Cyber Threat Intelligence Analyst-1

VanguardMalvern, PA
Hybrid

About The Position

The Cyber Threat Intelligence (CTI) Analyst is responsible for identifying, analyzing, and communicating cyber threats that may impact the organization. This role supports intelligence collection, threat monitoring, analytic assessments, and intelligence dissemination to enhance organizational awareness and defensive decision-making. The successful candidate will transform technical threat data into actionable intelligence products for cybersecurity operations, incident response, risk management, and executive stakeholders.

Requirements

  • 2-5 years of experience in cyber threat intelligence, security operations, incident response, digital forensics, threat hunting, vulnerability management, or a related cybersecurity discipline.
  • Bachelor's degree in Cybersecurity, Information Technology, Intelligence Studies, Computer Science, or a related field (or equivalent experience).
  • Understanding of cyber threat intelligence frameworks such as: MITRE ATT&CK Diamond Model Intelligence Lifecycle Kill Chain
  • Familiarity with common threat actor TTPs and malware trends.
  • Strong written and verbal communication skills.
  • Demonstrated ability to analyze information from multiple sources and develop actionable assessments.

Nice To Haves

  • Experience with intelligence platforms such as ThreatConnect, Recorded Future, Google Threat Intelligence, Intel471, Mandiant, or similar tools.
  • Experience supporting financial services, critical infrastructure, or regulated industries.
  • Knowledge of incident response processes and security operations workflows.
  • Familiarity with scripting or automation technologies (Python, PowerShell, APIs).
  • Intelligence or cybersecurity certifications such as: GIAC Cyber Threat Intelligence (GCTI) CISSP Security+ CySA+ Certified Threat Intelligence Analyst (CTIA)

Responsibilities

  • Monitor open-source, commercial, government, and industry intelligence sources for emerging cyber threats.
  • Research threat actors, malware campaigns, vulnerabilities, and geopolitical developments relevant to the organization's risk profile.
  • Identify, assess, and contextualize indicators of compromise (IOCs), tactics, techniques, and procedures (TTPs).
  • Produce timely assessments regarding threat activity, likelihood, and organizational impact.
  • Develop intelligence reports, briefings, alerts, and situational awareness products.
  • Produce tactical, operational, and strategic intelligence products for technical and non-technical audiences.
  • Create executive summaries that clearly communicate risk, implications, and recommended actions.
  • Maintain intelligence repositories and knowledge management resources.
  • Support incident response and investigative activities through intelligence enrichment and adversary research.
  • Collaborate with Security Operations Center (SOC), Threat Hunting, Detection Engineering, and Forensics teams.
  • Provide intelligence-driven recommendations to improve detection and response capabilities.
  • Assist with threat actor tracking and long-term campaign monitoring.
  • Brief cybersecurity teams, business leaders, and risk partners on relevant threats and trends.
  • Participate in intelligence-sharing communities and industry partnerships.
  • Develop strong working relationships with internal stakeholders to understand intelligence requirements.
  • Contribute to intelligence collection plans and analytic methodologies.
  • Evaluate emerging intelligence tools, data sources, and automation opportunities.
  • Leverage AI and automation technologies to improve collection, triage, and reporting efficiency.
  • Maintain awareness of evolving cyber threats, industry trends, and intelligence tradecraft.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service