Threat Intelligence Lead

Everywhen
Remote

About The Position

An exciting remote-based opportunity has arisen for a Threat Intelligence Lead to join our Technology team, reporting to the Chief Information Security Officer. You will design and lead the company’s cyber threat intelligence (CTI), security testing and proactive threat-hunting programmes, helping to protect our customers, assets and brands across our global operations. Working closely with our internal and external security operations teams, you will anticipate, assess and mitigate threats. The intelligence you provide will support strategic decisions, incident response and continuous improvements to our cyber resilience. This pivotal Cyber Security role requires strong technical expertise, intelligence capability and commercial awareness within a regulated financial environment.

Requirements

  • Experienced Cyber Threat Intelligence professional who can combine strong technical expertise with the ability to develop CTI capability and turn complex intelligence into clear, actionable business insights.
  • MITRE ATT&CK training/certification is essential.
  • Experience developing Priority Intelligence Requirements (PIRs).
  • Strong experience working closely with SOC, Incident Response, Vulnerability Management, Security Engineering and Risk.
  • Experience managing the end-to-end intelligence lifecycle.
  • Significant Cyber Threat Intelligence (CTI) or closely related cyber security experience.
  • Strong experience analysing strategic, operational, and tactical threat intelligence.
  • Practical experience with MITRE ATT&CK, threat actor profiling, IOC analysis, threat hunting and intelligence-led detection engineering.
  • Evidence of leading/developing a CTI capability.

Nice To Haves

  • Relevant professional certification such as GCTI, CRTIA, CPTIA, GIAC, or CISSP is desirable.

Responsibilities

  • Lead the development of our CTI function, establishing clear governance, processes, intelligence priorities and measurable outcomes.
  • Represent the organisation in key external intelligence-sharing forums, including FS-ISAC, the NCSC’s CiSP and relevant industry partnerships.
  • Use the MITRE ATT&CK framework to identify and analyse attacker tactics, techniques and procedures and strengthen our detection capabilities.
  • Develop the Proactive Threat Hunting Initiative, using intelligence and security tools to identify emerging threats, attack paths and vulnerabilities and security gaps.
  • Oversee the collection and analysis of tactical, operational and strategic threat intelligence, with a particular focus on threats affecting insurance and financial services sectors.
  • Proactively search for malicious activity, anomalies and emerging threats across enterprise networks, endpoints and cloud environments.
  • Provide clear, actionable intelligence and threat landscaping briefings to senior leaders, Board committees and key stakeholders across the business.

Benefits

  • Holiday entitlement of 26 days plus bank holidays, increasing with length of service
  • 35 hour working week
  • Opportunity to progress your career across the entire Ardonagh family
  • Award-winning learning & development offering and support to obtain professional qualifications to enhance your knowledge and career prospects
  • Pension scheme
  • 24-hour Employee Assistance support for you and your family’s physical and mental wellbeing
  • Corporate perks such as discounted gym memberships, cinema tickets, shopping, Eyecare vouchers, cycle to work and much more
  • One day paid volunteering to give back to our communities
  • Ardonagh Community Trust (ACT) - raising funds for charity with donation matching in your local community
  • The Spotlight Awards, where we celebrate the best of the Ardonagh Group and all the bright talent across our business.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service