at KnowBe4 are considered without prejudice to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation or any other characteristic protected under applicable federal, state, or local law. If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please visit www.knowbe4.com/careers/request-accommodation.
No recruitment agencies, please.