CTI Analyst

Posted 5 Hours Ago
Be an Early Applicant
Berkeley Heights, NJ, USA
In-Office
146K-245K Annually
Senior level
eCommerce • Fintech • Information Technology • Payments • Financial Services
At Fiserv, we aspire to move money and information in a way that moves the world.
The Role
Conduct strategic, operational, and tactical cyber threat intelligence analysis; track threat actors, campaigns, infrastructure, and attack patterns; and translate findings into detections, threat hunts, vulnerability priorities, and red-team scenarios. The role develops intelligence requirements, assessments, briefings, and operational advisories while partnering with SOC, detection engineering, threat hunting, attack surface management, and red/purple teams. It also helps improve CTI tools, models, processes, and platforms.
Summary Generated by Built In

Calling all innovators - find your future at Fiserv.

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

Job Title

CTI Analyst

Cyber Threat Intelligence Analyst 

Fully on-site  |  Cybersecurity Operations – Cyber Threat Intelligence 


Calling all innovators – find your future at Fiserv. 

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day – quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv. 


About your role: 

Most threat intelligence roles end with a report. This one is built to change what happens next. As a Cyber Threat Intelligence (CTI) Analyst, you'll be a core member of our Cybersecurity Operations team, reporting to our VP of Cyber Threat Intelligence. Your job is to identify, track, and translate emerging cyber threats into intelligence that protects Fiserv's platforms, clients, data, and infrastructure – for a company that moves money and information millions of times a day. 


This is a highly technical CTI seat at the intersection of threat intelligence, incident response, and engineering. You'll work side by side with the SOC, Detection Engineering, Threat Hunting, Attack Surface Management, and Red and Purple Team groups, so your analysis never sits on a shelf – it becomes the detections, hunts, and priorities that come next. If you're naturally curious, love learning new things, and want to explore novel approaches to CTI – including building the tools, models, and platforms that mature a CTI program – this is the seat. 


What you’ll do: 

  • Operationalize the intelligence cycle by developing and maintaining intelligence requirements, collection requirements, collection plans, and analytic frameworks, then identifying gaps and refining the process to improve outcomes. 
  • Produce strategic, operational, and tactical intelligence – threat assessments, campaign analyses, executive briefings, and operational advisories – that inform stakeholders and shape their decisions. 
  • Track the threat actors, campaigns, capabilities, and attack patterns that matter most to Fiserv, and use that awareness to set operational priorities. 
  • Partner with the SOC and Detection Engineering teams to turn adversary behavior into detection opportunities and prioritized monitoring. 
  • Work with the Threat Hunting team to build hunt hypotheses grounded in observed adversary behaviors and trends. 
  • Team up with Attack Surface Management to prioritize vulnerabilities using real intelligence on emerging threats, exploitation trends, and attacker adoption patterns. 
  • Support Red and Purple Team exercises by profiling relevant threat actors so testing stays realistic and impactful. 
  • Dig into adversary infrastructure – domains, IPs, hosting providers, certificates, and operational patterns – to uncover relationships that support investigations and intelligence production. 
  • Help build the CTI program of the future by developing and improving intelligence tools, models, processes, and platforms. 
  • Responsibilities listed are not intended to be all-inclusive and may be modified as necessary. 

Experience you’ll need to have: 

  • 5+ years of experience in operational or technical cyber threat intelligence; OR 5+ years of experience in threat hunting, counter-adversary operations, incident response, digital forensics, or related cybersecurity disciplines, with demonstrated knowledge of CTI methodologies and practices. 
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field and/or equivalent military or federal experience. 
  • Demonstrated ability to apply the intelligence lifecycle, MITRE ATT&CK, cyber kill chain concepts, and adversary TTP analysis to real-world investigations, detections, threat hunts, and intelligence production. 
  • Demonstrated ability to conduct threat intelligence analysis, identify attack patterns, develop intelligence assessments, correlate technical indicators, and communicate actionable intelligence to operational and executive stakeholders. 
  • Demonstrated ability to evaluate attacker capabilities, assess organizational exposure, and put threats in context for an enterprise environment. 
  • Experience using Threat Intelligence Platform (TIP) solutions (e.g., Anomali, OpenCTI) to conduct analysis and support intelligence workflows. 
  • Experience working with common CTI providers (e.g., Google Threat Intelligence, Recorded Future, Flashpoint, Silobreaker, CrowdStrike). 
  • Experience using security telemetry from network, endpoint, cloud, identity, and/or email security platforms to support analysis, investigations, and threat validation. 
  • Strong written communication skills, with the ability to produce clear, concise, relevant intelligence products for a diverse range of stakeholders. 
  • Strong verbal briefing skills and comfort presenting threat findings to stakeholders at all levels. 

Experience that would be great to have: 

  • Relevant certifications such as GCTI, GCIH, GCFA, or similar. 
  • Experience in financial services or other regulated environments. 
  • Experience conducting malware triage, behavioral analysis, and technical assessments of the malicious tooling adversaries use. 
  • Experience performing infrastructure investigations using passive DNS, WHOIS, certificate transparency, internet scanning, NetFlow, and/or related enrichment sources. 
  • Experience using Python, PowerShell, KQL, SPL, or similar technologies to automate workflows. 
  • Experience running analytical investigations on large datasets, including enrichment, correlation, visualization, and trend analysis across multiple intelligence and security data sources. 
  • Experience using LLMs, agentic workflows, or other AI-enabled technologies to support intelligence collection, processing, analysis, and/or production. 

How you’ll work: 

  • We’re better together! This role is fully on-site at either our Berkeley Heights, NJ office OR our Alpharetta, GA office. 
  • This is a full-time, direct-hire position. No contract options or unsolicited agency submissions will be considered. 

Sponsorship: 

  • You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered. 

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law. 

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact [email protected]. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information. 


Note to agencies: Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions. 


Warning about fake job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address. 

Salary Range

$146,000.00 - $244,800.00

These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company’s sole discretion.

Thank you for considering employment with Fiserv.  Please:

  • Apply using your legal name
  • Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law. 

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact [email protected]. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.

Skills Required

  • 5+ years of operational or technical cyber threat intelligence experience, or 5+ years in threat hunting, counter-adversary operations, incident response, digital forensics, or related cybersecurity disciplines with CTI knowledge
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent military or federal experience
  • Knowledge of the intelligence lifecycle, MITRE ATT&CK, cyber kill chain concepts, and adversary TTP analysis
  • Ability to conduct threat intelligence analysis, identify attack patterns, develop assessments, correlate technical indicators, and communicate actionable intelligence
  • Ability to evaluate attacker capabilities, assess organizational exposure, and contextualize threats for an enterprise
  • Experience using Threat Intelligence Platform solutions such as Anomali or OpenCTI
  • Experience with CTI providers such as Google Threat Intelligence, Recorded Future, Flashpoint, Silobreaker, or CrowdStrike
  • Experience using security telemetry from network, endpoint, cloud, identity, or email security platforms
  • Strong written communication skills for producing intelligence products
  • Strong verbal briefing skills and comfort presenting findings to stakeholders at all levels
  • Relevant certifications such as GCTI, GCIH, GCFA, or similar
  • Experience in financial services or other regulated environments
  • Experience conducting malware triage, behavioral analysis, and technical assessments of malicious tooling
  • Experience performing infrastructure investigations using passive DNS, WHOIS, certificate transparency, internet scanning, NetFlow, or related sources
  • Experience using Python, PowerShell, KQL, SPL, or similar technologies to automate workflows
  • Experience analyzing large datasets through enrichment, correlation, visualization, and trend analysis
  • Experience using LLMs, agentic workflows, or AI-enabled technologies for intelligence work
  • Valid and unrestricted U.S. work authorization; candidates requiring current or future sponsorship are not eligible

Fiserv Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Fiserv and has not been reviewed or approved by Fiserv.

  • Healthcare Strength — Healthcare coverage is positioned as comprehensive, spanning medical, dental, and vision options alongside disability, life, and mental-health support resources. The offering is further reinforced by wellness programming and access to an employee assistance program with counseling.
  • Leave & Time Off Breadth — Time-off support appears broad, including paid holidays, sick time, and policies framed as well-being or recharge time. Parental leave and other leave types such as bereavement are also described as part of the overall package.
  • Retirement Support — Retirement benefits include a 401(k) plan with company matching and, for some legacy populations, access to a defined benefit pension plan. Equity-related programs such as an employee stock purchase plan are also described as available for eligible employees.

Fiserv Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Milwaukee, WI
41,000 Employees
Year Founded: 1984

What We Do

Fiserv, Inc. (NYSE: FI) is a leading global provider of payments and financial services technology solutions, driving innovation in payments, processing services, risk and compliance, customer and channel management, and business insights and optimization. For more information, visit www.fiserv.com.

Why Work With Us

As a global leader in payments and financial technology, we proudly serve clients in more than 100 countries. As one of Fortune® magazine's "World's Most Admired Companies™" 9 of the last 10 years, one of Fast Company’s Most Innovative Companies, and a top scorer on Bloomberg’s Gender-Equality Index, we are committed to innovation and excellence.

Gallery

Gallery

Similar Jobs

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Senior Complex Casualty Claims Resolution Specialist - Central Region

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
9 Locations
40000 Employees
75K-157K Annually

CrowdStrike Logo CrowdStrike

Marketing Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
145K-220K Annually
Hybrid
4 Locations
289097 Employees

Wells Fargo Logo Wells Fargo

Lead Software Engineer

Fintech • Financial Services
Hybrid
Iselin, NJ, USA
205000 Employees
159K-305K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account