Threat Intelligence Analyst

Cpl UK
London, UK
1 day ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
1 year minimum
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Cyber Security IP Addressing Online Databases Open Source Technology Mitre Att&ck Cyber Threat Analysis Pyramid Splunk

Job description

  • Collaborate with Incident Responders, Security Operations and other teams to define and prioritise cyber threat indicators.
  • Maintain a comprehensive understanding of the evolving threat landscape to provide high-level situational awareness and proactive warnings about emerging threats.
  • Monitor and analyse intelligence sources, including internal data, open-source reports, online databases and restricted intelligence sources, to identify actionable areas of interest.
  • Conduct in-depth research and produce detailed reports on cybersecurity and threat intelligence topics, including current threats, threat actors, vulnerabilities and evolving trends.
  • Use Indicators of Compromise, including files, IP addresses and hashes, to identify threat actors, understand their methods and develop strategies to prevent future attacks.
  • Conduct investigations following the intelligence cycle.
  • Assist with the handling and remediation of security incidents.
  • Support security-related programmes through data analysis, assessments and reporting.
  • Apply common analysis techniques and frameworks, including Kill Chain, Pyramid of Pain, MITRE ATT&CK and Diamond Model, to enhance threat detection and response capabilities.
  • Contribute to the strategic, operational and tactical components of the Intelligence function within the Threat Intelligence team.
  • Ensure threat intelligence activities align with organisational security goals.

Requirements

  • At least one year of experience in cybersecurity or a related field (Threat Intelligence Analyst preferred)
  • Strong understanding of threat intelligence concepts, frameworks and methodologies.
  • Familiarity with threat intelligence and analysis tools and platforms, including Recorded Future, OpenCTI, Cribl and Splunk.
  • Knowledge of threat modelling techniques, including Kill Chain, Pyramid of Pain, MITRE ATT&CK and Diamond Model.
  • Strong analytical and problem-solving skills, with the ability to identify and prioritise actionable intelligence.
  • Experience working with government or critical national infrastructure organisations is preferred.
  • Advanced cybersecurity or threat intelligence certifications, such as GCTI, CISSP, CEH or GIAC, are preferred.
  • Strong written and verbal communication skills, with the ability to produce high-quality intelligence reports and briefings.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.reed.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

3:04 min

Rethinking the testing pyramid and deleting risk-free tests

Luise Freese Luise Freese · WWC 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

4:42 min

Testing interconnected microservices and navigating the test pyramid

Yousaf Nabi Yousaf Nabi · WWC 2025

6:11 min

Threat modeling techniques for cloud native infrastructure

Andrew Martin · WWC 2022

Videos

See all

Related articles

See all