Cyber Threat Intelligence Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Experteer Overview In this role you will translate threat and vulnerability data into actionable intelligence to support GMâs cyber defense across IT, OT, and connected-vehicle environments. Youâll work as part of the CTI team to enrich indicators, track adversary TTPs, and support fast decision-making during incidents and RFIs. Youâll operate intelligence tooling (MISP, SIEM) to deliver concise insights for Protect, Detect, and Respond teams. Youâll collaborate with cross-functional partners and external stakeholders to align intelligence with GMâs priority risks and security objectives. This is a hands-on position with a focus on execution and measurable impact on GMâs defenses. Compensation / Benefits * Monitor and triage threat activity and emerging vulnerabilities across GM IT, OT, and connected-vehicle environments; assess impact and priority * Produce actionable intelligence products (bulletins, advisories, actor/campaign summaries) for technical and executive audiences * Maintain and enrich indicators of compromise, threat actor profiles, and integrate them into GM sensors, tools, and detection workflows * Ingest, normalize, and curate intelligence from ISACs, government, law enforcement, commercial feeds, and open sources using MISP and SIEM * Provide time-sensitive intelligence during incidents and complete RFIs with well-reasoned assessments * Collaborate with Cyber Defense, Product Cybersecurity, Manufacturing/OT, Third-Party Cybersecurity to align intelligence with GM priorities * Track adversary TTPs and map activity to MITRE ATT&CK to improve detection coverage and reduce risk * Contribute to CTI process improvements, playbooks, enrichment automation, and metrics to mature intelligence-driven defenses Tasks * 2+ years in cyber threat intelligence, security operations, incident response, threat hunting, or related cybersecurity discipline * Working knowledge of threat-intelligence lifecycle, indicators of compromise, and adversary TTPs; familiarity with MITRE ATT&CK and the Diamond Model * Ability to analyze security and threat data, correlate across sources, and communicate findings clearly to technical and non-technical audiences * Hands-on experience with threat-intelligence and detection tooling (e.g., MISP, SIEM, EDR/NDR) and open-source research techniques * Understanding of attacker techniques, malware behavior, phishing/credential-theft campaigns, and CVE/CVSS concepts * Strong written and verbal communication skills for concise intelligence products and time-sensitive assessments * Bachelorâs degree in Information Security, Computer Science, Information Systems, or equivalent practical experience Key requirements *
Requirements
- and enrich indicators of compromise, threat actor profiles, and integrate them into GM sensors, tools, and detection workflows * Ingest, normalize, and curate intelligence from ISACs, government, law enforcement, commercial feeds, and open sources using MISP and SIEM * Provide time-sensitive intelligence during incidents and complete RFIs with well-reasoned assessments * Collaborate with Cyber Defense, Product Cybersecurity, Manufacturing/OT, Third-Party Cybersecurity to align intelligence with GM priorities * Track adversary TTPs and map activity to MITRE ATT&CK to improve detection coverage and reduce risk * Contribute to CTI process improvements, playbooks, enrichment automation, and metrics to mature intelligence-driven defenses Tasks * 2+ years in cyber threat intelligence, security operations, incident response, threat hunting, or related cybersecurity discipline * Working knowledge of threat-intelligence lifecycle, indicators of compromise, and adversary TTPs; familiarity with MITRE ATT&CK and the Diamond Model * Ability to analyze security and threat data, correlate across sources, and communicate findings clearly to technical and non-technical audiences * Hands-on experience with threat-intelligence and detection tooling (e.g., MISP, SIEM, EDR/NDR) and open-source research techniques * Understanding of attacker techniques, malware behavior, phishing/credential-theft campaigns, and CVE/CVSS concepts * Strong written and verbal communication skills for concise intelligence products and time-sensitive assessments * Bachelorâs degree in Information Security, Computer Science, Information Systems, or equivalent practical experience Key requirements *
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps
Dev Digest 191: Malware interviews, EU â¤ď¸ Open Source and Skilled Agents
How software is steering vehicle technology