Senior Cyber Threat Intelligence Analyst
Position Summary:
We are seeking an experienced Senior Cyber Threat Intelligence Analyst with 5–7 years of cybersecurity experience to strengthen our Threat Intelligence capability. The ideal candidate will be responsible for identifying, analyzing, and communicating cyber threats targeting the organization while supporting proactive defense, incident response, vulnerability management, and executive decision-making. The candidate should possess excellent analytical and communication skills and be capable of translating technical intelligence into actionable recommendations for both technical and non-technical stakeholders.
Key Responsibilities:
Monitor, collect, analyze, and prioritize cyber threat intelligence from commercial, open-source, government, industry, and internal sources.
Research emerging cyber threats, ransomware groups, nation-state actors, hacktivists, and cybercriminal campaigns relevant to the organization.
Produce actionable tactical, operational, and strategic intelligence reports for SOC, Incident Response, leadership, and business stakeholders.
Develop and maintain threat actor profiles, including capabilities, motivations, infrastructure, and Tactics, Techniques, and Procedures (TTPs).
Identify, analyze, validate, and enrich Indicators of Compromise (IOCs), Indicators of Attack (IOAs), and adversary infrastructure.
Map adversary behaviors to the MITRE ATT&CK framework and provide detection and mitigation recommendations.
Support Incident Response investigations by providing threat intelligence, IOC enrichment, campaign attribution, malware context, and attack correlation.
Conduct intelligence-driven threat hunting by developing hypotheses and identifying emerging attack patterns across enterprise environments.
Analyze phishing campaigns, malicious domains, suspicious URLs, malware samples, and infrastructure used by threat actors.
Monitor brand impersonation, typosquatting, malicious domains, credential harvesting sites, and phishing campaigns targeting the organization.
Evaluate vulnerabilities, zero-day exploits, and Proof-of-Concept (PoC) exploits to assess organizational risk and recommend prioritization.
Collaborate with Detection Engineering to develop and improve detections, use cases, and threat-based analytics.
Recommend IOC blocking and protective controls across EDR, SIEM, email security, firewall, DNS, web proxy, and cloud security platforms.
Support Purple Team, Red Team, and tabletop exercises by providing adversary intelligence and realistic attack scenarios.
Track geopolitical events, industry trends, and global cyber incidents that may impact the organization's threat landscape.
Develop intelligence requirements and continuously improve intelligence collection plans based on organizational priorities.
Create executive summaries, threat advisories, flash alerts, and technical intelligence reports tailored to different audiences.
Present threat intelligence findings, emerging risks, and recommended actions to technical teams, leadership, and executive stakeholders.
Develop and maintain Cyber Threat Intelligence playbooks, standard operating procedures, knowledge articles, and threat repositories.
Support security awareness initiatives by providing intelligence on current phishing campaigns and emerging attacker techniques.
Mentor junior analysts by providing technical guidance, reviewing intelligence products, and promoting intelligence best practices.
Stay current on evolving attacker methodologies, new technologies, threat intelligence frameworks, and industry best practices through continuous research and professional development.
Preferred Skills:
Experience with commercial and open-source threat intelligence platforms.
Strong understanding of the MITRE ATT&CK Framework, Cyber Kill Chain, and adversary Tactics, Techniques, and Procedures (TTPs).
Experience with enterprise security platforms.
Experience performing IOC enrichment, and threat actor attribution.
Familiarity with threat hunting methodologies and intelligence-driven detection engineering.
Knowledge of cloud security threats, identity attacks, ransomware, email security, web application attacks, and emerging cyber threats.
Experience with security research tools, and OSINT sources.
Advanced technical writing and reporting skills with the ability to produce tactical, operational, and executive-level intelligence reports.
Excellent verbal, written, and presentation skills with the ability to communicate technical concepts to both technical and non-technical audiences.
Strong analytical, investigative, and problem-solving abilities.
Ability to work independently while effectively collaborating with cross-functional global teams.
Strong stakeholder management skills with the ability to influence decisions through intelligence-driven recommendations.
Excellent attention to detail, organizational skills, and the ability to manage multiple priorities in a fast-paced environment.
Self-motivated with a continuous learning mindset and a passion for staying current on the evolving cyber threat landscape.
Required Qualifications:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.
5–7 years of experience in Cyber Threat Intelligence, Incident Response, SOC, or Threat Hunting.
Strong understanding of:
Cyber threat landscape
Malware analysis concepts
Phishing campaigns
Threat actor tactics and motivations
MITRE ATT&CK Framework
Cyber Kill Chain
Experience analyzing:
Indicators of Compromise (IOCs)
Indicators of Attack (IOAs)
Threat campaigns
Threat actor attribution
Knowledge of:
Email security
DNS
Web attacks
Cloud security
Identity attacks
Credential theft
Ransomware
Experience with threat intelligence platforms and feeds.
Strong report writing and documentation skills.
Excellent verbal and written communication skills.
Ability to present technical findings to executive leadership.
Strong analytical and critical thinking skills.
Ability to work independently while collaborating across global teams.
Preferred Certifications:
Certified Threat Intelligence Analyst (CTIA) - Strongly Preferred
Certified Information Security Manager (CISM) - (Preferred but not required)
Job Details
Experience
Senior