> Markdown version of [/jobs/ext/1986379-cyber-threat-intelligence-analyst](https://www.wearedevelopers.com/jobs/ext/1986379-cyber-threat-intelligence-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Threat Intelligence Analyst - **Company:** General Motors - **Location:** Austin, TX, United States - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Computer Telephony Integration, Open Source Technology, Phishing, Security Information and Event Management, Mitre Att&ck, Cyber Threat Analysis, Information Technology, Cybercrime, Cyber Warfare - **Published:** August 8, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cyber-threat-intelligence-analyst-austin-tx-usa-58847382 ## About the Role * and enrich indicators of compromise, threat actor profiles, and integrate them into GM sensors, tools, and detection workflows * Ingest, normalize, and curate intelligence from ISACs, government, law enforcement, commercial feeds, and open sources using MISP and SIEM * Provide time-sensitive intelligence during incidents and complete RFIs with well-reasoned assessments * Collaborate with Cyber Defense, Product Cybersecurity, Manufacturing/OT, Third-Party Cybersecurity to align intelligence with GM priorities * Track adversary TTPs and map activity to MITRE ATT&CK to improve detection coverage and reduce risk * Contribute to CTI process improvements, playbooks, enrichment automation, and metrics to mature intelligence-driven defenses Tasks * 2+ years in cyber threat intelligence, security operations, incident response, threat hunting, or related cybersecurity discipline * Working knowledge of threat-intelligence lifecycle, indicators of compromise, and adversary TTPs; familiarity with MITRE ATT&CK and the Diamond Model * Ability to analyze security and threat data, correlate across sources, and communicate findings clearly to technical and non-technical audiences * Hands-on experience with threat-intelligence and detection tooling (e.g., MISP, SIEM, EDR/NDR) and open-source research techniques * Understanding of attacker techniques, malware behavior, phishing/credential-theft campaigns, and CVE/CVSS concepts * Strong written and verbal communication skills for concise intelligence products and time-sensitive assessments * Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent practical experience Key requirements * ## Description Experteer Overview In this role you will translate threat and vulnerability data into actionable intelligence to support GM's cyber defense across IT, OT, and connected-vehicle environments. You'll work as part of the CTI team to enrich indicators, track adversary TTPs, and support fast decision-making during incidents and RFIs. You'll operate intelligence tooling (MISP, SIEM) to deliver concise insights for Protect, Detect, and Respond teams. You'll collaborate with cross-functional partners and external stakeholders to align intelligence with GM's priority risks and security objectives. This is a hands-on position with a focus on execution and measurable impact on GM's defenses. Compensation / Benefits * Monitor and triage threat activity and emerging vulnerabilities across GM IT, OT, and connected-vehicle environments; assess impact and priority * Produce actionable intelligence products (bulletins, advisories, actor/campaign summaries) for technical and executive audiences * Maintain and enrich indicators of compromise, threat actor profiles, and integrate them into GM sensors, tools, and detection workflows * Ingest, normalize, and curate intelligence from ISACs, government, law enforcement, commercial feeds, and open sources using MISP and SIEM * Provide time-sensitive intelligence during incidents and complete RFIs with well-reasoned assessments * Collaborate with Cyber Defense, Product Cybersecurity, Manufacturing/OT, Third-Party Cybersecurity to align intelligence with GM priorities * Track adversary TTPs and map activity to MITRE ATT&CK to improve detection coverage and reduce risk * Contribute to CTI process improvements, playbooks, enrichment automation, and metrics to mature intelligence-driven defenses Tasks * 2+ years in cyber threat intelligence, security operations, incident response, threat hunting, or related cybersecurity discipline * Working knowledge of threat-intelligence lifecycle, indicators of compromise, and adversary TTPs; familiarity with MITRE ATT&CK and the Diamond Model * Ability to analyze security and threat data, correlate across sources, and communicate findings clearly to technical and non-technical audiences * Hands-on experience with threat-intelligence and detection tooling (e.g., MISP, SIEM, EDR/NDR) and open-source research techniques * Understanding of attacker techniques, malware behavior, phishing/credential-theft campaigns, and CVE/CVSS concepts * Strong written and verbal communication skills for concise intelligence products and time-sensitive assessments * Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent practical experience Key requirements * ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 182: GPT5 Prompts, MCP Vulnerabilities, Code Traps](https://www.wearedevelopers.com/magazine/622-dev-digest-182-gpt5-prompts-mcp-vulnerabilities-code-traps) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [How software is steering vehicle technology](https://www.wearedevelopers.com/magazine/515-how-software-is-steering-vehicle-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)