Cyber Security Engineer II Threat Intelligence Lead

Maxonic, Inc.
Dublin, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Big Data Cyber Security Computer Telephony Integration Intelligence Analysis Python (Programming Language) Open Source Intelligence Security Software Security Information and Event Management SQL Databases Scripting Mitre Att&ck
+3 more
Malware Cyber Threat Analysis Cybercrime

Job description

Maxonic maintains a close and long-term relationship with our direct client. In support of their needs, we are looking for a Cyber Security Engineer II Threat Intelligence Lead., * The Security Engineer Threat Intelligence Lead position is responsible for proactive threat hunting and cyber threat intelligence analysis to identify emerging threats, mitigate risks, and strengthen t-e organization’’s overall security posture.

  • This role requires advanced technical expertise in cybersecurity tools, threat detection technologies, and Cyber threat intelligence analysis.
  • The associate will collect, analyze, and disseminate cyber threat intelligence, leveraging data from OSINT (Open Source Intelligence), Threat Intelligence platforms, and other sources, including SIEM and endpoint detection systems, to detect advanced persistent threats (APTs), malware, and other malicious activities.
  • The position also requires experience working in complex environments, applying structured analysis processes, and collaborating with cross-functional teams to ensure the effective identification and mitigation of cyber threats., * Lead, build, and mentor a team of threat intelligence analysts, fostering skill development, analytical rigor, and collaborative research.
  • Provide strategic direction for the threat intelligence function, aligning efforts with organizational risk priorities and threat landscapes.
  • Collect, analyze, and disseminate cyber threat intelligence from various sources, including OSINT, Threat Intelligence platforms, SIEM, and endpoint detection systems.
  • Proactively hunt for advanced persistent threats (APTs), malware, and other malicious activities across networks, systems, and applications. Identify hidden threats that evade traditional security measures.
  • Develop and implement automated workflows and playbooks to streamline threat detection, analysis, and response processes, ensuring quick and effective mitigation of identified threats.
  • Synthesize large volumes of data from multiple sources to develop clear, actionable intelligence. Create detailed threat intelligence reports for technical teams and senior leadership.
  • Create, optimize, and automate detection rules and enrichment logic using scripting languages like Python and SQL.
  • Mapping adversary behaviors using the MITRE ATT&CK framework to understand attack vectors and predict potential threats.

Requirements

  • Minimum of 8+ years of experience in cybersecurity, with at least 5+ years focused on threat intelligence analysis and cyber threat hunting.
  • Proven experience leading or mentoring CTI analysts.
  • Strong expertise in threat intelligence platforms (TIPs), SIEM tools, and endpoint detection technologies.
  • Proficiency in collecting, analyzing, and disseminating threat intelligence from OSINT, internal sources, and commercial threat feeds.
  • Hands-on experience with automated workflows, playbook development, and advanced threat hunting techniques.
  • Deep understanding of attack methodologies, APTs, malware, ransomware, and other cyber threats.
  • Familiarity with the MITRE ATT&CK framework and indicators of compromise (IoCs).
  • Ability to synthesize complex data and produce actionable, clear intelligence for both technical and non-technical audiences.
  • Strong communication skills for reporting and briefing leadership on emerging threats.
  • Security certifications such as CISSP, GCTI, or equivalent are highly preferred.
  • Experience working in large enterprise environments with complex infrastructures and multiple overlapping tools.
  • Excellent reporting and communication skills with the ability to present technical findings to varied audiences.
  • Proficiency in scripting languages such as Python and SQL for data analysis and automation.
  • Knowledge of STIX/TAXII protocols for automated sharing and ingestion of structured threat intelligence data across systems.
  • Strong understanding of dark web marketplaces, threat actor infrastructures, ransomware groups, and emerging cybercriminal tactics, techniques, and procedures (TTPs).

About the company

Since 2002 Maxonic has been at the forefront of connecting candidate strengths to client challenges. Our award winning, dedicated team of recruiting professionals are specialized by technology, are great listeners, and will seek to find a position that meets the long-term career needs of our candidates. We take pride in the over 10,000 candidates that we have placed, and the repeat business that we earn from our satisfied clients.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

3:28 min

Defining big data and machine learning fundamentals

Ayon Roy · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

Videos

See all

Related articles

See all