Threat Intelligence Production Lead

Accenture
London, UK
11 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours

Tech stack

Network Analysis Cyber Security Digital Forensics Log Analysis Malware Cyber Threat Analysis Information Technology Cybercrime Vulnerability Analysis

Job description

As the ACI EMEA Intelligence Production Lead, you’re responsible for managing the day-to-day execution of our threat research mission, setting overall direction across five intelligence delivery areas (Espionage, Cybercrime, Geopolitical Intelligence, Dark Web, and Vulnerability). You will oversee a team of analysts, making sure their work is focused on what matters most and that outputs are clear, relevant, and useful. Your emphasis will be on generating high-quality proprietary intelligence from commercial, non-public and enterprise data sources.

You stay hands-on yourself, carrying out technical research and sharing insight across the business and with external clients. You engage in thought leadership, presenting our threat research within the security community and at external conferences and other events. You also work closely with other teams, helping ensure research supports real-world needs such as incident response, detection, and client delivery., * Manage the Intelligence Production team’s day-to-day work, setting clear expectations, and balancing individual strengths and interests with team goals

  • Set the direction for the team, including maintaining priority intelligence requirements
  • Advocate for the team and represent its needs effectively to stakeholders.
  • Carry out your own technical research on threats, techniques, and trends
  • Present research findings to internal stakeholders, clients, and at industry events and conferences in a clear and practical way
  • Support ongoing incidents, threat investigations, and active threats by providing timely and relevant intelligence
  • Ensure the team has access to the tools and data they need, and relevant training opportunities
  • Improve how we work over time, including processes and methodologies, tooling, and ways of sharing insight

Requirements

  • Degree or equivalent qualifications, preferably relating to politics, intelligence, information technology or information security OR equivalent knowledge through apprenticeship or vocational training
  • Minimum 6 years of experience in a technical threat intelligence or adjacent role, * Expert technical understanding of threat intelligence (including tracking adversary infrastructure, intrusions, tooling, and campaigns)
  • Strong experience communicating current and emerging threats, key trends, and potential impact to technical audiences and senior leadership.
  • Experience supporting incident response, security operations, or similar environments
  • Experience leading threat intelligence delivery, setting priorities, and managing workstreams based on business and operational requirements.
  • Experience leading and developing researchers through coaching, mentoring, and regular feedback.
  • Passion for supporting others and creating a collaborative and inclusive team environment, where people can grow and succeed
  • Comfortable addressing performance issues in a constructive and professional manner.

Desired Skills

  • Experience with frameworks such as CBEST, TIBER-EU, or STAR-FS
  • Experience improving team processes or tooling
  • Understanding of how geopolitical events influence cyber threats
  • Exposure to malware analysis, network analysis, host intrusion analysis, log analysis, vulnerability research, digital forensics or related disciplines

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all