Manager, Threat Intelligence

KROLL CYBER SECURITY, LLC
United States
18 days ago
Apply on www.builtincolorado.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Word Microsoft Excel Cyber Security Databases Open Source Intelligence Microsoft PowerPoint Security Information and Event Management Mitre Att&ck Malware Cyber Threat Analysis Vulnerability Analysis

Job description

  • Lead and support a variety of global cyber operations and investigations
  • Keep abreast of cyber market trends and competitive intelligence through research and the culling of resources from our partners
  • Ability to clearly communicate technical findings to a variety of clients and internal stakeholders
  • Assist in developing the capabilities of the Threat Intelligence team, creating scalable processes through automation, contributing to malware and threat actor research, and working with the Applied Intelligence group to protect customers.
  • Be intelligence-led and work with the detection engineering team mitigate the latest threats.
  • Maintain and contribute to an ever-growing knowledge base of threat intelligence information, write-ups, malware and vulnerability research.
  • Work with customers to communicate risks, present changes in the threat landscape and identify potential areas of improvement based on real world incidents and reporting.
  • Be an SME point of contact for internal and customer queries about threats and vulnerabilities.
  • Automate and triage OSINT intelligence collection to our centralized database of indicators of compromise.
  • Produce all-source intelligence reports and threat assessments
  • Build presentations for diverse audiences, ranging from private industry to law enforcement
  • Perform weekly, quarterly and yearly statistical analysis of trends in cyber analytics
  • Escalate client issues appropriately that could threaten or enhance opportunity to the Kroll/client relationship
  • Assist the Head of Threat Intelligence in maturing threat intelligence methodologies

Requirements

  • Bachelor’s degree required; Master’s degree or similar advanced degree is preferred
  • 5 years+ of relevant work experience in cyber security and/or threat intelligence
  • Understand prevailing threats and how to mitigate them with EDR and SIEM.
  • Aptitude with analyzing threats using malware analysis, sandboxing, static code examination or similar.
  • Familiarity with the Mitre ATT&CK framework.
  • In-depth knowledge of the security threat landscape including types of malware, threat actors, their methods of operation and common TTPs.
  • Experience in relaying complex technical subject matter to non-technical stakeholders.
  • Proven ability to thrive and respond to frequent demands of multiple constituents, both internal and external, in a high demand, customer-centric environment.
  • Ability to condense complex information into concise, relevant reporting.
  • Proficient in a broad variety of investigative methods.
  • Must be proficient in MS office products, i.e. Word, Excel, PowerPoint.
  • Ability to handle difficult situations in a productive manner
  • Ability to multi-task, prioritize, and manage time effectively
  • Experience working with diverse teams

Benefits & conditions

  • Healthcare Coverage: Comprehensive medical, dental, and vision plans.
  • Time Off and Leave Policies: Generous paid time off (PTO), paid company holidays, generous parental and family leave.
  • Protective Insurances: Life insurance, short- and long-term disability coverage, and accident protection.
  • Compensation and Rewards: Competitive salary structures, performance-based incentives, and merit-based compensation reviews.
  • Retirement Plans: 401(k) plans with company matching.

Please note that benefits may vary by region, department and role. We encourage you to speak with your recruiter to learn more about the specific benefits available for your position.

About the company

Kroll’s Cyber team works on over 3,000 cases a year, including some of the most complex and highest profile matters in the world. With experts based around the world, supported by ground-breaking technology, we help protect our client’s data, people, operations and reputation with innovative assessments, investigations and intelligence. We are the only company in the world with the expertise and resources to deliver global, end-to-end cyber risk management, supporting organizations through every step of their journey toward cyber resilience. We are looking for bright, inquisitive minds who are experienced in and passionate about modern cyber threat hunting and response. Our Consultants use leading endpoint and network monitoring tools to identify, analyze, and respond to a variety of threats and threat actors impacting systems and networks around the globe., Join the global leader in risk and financial advisory solutions-Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you’ll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.builtincolorado.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · World Congress 2022

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

Videos

See all

Related articles

See all