Threat Intelligence Engineer

Allianz Group
Barcelona, Spain
24 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Cyber Security Python (Programming Language) Scripting Microsoft Power Automate Cyber Threat Analysis Nintex Api Management Security Orchestration, Automation & Response

Job description

detection content by creating rules and guidance for deployment by detection engineering teams * Map threat actor TTPs to MITRE ATTu0026CK and identify coverage gaps to generate relevant hunting leads * Build and maintain automation for repetitive intelligence workflows using SOAR, Power Automate, N8N, Python, scripting, and API integrations * Apply AI to categorize intelligence, enrich indicators, and accelerate decision-making in daily workflows * Communicate findings via dashboards, intelligence notes, and operational briefings for diverse audiences * Support IOC lifecycle and provide analytical input, validation, and triage during active incidents (on-call rotations) Responsabilidades * Hands-on intrusion analysis experience with real-world attack investigations * Proven ability to turn intelligence into production-ready xqbhyrx detection rules * Strong knowledge of MITRE ATTu0026CK at the procedure level * Coding and automation skills (Python, scripting, APIs) * Understanding

Requirements

of Threat Intelligence Lifecycle and analytical models (Diamond Model, Kill Chain) * Experience with tools such as Google SecOps, CrowdStrike Falcon/Intelligence, Google Threat Intelligence/VirusTotal, Recorded Future, MISP or similar Requisitos principales * hybrid work model * up to 25 days abroad * bonus scheme * pension * employee shares program * employee discounts

About the company

Experteer Overview Consulte la descripción del puesto a continuación. Si confía en que tiene las habilidades y la experiencia adecuadas, envíe su solicitud hoy mismo. In this role you transform threat actor behavior into actionable defenses within Allianz’s AI-augmented, intelligence-driven cyber defense. You’ll shape intrusion analysis, automate repetitive intelligence workflows, and deliver detection content that enables fast, confident action across security teams. You’ll translate real-world attacks into forward-looking intelligence and hunting leads at scale, with a direct impact on the organization’s resilience. You work closely with detection engineers, incident responders, and leadership to harden defenses and drive measurable outcomes. Compensaciones / Beneficios * Analyze real-world attacks, post-incident findings, and adversary tradecraft to identify actionable activity and convert retrospective analysis into forward-looking intelligence * Translate intelligence into

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on es.trabajo.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:14 min

Exploring internal AI product initiatives and global engineering roles

Maria Apazoglou · Coffee With Developers

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:20 min

Utilizing industry threat models for AI security

Balázs Kiss · WWC 2023

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all