Remote job
Sr Cybersecurity Analyst - Cyber Threat Intelligence (CTI)
Job details
About this role
Role overview A senior analyst role on a Cyber Threat Intelligence (CTI) team focused on identifying, collecting, analyzing, and disseminating intelligence about cyber threats to a large enterprise. The position supports strategic, operational, and tactical intelligence objectives by turning technical indicators, behavioral observations, and internal security context into insights that inform detection, response, and risk prioritization. The analyst partners closely with incident response, reverse engineering, threat management, and vulnerability management teams.
Responsibilities - Serve as an all-source CTI analyst, collecting and cataloging threat information from internal telemetry, open-source research, vendor feeds, peer communities, and security investigations. - Analyze indicators of compromise, threat actor tactics, techniques, and procedures, intrusion patterns, malware behaviors, infrastructure, vulnerabilities, and campaign activity. - Develop subject-matter expertise on cybercriminal groups, emerging threats, and the technology platforms relevant to the organization. - Partner with incident response, reverse engineering, threat management, and vulnerability management teams to contextualize threats and refine detection. - Produce finished intelligence products such as threat assessments, actor profiles, incident support reporting, and recurring updates. - Apply structured analytic techniques and frameworks including the intelligence cycle, Diamond Model, Cyber Kill Chain, and MITRE ATT&CK. - Identify opportunities to improve CTI processes, tools, and workflows, and coordinate with external peer groups and information-sharing communities.
Requirements - Four-year degree in cybersecurity, intelligence studies, security studies, international relations, political science, computer science, or equivalent industry experience. - Three or more years of experience in cyber threat intelligence, security analysis, or a related discipline. - Demonstrated ability to collect, analyze, and synthesize qualitative and quantitative data from multiple sources and produce actionable judgments with appropriate confidence. - Experience applying analytic frameworks such as the intelligence cycle, Diamond Model, Cyber Kill Chain, MITRE ATT&CK, and structured analytic techniques. - Hands-on use of digital investigation and intelligence tools such as VirusTotal, VMRay, DomainTools, URLScan, Maltego, or comparable platforms. - Strong communication skills with the ability to translate complex technical concepts for business and technical audiences, and the ability to operate effectively in a fast-paced environment.
Benefits and work setup - Eligible for a comprehensive benefits package including medical, vision, dental, life insurance, 401(k), employee discount, short- and long-term disability, paid sick leave, paid national holidays, and paid vacation. - Remote or hybrid work arrangement considered based on team needs, with the ability to support time-sensitive investigations across time zones.