Cyber Threat Intelligence Analyst - Muntinlupa City

Posted Yesterday
Be an Early Applicant
Hiring Remotely in City of Muntinlupa, Rizal, Calabarzon, PHL
Remote
Mid level
Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
The Role
Perform cyber threat intelligence and threat hunting across enterprise environments using AI-assisted tooling. Collect, analyze, and produce tactical, operational, and strategic intelligence; map adversary behaviors to MITRE ATT&CK; support incident response, detection engineering, vulnerability prioritization, and executive threat briefings. Collaborate with cross-functional security teams to translate intelligence into detections, mitigations, and improved defensive strategies.
Summary Generated by Built In
Requisition Number: 2379117
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
As a Cyber Threat Intelligence Analyst within the Cyber Defense team at Optum Insight, you will play a pivotal role in building and maturing our Cyber Threat Intelligence program. This remote position offers the unique opportunity to leverage cutting-edge security technologies and enterprise-approved AI tools to proactively hunt for threats across enterprise environments. You will collaborate closely with Cyber Defense and Cyber Assurance teams to deliver tactical, operational, and strategic intelligence that protects healthcare organizations we serve. If you are passionate about tracking adversary behaviors, driving continuous defensive improvements, and working in a highly collaborative, fast-paced environment, we invite you to apply.
Primary Responsibilities:
  • Use enterprise-approved AI tools to streamline workflows, automate repetitive tasks, and drive continuous improvement within threat intelligence gathering
  • Evaluate emerging trends and technological advancements to inform solution design, threat hunting strategies, and strategic defense innovation
  • Collect, aggregate, and analyze cyber threat intelligence from internal and external sources to identify emerging threats, adversary activity, and risks to the organization
  • Monitor threat actor tactics, techniques, and procedures (TTPs), malware campaigns, vulnerabilities, and indicators of compromise (IOCs) relevant to the organization's environment
  • Produce actionable tactical, operational, and strategic intelligence products tailored to technical teams, cyber leadership, and business stakeholders
  • Conduct intelligence-driven structured and unstructured threat hunting activities to proactively identify malicious activity, adversary presence, and indicators of compromise within enterprise environments
  • Collaborate closely with the Incident Response team during active security incidents by providing threat context, adversary attribution, attack-path analysis, and recommendations for containment and remediation
  • Partner with Detection Engineering teams to translate threat intelligence into effective detection logic, analytics, use cases, signatures, correlation rules, and monitoring content
  • Work with Security Engineering teams to identify security control gaps, recommend defensive improvements, and validate mitigation strategies against current threat activity
  • Support Security Operations Center (SOC) analysts by providing timely threat intelligence, indicators, adversary context, and investigative guidance to enhance detection and response effectiveness
  • Collaborate with Vulnerability Response, Vulnerability Management, and Cyber Assurance teams to assess the exploitation risk of vulnerabilities, prioritize remediation efforts, and provide threat-informed risk assessments
  • Develop and maintain threat intelligence repositories, knowledge bases, threat profiles, and intelligence-sharing processes
  • Map adversary behaviors to industry frameworks such as MITRE ATT&CK and support the development of threat-informed defense strategies
  • Conduct research on emerging cyber threats, geopolitical developments, ransomware groups, nation-state actors, and cybercriminal organizations that may impact the business
  • Support purple team, red team, and adversary emulation exercises by providing intelligence on relevant threat actors and attack techniques
  • Identify trends, patterns, and intelligence gaps to improve organizational cyber defense capabilities and inform strategic security decisions
  • Collaborate with internal and external stakeholders, including Cyber Defense, Incident Response, Detection Engineering, Security Engineering, Vulnerability Response, Risk Management, and executive leadership teams to ensure intelligence is actionable and aligned with business priorities
  • Prepare and deliver intelligence briefings, threat assessments, and executive-level reporting to communicate current and emerging cyber risks
  • Evaluate the effectiveness of threat intelligence activities and continuously improve intelligence collection, analysis, dissemination, and operationalization processes
  • Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so

Required Qualifications:
  • 3+ years of experience working in cybersecurity defense, incident response, or threat intelligence operations
  • 1+ years of experience conducting structured and/or unstructured threat hunting activities and mapping adversary behaviors to cybersecurity frameworks such as MITRE ATT&CK
  • Experience writing tactical and operational threat intelligence briefs or detailed analytical reports
  • Experience utilizing scripting languages (such as Python, PowerShell, or Bash) to automate daily operational tasks or parse security data

Preferred Qualifications:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent work experience in lieu of degree)
  • Professional certifications in threat intelligence or incident response (e.g., GCTI, GCIH, CEH, Security+, CISSP, or equivalent)
  • Experience utilizing enterprise-approved AI or automation tools to augment data collection, summarize complex threat reports, and streamline analytical processes
  • Deep understanding of threat actor methodologies, cybercriminal ecosystems, ransomware networks, and geopolitical threat vectors
  • Demonstrated solid cross-functional collaboration

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.

Skills Required

  • 3+ years experience in cybersecurity defense, incident response, or threat intelligence operations
  • 1+ years conducting structured and/or unstructured threat hunting and mapping to MITRE ATT&CK
  • Experience writing tactical and operational threat intelligence briefs or detailed analytical reports
  • Experience utilizing scripting languages (such as Python, PowerShell, or Bash) to automate tasks or parse security data
  • Bachelor's degree in Computer Science, Cybersecurity, IT, or equivalent experience
  • Professional certifications (e.g., GCTI, GCIH, CEH, Security+, CISSP, or equivalent)
  • Experience utilizing enterprise-approved AI or automation tools to augment data collection and analysis
  • Deep understanding of threat actor methodologies, ransomware networks, and geopolitical threat vectors
  • Demonstrated cross-functional collaboration with security teams (IR, Detection Engineering, Security Engineering, Vulnerability Management)

What the Team is Saying

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Eden Prairie, MN
160,000 Employees
Year Founded: 2011

What We Do

Optum, part of the UnitedHealth Group family of businesses, is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. At Optum, we support your well-being with an understanding team, extensive benefits and rewarding opportunities. By joining us, you’ll have the resources to drive system transformation while we help you take care of your future. We recognize the power of connection to drive change, improve efficiency and make a difference in health care. Join a team where your skills and ideas can make an impact and where collaboration is key to creating technology that produces healthier outcomes.

Gallery

Gallery
Gallery
Gallery

Optum Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Optum has three workplace models that balance the needs of the business and the responsibilities of each role. These models, core on‑site (5 days/week), hybrid (4 days/week) and telecommute or fully remote, vary by country, role and location.

Typical time on-site: Not Specified
HQEden Prairie, MN
Metro Manila, Philippines
Cebu, Philippines
Davao, Philippines
Ann Arbor, MI
Atlanta, GA
Baltimore, MD
Bengaluru, India
Chennai, India
Dallas, TX
Detroit, MI
Dublin, Ireland
Hartford, CT
Houston, TX
Hyderabad, India
Jacksonville, FL
Las Vegas, NV
Letterkenny, Ireland
Louisville, KY
Madison, WI
Minneapolis, MN
Nashville, TN
New Delhi, India
Philadelphia, PA
Phoenix, AZ
Pune, India
Raleigh, NC
San Diego, CA
Washington, DC
Learn more

Similar Jobs

Optum Logo Optum

HR Intern - Alabang

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Quality Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Security Engineer

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Optum Logo Optum

Tech Support - Senior Major Incident and Problem Coordinator

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote
City of Muntinlupa, Rizal, Calabarzon, PHL
160000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account