CrawlJobs Logo

Senior Cyber Threat Intelligence Analyst

United Kingdom, Preston 27.03 - 36.30 GBP / Hour · Job Posted May 14, 2026
Apply Position
Job Link Share

Job Description

BAE Systems is seeking a skilled Cyber Threat Intelligence Practitioner to support tactical and operational cyber threat intelligence activities across the organisation. In this role, you will take ownership of defined geographic or thematic areas of responsibility, producing high‑quality intelligence that enables proactive cyber defence. Working closely with cyber operations, collections teams, and external partners, you will help ensure BAE Systems remains intelligence‑led, threat‑aware, and resilient in an evolving cyber landscape.

Job Responsibility

  • Produce operational and tactical cyber threat intelligence reports tailored to technical and senior audiences
  • Monitor the cyber threat landscape, including OSINT, dark web sources, internal telemetry, and external intelligence feeds
  • Investigate threat actors, campaigns, and tactics, techniques, and procedures (TTPs) to identify indicators of compromise
  • Provide timely intelligence support during security incidents, aiding containment and remediation efforts
  • Deliver threat briefings to internal stakeholders and trusted external partners
  • Support Requests for Information (RFIs) and Intelligence Requirements (IRs) in collaboration with CTI collections teams
  • Advise on organisational Cyber Threat Levels based on intelligence assessments
  • Act as a trusted advisor, translating complex intelligence into clear, actionable insight

Requirements

  • Strong experience within a Cyber Threat Intelligence (CTI) discipline
  • A solid understanding of cyber threat actors, geopolitics, and global threat activity
  • Awareness of intelligence disciplines such as OSINT, SIGINT, HUMINT, and their application
  • Knowledge of structured analytical techniques and intelligence best practice
  • Experience applying MITRE ATT&CK / D3FEND / ENGAGE frameworks in an operational context
  • Clearance: BPSS + SC + UK EYES

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior Cyber Threat Intelligence Analyst

8 matching positions

Cyber Threat Intelligence Analyst

The Cyber Threat Intelligence Analyst (CTI) plays a vital role in enhancing Amge...
Location
Location
Portugal , Lisbon
Salary
Salary:
Not provided
amgen.com Logo
Amgen
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master’s degree in Cybersecurity, Information Technology, Intelligence Studies, or related field OR Bachelor’s degree with 1 year of experience in Cyber Threat Intelligence, Threat Hunting, or a similar security role OR Diploma with 2 years of relevant experience in threat intelligence or related cybersecurity functions
  • Strong understanding of the cyber threat landscape, adversary tactics (MITRE ATT&CK), and threat actor methodologies
  • Experience conducting intelligence analysis using OSINT, dark web monitoring, threat reports, and threat intelligence platforms
  • Ability to write concise, impactful threat intelligence reports tailored to various audiences
  • Familiarity with cyber kill chain, diamond model, and intelligence lifecycle
  • Basic scripting knowledge (Python, PowerShell) to support enrichment and automation of threat intelligence
Job Responsibility
Job Responsibility
  • Collect, analyze, and assess cyber threat intelligence from open-source intelligence (OSINT), commercial feeds, government sources, and internal telemetry
  • Develop and maintain profiles of threat actors, their capabilities, infrastructure, and campaigns relevant to Amgen’s industry
  • Produce actionable intelligence reports, threat advisories, and strategic briefings for technical teams and senior stakeholders
  • Correlate threat intelligence with internal events to support investigations and improve detection capabilities
  • Assist in the enrichment of threat hunting and incident response efforts by providing contextual intelligence and TTP mapping
  • Track geopolitical and sector-specific threats to anticipate risks that could affect business operations
  • Collaborate with SOC and engineering teams to improve detection rules and defense mechanisms based on threat intelligence findings
  • Maintain situational awareness of the cyber threat landscape and emerging risks to healthcare, life sciences, and biotechnology sectors
  • Support the configuration and maintenance of threat intelligence platforms (TIPs) and threat feed integrations
  • Contribute to purple team and threat emulation exercises to validate defensive controls and response capabilities
What we offer
What we offer
  • Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide
  • Modern Tech Stack – Cloud-first, automation-focused, AI-powered
  • Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams
  • Continuous Learning – Access to certifications, trainings, mentorship, and career mobility
  • AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being
  • Flexibility – Hybrid work model with time split between our Lisbon office and remote work
  • Fulltime
Read More
Arrow Right

Cyber Threat Intelligence Analyst

The Intelligence Lead Analyst is a senior level professional responsible for dri...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience
  • Working knowledge in one or more of the following areas: Advanced Persistent Threat, Third Party Risks/Threats, Cybercrime, Extremist Groups and Cyber Terrorists, Hacktivism, Distributed Denial of Service attacks, Fraud, Malware, Mobile Threats
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Bachelor’s degree/University degree or equivalent experience
  • Master’s degree preferred
Job Responsibility
Job Responsibility
  • Analyze regional threat data and determine a correlation if any, to existing intelligence requirements
  • Monitor and research cyber threats with a direct or indirect impact to the Citi brand
  • Research and identify malicious activity by performing post-mortem analysis on logs, traffic flows, and other activities
  • Conduct intrusion analyses to ascertain the impact of an attack, and develop mitigation techniques for future attacks
  • Evaluate networks and programs to assess potential weaknesses and points of entry
  • Analyze and present to senior leadership discovered patterns to forecast future cyber-attacks and their potential impact
  • Liaise with intelligence communities, law enforcement, industry partners, peer financial institutions, and information sharing communities
  • Triage, process, analyze, and disseminate intelligence alerts, reports, and briefings
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.
  • Fulltime
Read More
Arrow Right

Senior Threat Intelligence Analyst

To deliver timely, actionable threat intelligence that enables the organization ...
Location
Location
Finland , Espoo
Salary
Salary:
5600.00 - 6500.00 EUR / Month
iceye.com Logo
ICEYE
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience (5+ years) in information security, threat intelligence, national CERT/CSIRT, intelligence, or law enforcement environments
  • Extensive hands-on experience (minimum 4 years) using threat intelligence platforms (e.g. MISP) and analysis frameworks such as MITRE ATT&CK in a customer-facing or operational role
  • Strong capability in analyzing infrastructure-related threats and conducting open-source, deep web, and dark web research
  • Demonstrated expertise in utilizing STIX/TAXII feeds and automated intelligence sharing solutions
  • Solid understanding of the Finnish Cyber Security Act (NIS2), GDPR, and applicable local regulations
  • Industry-recognized certifications such as GIAC Cyber Threat Intelligence (GCTI) or equivalent
  • Excellent English communication skills, with the ability to translate complex threat intelligence into actionable insights for diverse audiences
Job Responsibility
Job Responsibility
  • Integrating actionable threat intelligence into SOC, incident response, and vulnerability management workflows to improve detection and response effectiveness
  • Analyzing malicious infrastructure, malware, and adversary artifacts to extract high-fidelity IOCs and map TTPs using frameworks such as MITRE ATT&CK
  • Enabling threat detection, attribution, and information sharing through the effective use of threat intelligence platforms, STIX/TAXII feeds, and automated intelligence sharing mechanisms
  • Producing and disseminating clear, timely operational and tactical intelligence products, including threat briefings, reports, and summaries tailored to technical teams and senior leadership
  • Providing expert intelligence support during major security incidents by correlating external threat data with internal telemetry
  • Enhancing threat hunting activities by supplying contextual intelligence that identifies emerging threats and suspicious behaviors within the environment
  • Delivering actionable cyber resilience recommendations based on threat intelligence and OSINT analysis, aligned with regulatory and legal requirements
What we offer
What we offer
  • Occupational healthcare, occupational, and accident insurance
  • A yearly benefit budget to spend as you wish (i.e. on sport, transport, bike benefit, wellness, lunch, etc.)
  • Phone subscription with iPhone of choice
  • Relocation support (i.e. flight tickets, accommodation, relocation agency support)
  • Time for self-development, research, training, conferences, or certification schemes
  • Inspiring and collaborating offices and silent workspaces enable you to focus
  • Fulltime
Read More
Arrow Right

Senior Applied Threat Intelligence Analyst

Security represents the most critical priorities for our customers in a world aw...
Location
Location
United States , Redmond
Salary
Salary:
119800.00 - 234700.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field. OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR equivalent experience.
  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Job Responsibility
Job Responsibility
  • Author and publish high-impact threat intelligence reports (actor profiles, campaign analyses, trend reports, TTP deep-dives, vulnerability profiles) for both customer-facing and internal audiences.
  • Build and refine the pipelines, tooling, and workflows that allow Microsoft to stream insightful cyber threat intelligence to customers machine speed.
  • Represent Microsoft Threat Intelligence in customer briefings, industry conferences, and cross-industry working groups.
  • Translate technical findings into clear, actionable insights for security operations teams and technical stakeholders.
  • Partner with product, engineering, and research teams to operationalize intelligence into Microsoft security platforms (e.g., Defender XDR, Sentinel, customer briefings).
  • Contribute to scalable workflows and pipelines that improve how threat intelligence is generated, refined, and delivered to customers.
  • Support customer engagements (briefings, responses, and discussions) with accurate and timely intelligence insights.
  • Collaborate within the team to improve analytic tradecraft, knowledge sharing, and intelligence quality.
  • Fulltime
Read More
Arrow Right
New

Senior Intelligence Analyst

Are you looking for a career move that will place you in a global financial orga...
Location
Location
Hungary , Budapest
Salary
Salary:
12211560.00 - 20474640.00 HUF / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in a combination of cyber threat intelligence, financial crime investigation, fraud analysis, or law enforcement roles with a focus on BEC, wire fraud, or cyber-enabled financial crime. Prior experience in a financial institution, government agency, law enforcement, or financial intelligence unit (FIU) environment is strongly preferred.
  • Bachelor's degree (or equivalent experience) required
  • advanced degrees are welcomed, preferably in a STEM major, computer science, cyber security, or cyber technology.
  • Certifications from EC-Council, GIAC, (ISC)² [CISSP, C/EH, GCIA, CCNA] or relevant technical or specialty areas are a plus, or willingness to earn within 12 months of joining.
  • Subject matter expertise in business email compromise — including vendor email compromise (VEC), CEO fraud, payroll diversion, real estate wire fraud, and invoice manipulation schemes — with a thorough understanding of actor tactics, techniques, and procedures at each stage of the attack lifecycle.
  • Strong understanding of the industry's most frequently targeted by BEC actors, including real estate and title companies, legal firms, healthcare, manufacturing, construction, government contractors, and financial services, with the ability to tailor intelligence products to sector-specific risk profiles.
  • Proficiency in open-source intelligence (OSINT) techniques including domain and email header analysis, WHOIS and passive DNS investigation, social media intelligence, dark web monitoring, and fraudulent infrastructure identification.
  • Experience with link analysis platforms such as Palantir, Maltego, or i2 Analyst's Notebook to map actor networks, financial flows, and entity relationships across complex multi-jurisdictional cases.
  • Working knowledge of financial crime typologies including trade-based money laundering, layering techniques, and the use of cryptocurrency exchanges and peer-to-peer platforms to convert and obscure BEC proceeds.
  • Experience with scripting languages such as Python or similar tools for automating intelligence collection, data enrichment, and pattern analysis across large datasets.
Job Responsibility
Job Responsibility
  • Serve as the primary subject matter expert on business email compromise, wire fraud, and cyber-enabled financial crime, maintaining current and comprehensive knowledge of actor methodologies, fraud typologies, and evolving attack vector.
  • Apply in-depth disciplinary knowledge to triage, process, analyze, intelligence alerts, reports, and briefings
  • Monitor and research cyber threats (with a strong focus on Business Email Compromise (BEC) and wire fraud) with a direct or indirect impact to the Citi brand
  • Monitor open-source, dark web, and proprietary intelligence sources for emerging BEC campaigns, compromised credential markets, fraudulent domain registrations, and threat actor communications targeting financial institutions and their clients
  • Assess cyber threat data and correlate with existing understanding of cyber threats impacting the Citi franchise
  • Ascertain the impact of an attack and develop threat trends to assess their overall impact and inform senior decision makers
  • Produce timely, accurate, and actionable intelligence reports, bulletins, and briefings for consumption by fraud operations, client advisory teams, compliance, legal, and senior leadership stakeholders.
  • Engage in liaison activities with intelligence communities, law enforcement, industry partners, peer financial institutions, and information sharing communities
  • Complete the daily operational components of the intelligence mission
  • Assume informal/formal mentor role within teams and assist with the coaching and training of new team members
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right
New

Intelligence Senior Analyst

Citi Security and Investigative Services (CSIS) is a full-service security and i...
Location
Location
United States , Charlotte; Tampa
Salary
Salary:
90080.00 - 135120.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
July 02, 2026
Flip Icon
Requirements
Requirements
  • Minimum of 5 years’ experience relating to open source intelligence analysis for investigations, threat monitoring, or intelligence targeting
  • Previous analytical experience within corporate investigations, the intelligence community, or law enforcement preferred
  • Minimum bachelor’s degree / University degree
  • Certifications from EC-Council, ACFE, SANS Institute, IntelTechniques, or graduate certification(s) in relevant technical or specialty areas a plus
  • Demonstrable ability to collect, evaluate, interpret, and analyze data, with a strong knowledge of analytical techniques
  • Strong analytical skills to filter, prioritize and validate potentially complex and dynamic material from multiple sources
  • Proven record of accomplishment in information gathering, monitoring, and analysis pertaining to matters in various geographical locations, including strong use of commercial databases, surface, deep and dark web, and social media
  • Excellent communication (oral and written) skills with attention to detail
  • Established project management skills – ability to coordinate and prioritize several projects simultaneously while working with a globally dispersed team of contributors and stakeholders
  • Taking ownership in projects and making suggestions for improvement
Job Responsibility
Job Responsibility
  • Lead open source analysis for CSIS investigations involving fraud, cyber, insider, and other security threats facing the firm
  • Use advanced techniques to monitor threats and collect data from multiple open sources, including social media, the deep and the dark web, to support intelligence questions
  • Apply advanced qualitative and quantitative analytical methodologies to turn information and data into actionable intelligence, including but not limited to link analysis and digital footprint analysis
  • Anticipate, identify and develop innovative solutions to intelligence gaps
  • Partner with internal and external stakeholders on open source methodologies and tools where appropriate to close identified gaps
  • Deliver analysis and findings in the form of high quality, succinct, and straightforward written products and oral briefings
  • Manage multiple projects simultaneously with a proactive, self-motivated approach, ensuring timely delivery of high-quality results while collaborating effectively with global teams
What we offer
What we offer
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
  • Fulltime
!
Read More
Arrow Right

Staff Security Analyst, Threat Intelligence

We are building an elite team, applying frontier technologies to the world’s big...
Location
Location
United States , Menlo Park
Salary
Salary:
191000.00 - 225000.00 USD / Year
robinhood.com Logo
Robinhood
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8–12+ years of total experience, including 3–5+ years operating at a senior or staff-level scope in threat intelligence, brand protection, or cyber investigations
  • Hands-on experience tracking criminal ecosystems tied to phishing, scams, impersonation, fraud, and infrastructure abuse, and the ability to move from isolated indicators to campaign- and actor-level analysis
  • Deep familiarity with domain registration patterns, DNS and certificate transparency analysis, cloud and hosting abuse across providers (e.g., AWS, GCP, Azure, VPS), and attacker monetization methods
  • Experience using OSINT tooling, SQL, Python, notebooks, SIEM or SOAR platforms, OpenCTI, and case management systems to analyze data and automate workflows
  • Ability to translate complex technical threats into clear business risk for technical teams and executive audiences through strong written and verbal communication
  • Experience mentoring others or leading initiatives across teams, with a high level of accountability and sound risk judgment in ambiguous situations
Job Responsibility
Job Responsibility
  • Proactively hunt and map criminal ecosystems targeting Robinhood and its customers, then translate intelligence into scalable systems and coordinated defenses that disrupt adversaries before they cause harm
  • Build and operationalize a comprehensive "Universe of Threats" by identifying, tracking, and prioritizing adversaries across phishing, scams, impersonation, fraud, and infrastructure abuse
  • Establish and mature a proactive threat intelligence lifecycle by developing industry partnerships, collaborating with trusted peers and federal authorities, and cultivating online personas to generate early warning capabilities that protect Robinhood’s business operations
  • Investigate attacker infrastructure across domains, DNS, certificate transparency logs, cloud providers, and telecom platforms, and convert findings into concrete detections, controls, and customer protections
  • Coordinate threat actor infrastructure takedowns with hosting providers, domain registrars, cloud platforms, and other infrastructure partners to disrupt adversary operations at scale
  • Design and automate intelligence workflows using OSINT tooling, enrichment pipelines, data analysis tools, and case management systems to scale analysis and reporting
  • Partner directly with Detection & Response, Automation, Customer Trust & Safety (Fraud and Financial Crimes), Security Engineering, Corporate Security, Risk, and executive leaders to prioritize threats based on measurable business risk
What we offer
What we offer
  • Challenging, high-impact work to grow your career
  • Performance-driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching
  • Best-in-class benefits to fuel your work, including 100% paid health insurance for employees with 90% coverage for dependents
  • Lifestyle wallet — a highly flexible benefits spending account for wellness, learning, and more
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more
  • Exceptional office experience with catered meals, events, and comfortable workspaces
  • Fulltime
Read More
Arrow Right

Intelligence Senior Analyst

The Open Source Intelligence Senior Analyst position is an intermediate-level po...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum bachelor’s degree / University degree
  • Minimum of 5 years’ experience relating to open source intelligence analysis for investigations, threat monitoring, or intelligence targeting
  • Demonstrable ability to collect, evaluate, interpret, and analyze data, with a strong knowledge of analytical techniques
  • Excellent communication (oral and written) skills with attention to detail
  • Established project management skills – ability to coordinate and prioritize several projects simultaneously while working with a globally dispersed team
  • Self-motivation, ability and maturity to make decisions in the absence of detailed instructions
  • Ability to act as a mentor to less-tenured staff
  • Experience in utilizing analytical and visualization software applications – specifically link analysis tools (e.g., Palantir, Semantica Pro, Maltego, i2 Analyst’s Notebook, ESRI)
  • Expertise in Microsoft Office products
  • Fluent English language skills (written and oral) required
Job Responsibility
Job Responsibility
  • Lead open source analysis for CSIS investigations involving fraud, cyber, insider, and other security threats
  • Use advanced techniques to monitor threats and collect data from multiple open sources, including social media, the deep and the dark web
  • Apply advanced qualitative and quantitative analytical methodologies to turn information and data into actionable intelligence
  • Anticipate, identify and develop innovative solutions to intelligence gaps
  • Deliver analysis and findings in the form of high quality, succinct, and straightforward written products and oral briefings
  • Manage multiple projects simultaneously with a proactive, self-motivated approach, ensuring timely delivery of high-quality results while collaborating effectively with global teams
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms
  • Flexible work arrangements
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right