Source Job

Canada

  • Lead and shape the global threat intelligence program to address emerging cyber threats and adversary activity.
  • Conduct OSINT research and threat analysis to produce actionable intelligence for security teams.
  • Collaborate with cross-functional teams to influence product architecture and defensive controls.

OSINT Threat Intelligence Cyber Security Security Operations

15 jobs similar to Threat Intelligence Lead

Jobs ranked by similarity.

$140,000–$180,000/yr
US

  • Apply deep expertise in cyber threat intelligence, analyzing advanced threat actors and attack methodologies.
  • Lead strategic threat intelligence initiatives, developing methodologies and providing thought leadership.
  • Convey complex intelligence findings through reports and briefings to diverse technical and executive audiences.

NBCUniversal is a leading media and entertainment company, creating and distributing content across film, television, streaming, and theme parks. As a subsidiary of Comcast Corporation, it employs a large global workforce and fosters an inclusive culture with a commitment to community engagement.

US

  • Lead MLB's threat intelligence and incident response programs across the league office, 30 Clubs, and affiliates.
  • Manage vulnerability intelligence, digital risk monitoring, incident coordination, and forensic investigations.
  • Own security awareness programming and use automation to shorten research, triage, and reporting cycles.

Major League Baseball (MLB) is the most historic professional sports league in the United States and Canada. With a league office, 30 Clubs, and affiliates, MLB fosters a culture of growth, teamwork, and professionalism, empowering employees to take initiative and put the team first.

Ireland

  • Analyze data to identify confirmed relationships and document threat actor tactics.
  • Initiate communication with international government agencies and foster cross-departmental engagement.
  • Respond promptly to user needs and stay abreast of industry trends.

Kodex revolutionizes how organizations handle sensitive subpoenas and data requests from law enforcement and government agencies. Founded by a former FBI agent and backed by leading investors, the company has become the industry standard for secure data exchange with a platform supporting over 15,000 government agencies in 190 countries.

Brazil

  • Triage and evaluate threat information from multiple simulated sources to determine relevance and credibility.
  • Analyze simulated threat actors and their TTPs to assess potential organizational risk.
  • Produce actionable intelligence assessments and brief decision-makers on technical findings.

They provide simulation-based cyber threat intelligence training and analysis. They are a partner company that hires remote analysts for professional development.

Europe

  • Conduct research across open and restricted-access sources to uncover emerging threats and actor behaviors.
  • Produce clear, concise, and actionable intelligence reporting for technical and non-technical audiences.
  • Collaborate with a globally distributed team while operating autonomously on proactive research initiatives.

Jobgether uses AI-powered matching to ensure applications are reviewed quickly and fairly. The company fosters a remote-friendly culture built on trust, collaboration, and autonomy.

Global 12w maternity 12w paternity

  • Lead incident response across platforms and applications, from triage to recovery.
  • Hunt proactively for threats using system logs, user behavior, and threat intelligence.
  • Build and automate incident response workflows and strengthen detection with MITRE ATT&CK.

Xplor provides cloud-based technology solutions that help small and medium-sized businesses manage operations and get paid securely. With over 130,000 businesses in 72+ countries processing $47B annually, the company fosters a culture of simplicity, purpose, and community.

US 3w PTO 17w maternity 17w paternity

  • Hunt through first-party data and telemetry to identify and expose new malicious cyber activity and campaigns.
  • Cluster, track, attribute, and disrupt malicious cyber threats with advanced tradecraft.
  • Develop and integrate new intelligence sources, tools, and systems to produce a comprehensive threat picture.

GreyNoise Intelligence is a mission driven security startup focused on helping organizations understand and mitigate risks from Internet scanning and exploitation. It is a high-growth Series-A startup with a remote-first culture emphasizing transparency, honesty, and continuous learning.

$87,400–$131,000/yr
US 4w PTO

  • Support ransomware and cyber extortion engagements by managing threat actor communications and maintaining accurate case documentation.
  • Conduct research on threat actor groups, campaigns, and malware to provide actionable intelligence for active cases.
  • Coordinate with internal teams and external partners to ensure timely and accurate communication throughout engagements.

The company specializes in ransomware and cyber extortion incident response, supporting active engagements. They foster a collaborative remote culture with opportunities for professional growth and development.

Global Unlimited PTO

  • Lead and scale a high-performing team of Technical Account Managers.
  • Drive customer value realization through cybersecurity, threat intelligence, and technical expertise.
  • Partner cross-functionally to improve adoption, retention, and operational efficiency.

This company is a fast-growing cybersecurity SaaS organization. It is a high-growth startup with an experienced, passionate, and internationally recognized cybersecurity team.

$170,000–$240,000/yr
US Unlimited PTO

  • Design, build, and maintain static and dynamic file analysis pipelines processing artifacts at scale.
  • Operate and extend threat indicator enrichment systems for real-time file metadata extraction.
  • Build and maintain threat graph intelligence systems modeling relationships between indicators and actors.

Censys provides real-time Internet intelligence and threat insights to global governments and over 50% of the Fortune 500. They are a growing, research-driven company focused on building comprehensive maps of the internet with a collaborative culture.

Global Unlimited PTO

  • Leverage open-source intelligence (OSINT) and commercial investigative tools to gather comprehensive information.
  • Perform quantitative risk analysis based on available data to support personnel risk determinations.
  • Partner with HR, Legal, and Information Security teams to mitigate internal and external personnel security risks.

SandboxAQ is a high-growth AI company using Large Quantitative Models for life sciences, finance, navigation, and cybersecurity. The global team of experts, founded from Alphabet in 2022, fosters a creative and collaborative culture.

$160,000–$220,000/yr
US

  • Synthesize data from a wide range of internal and external sources to develop a comprehensive picture of threats affecting cloud, AI, and developers.
  • Analyze and track state-backed and financially motivated attackers targeting cloud ecosystems.
  • Communicate novel findings and in-depth analyses of cyber threat activity to multiple audiences and in multiple formats.

Wiz enables teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a culture that values world-class talent.

US Unlimited PTO

  • Own the research-to-production pipeline, turning research artifacts into production-ready detection rules, feeds, or platform APIs.
  • Build and maintain threat intelligence platform components across multiple services, including distribution servers, sandbox orchestration, and rules engines.
  • Drive STIX 2.1 adoption as a unified output schema and TAXII 2.1 as a distribution standard, defining schemas that hold up downstream.

SecurityScorecard is the global leader in cybersecurity ratings, continuously rating over 12 million companies across 64 countries. Headquartered in New York City, the company has been recognized as a Best Workplace by Inc Magazine and a Best Place to Work in NYC, with a culture that values innovation and employee engagement.

$87,400–$131,000/yr
US 4w PTO

  • Support ransomware and cyber extortion engagements by managing threat actor communications and maintaining clear negotiation records.
  • Perform light threat intelligence research on threat actor trends, tactics, techniques, and tooling to support engagement strategy.
  • Draft and organize communication logs, negotiation notes, timelines, and case records to keep the engagement team informed.

Vector3, Inc., an incident response firm supporting TMHCC Cyber and Professional Lines Group, specializes in responding to Business Email Compromise and Ransomware incidents. Tokio Marine HCC, with over 50 years of service, offers over 100 products to commercial customers in 180 countries and has grown its workforce to 4,300 worldwide.

$125,560–$173,010/yr
Canada Unlimited PTO

  • Lead and develop a team of security engineers to defend infrastructure, SaaS, and endpoints against real-world adversaries.
  • Own detection and response, including incident command, tuning CrowdStrike, and conducting cybersecurity risk assessments.
  • Drive AI security strategy and partner with cross-functional teams to build robust detection controls.

Forward Financing is a financial technology company that unlocks capital to fuel small businesses across America. Since 2012, they have provided over $4.8 billion in funding to more than 92,000 small businesses and are recognized as a Best Place to Work with a culture focused on empowerment and collaboration.