> Markdown version of [/jobs/ext/1119892-cyber-threat-intelligence-analyst-threat-research-classification](https://www.wearedevelopers.com/jobs/ext/1119892-cyber-threat-intelligence-analyst-threat-research-classification). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Intelligence Analyst (Threat Research & Classification) - **Company:** Allot - **Location:** Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Big Data, Data Structures, Intrusion Detection and Prevention, Machine Learning, Phishing, Malware, Cyber Threat Analysis, Cybercrime - **Published:** July 2, 2026 - **Apply:** https://es.indeed.com/viewjob?jk=4edbbbc3a88c0936 ## About the Role * 3-5+ years of experience in Cyber Threat Intelligence, Threat Analysis, Cyber Intelligence, Threat Research, or closely related cybersecurity roles. * Strong experience investigating phishing campaigns, malicious domains, URLs, malware, digital fraud, or threat infrastructure using large-scale intelligence datasets-not only individual IOC investigations or incident-driven analysis. * Experience identifying relationships between indicators, campaigns, infrastructure, or threat activity beyond individual observables. * Strong analytical skills, including the ability to identify patterns, interpret distributions, recognize anomalies, and derive meaningful conclusions from large datasets. * Experience using threat intelligence platforms and tools such as VirusTotal, MISP, OpenCTI, Recorded Future, or similar. * Good understanding of cyber threats, threat actors, attack techniques, and infrastructure design patterns, with the ability to recognize how they manifest in real-world data. * Comfortable working with structured datasets and multi-attribute analytical environments. * Basic understanding of data structures and analytical models (e.g., how multiple attributes are combined, clustering logic at a high level). * Ability to communicate findings clearly through structured analysis and reporting. * Proactive, curious, and adaptable mindset, with a strong interest in improving methodologies and exploring new approaches to threat analysis. * Experience working in CERTs, telecom cybersecurity, cybersecurity vendors, threat intelligence teams, or similar environments. ## Description We are looking for a Cyber Threat Intelligence Analyst to help build the next generation of threat intelligence capabilities. This is not a traditional SOC, monitoring, or incident-response role. We are looking for someone who enjoys understanding how threats are designed, operated, and interconnected across the broader threat landscape. You will work with malicious domains, URLs, phishing infrastructure, malware activity, and enriched threat intelligence data to uncover relationships between threats, identify recurring patterns, and help define how threat activity should be classified and understood at scale. The role involves working with a multilayered intelligence model that contains thousands of attributes across infrastructure, behavioral signals, and enrichment sources. The challenge is not collecting data but extracting meaning from complexity, connecting seemingly unrelated indicators, identifying what groups them together, and understanding what they reveal about attacker tactics and operations. As part of a small and highly specialized team, you will work closely with a data engineer and a data scientist to transform analytical knowledge into scalable intelligence frameworks. Your expertise will help shape future automation, AI-assisted analysis, machine learning models, and real-time detection capabilities. Because the team is still growing, the role comes with a high level of ownership and visibility. There are no large hierarchical structures or multiple management layers. The person joining will have the opportunity to become a key cyber intelligence reference inside the company and help shape the direction of the capability from an early stage. We believe the best cyber analysts create the most value when they have the time and autonomy to think deeply about challenges. Our focus is on analytical depth, innovation, and long-term impact rather than operational overload, excessive bureaucracy, or ticket-driven work. Responsibilities * Analyze malicious domains, URLs, phishing campaigns, malware infrastructure, and other cyber threats. * Identify relationships, patterns, and behaviors across large-scale intelligence datasets. * Investigate emerging threats and contribute to threat intelligence research. * Correlate indicators, infrastructure, and campaigns to improve threat understanding and classification. * Define and maintain threat taxonomies, analytical methodologies, and classification frameworks. * Produce structured intelligence outputs and actionable insights. * Collaborate with data scientists and engineers to improve automation and intelligence workflows. * Contribute to the development of AI-assisted analysis, machine learning models, and future detection capabilities. * Support initiatives related to threat enrichment, classification, and threat identification. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Alibaba Big Data and Machine Learning Technology](https://www.wearedevelopers.com/videos/37-alibaba-big-data-and-machine-learning-technology) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [The AI Security Survival Guide: Practical Advice for Stressed-Out Developers](https://www.wearedevelopers.com/videos/1015-the-ai-security-survival-guide-practical-advice-for-stressed-out-developers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Jobs in Tech: The State of the European Market](https://www.wearedevelopers.com/magazine/575-jobs-in-tech-the-state-of-the-european-market) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)