Manager, Threat Intelligence
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
- Lead and support a variety of global cyber operations and investigations
- Keep abreast of cyber market trends and competitive intelligence through research and the culling of resources from our partners
- Ability to clearly communicate technical findings to a variety of clients and internal stakeholders
- Assist in developing the capabilities of the Threat Intelligence team, creating scalable processes through automation, contributing to malware and threat actor research, and working with the Applied Intelligence group to protect customers.
- Be intelligence-led and work with the detection engineering team mitigate the latest threats.
- Maintain and contribute to an ever-growing knowledge base of threat intelligence information, write-ups, malware and vulnerability research.
- Work with customers to communicate risks, present changes in the threat landscape and identify potential areas of improvement based on real world incidents and reporting.
- Be an SME point of contact for internal and customer queries about threats and vulnerabilities.
- Automate and triage OSINT intelligence collection to our centralized database of indicators of compromise.
- Produce all-source intelligence reports and threat assessments
- Build presentations for diverse audiences, ranging from private industry to law enforcement
- Perform weekly, quarterly and yearly statistical analysis of trends in cyber analytics
- Escalate client issues appropriately that could threaten or enhance opportunity to the Kroll/client relationship
- Assist the Head of Threat Intelligence in maturing threat intelligence methodologies
Requirements
- Bachelor’s degree required; Master’s degree or similar advanced degree is preferred
- 5 years+ of relevant work experience in cyber security and/or threat intelligence
- Understand prevailing threats and how to mitigate them with EDR and SIEM.
- Aptitude with analyzing threats using malware analysis, sandboxing, static code examination or similar.
- Familiarity with the Mitre ATT&CK framework.
- In-depth knowledge of the security threat landscape including types of malware, threat actors, their methods of operation and common TTPs.
- Experience in relaying complex technical subject matter to non-technical stakeholders.
- Proven ability to thrive and respond to frequent demands of multiple constituents, both internal and external, in a high demand, customer-centric environment.
- Ability to condense complex information into concise, relevant reporting.
- Proficient in a broad variety of investigative methods.
- Must be proficient in MS office products, i.e. Word, Excel, PowerPoint.
- Ability to handle difficult situations in a productive manner
- Ability to multi-task, prioritize, and manage time effectively
- Experience working with diverse teams
Benefits & conditions
- Healthcare Coverage: Comprehensive medical, dental, and vision plans.
- Time Off and Leave Policies: Generous paid time off (PTO), paid company holidays, generous parental and family leave.
- Protective Insurances: Life insurance, short- and long-term disability coverage, and accident protection.
- Compensation and Rewards: Competitive salary structures, performance-based incentives, and merit-based compensation reviews.
- Retirement Plans: 401(k) plans with company matching.
Please note that benefits may vary by region, department and role. We encourage you to speak with your recruiter to learn more about the specific benefits available for your position.
About the company
Kroll’s Cyber team works on over 3,000 cases a year, including some of the most complex and highest profile matters in the world. With experts based around the world, supported by ground-breaking technology, we help protect our client’s data, people, operations and reputation with innovative assessments, investigations and intelligence. We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber resilience. We are looking for bright, inquisitive minds who are experienced in and passionate about modern cyber threat hunting and response. Our Consultants use leading endpoint and network monitoring tools to identify, analyze, and respond to a variety of threats and threat actors impacting systems and networks around the globe., Join the global leader in risk and financial advisory solutions-Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you’ll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Walking Into The Era of Supply Chain Risks
Understanding and Mitigating Common Web Vulnerabilities
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.