Назад
Company hidden
3 дня назад

Analyst, Cyber Threat Intelligence

Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Analyst, Cyber Threat Intelligence (CTI): Deliver high-value cyber threat intelligence services for clients with an accent on dark web monitoring, managed threat intelligence investigations, and client-facing CTI reporting. Focus on producing analytical assessments from incomplete data, supporting deeper investigations, and contributing thought leadership on emerging vulnerabilities and threat actor techniques.

Location: London

Company

hirify.global is a global intelligence and cyber security consultancy.

What you will do

  • Conduct dark web monitoring using threat intelligence platforms and specialist tools, and deliver regular monitoring engagements for clients.
  • Run managed threat intelligence investigations using threat intelligence platforms, tools, and open-source intelligence.
  • Support in-depth CTI-led investigations and draft client-facing analytical reports.
  • Publish write-ups and presentations on emerging vulnerabilities, trends, and threat actor techniques.
  • Help grow the CTI practice by building relationships with external intelligence-sharing partners.
  • Collaborate with Incident Response, Risk & Resilience, MDR, and Attack Surface Management teams to ensure unified managed service delivery.

Requirements

  • Work authorization: Candidates must have permission to work in the UK by the start of employment.
  • Excellent written and verbal communication skills, with the ability to produce clear, concise, well-structured analytical reports (writing sample/assessment may be required).
  • Strong analytical and problem-solving skills to assess credibility, reliability, and relevance of sources and data from incomplete or conflicting information.
  • Strong attention to detail and the ability to maintain quality when processing large volumes of data across multiple sources.
  • Foundational cyber knowledge (e.g., common attack vectors like phishing and credential misuse) and understanding of threat actor motivations.
  • Core intelligence concepts knowledge, including the intelligence lifecycle and differences between tactical, operational, and strategic intelligence outputs.

Nice to have

  • Research-focused academic/professional background (e.g., Political Science, International Relations, Security Studies, Intelligence Studies, Criminology, Cybersecurity, Data Science).
  • Experience with OSINT methodologies and/or threat intelligence platforms (e.g., Recorded Future, Flashpoint, MISP, VirusTotal, Shodan, Maltego).
  • Familiarity with dark web environments, underground forums, and illicit marketplaces.
  • Ability to contextualize findings into business-relevant assessments (impact, likelihood, and recommended mitigations).
  • Knowledge of threat frameworks such as MITRE ATT&CK, the Diamond Model, or the Cyber Kill Chain.
  • Proficiency in a second language (particularly Russian, Spanish, Arabic, Portuguese, French, Mandarin, or other relevant languages).

Culture & Benefits

  • Hybrid working and flexible working hours.
  • 25 days holiday per year plus public holidays (increases with service up to 30 days total).
  • Matching pension contribution up to 7% (up to 14% combined) and financial education.
  • Life insurance equal to 4X annual salary.
  • Medical insurance for you and your family, Virtual GP, EAP program, and free access to a mindfulness app.
  • Parental support including fertility treatment leave, maternity leave, and paternity leave.

Hiring process

  • Application screening by the recruiting team.
  • Interview to assess baseline technical skills.
  • Interview to discuss experience, competencies, and fit for the role.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →