Cyber Threat Intelligence Analyst

Reposted 21 Days Ago
Be an Early Applicant
Hellerup, Faaborg-Midtfyn, Syddanmark, DNK
In-Office
Mid level
Business Intelligence • Consulting
The Role
Collect, validate, and enrich threat intelligence; produce client-ready reports and advisories; support detection, prevention, hardening, and incident readiness; recommend mitigations, flag exploited CVEs, propose threat hunts, and assist red/purple teams.
Summary Generated by Built In
Company Description

 

 

Job Description

We’re looking for a CTI Analyst to transform threat, technology, and business insights into real-world protection.

What you’ll do
In this role, you’ll collect, validate, and enrich threat intelligence; draft clear, actionable reports; and support detection, prevention, hardening, and incident readiness. You’ll collaborate with senior CTI analysts, SOC/IR, detection engineering, offensive testers, and security architects to operationalise intelligence and ensure that our clients are investing time and energy in mitigations that reduce threats to their business.

Your key responsibilities will include but are not limited to:

Collection and triage

  • Maintain asset/client inventories and requirements to ensure CTI activities are aligned with client needs and prioritised business assets.
  • Monitor open-source, commercial, and community feeds for relevant threats.
  • Validate and enrich IOCs (hashes, IPs, domains, URLs) with context (first-seen, ASN, geo, confidence).
  • Document findings and escalate complex samples/problems to senior analysts or engineers.

Reporting and communication

  • Draft concise situation updates, reporting, advisories, and client-ready summaries at a tactical, operational, and strategic level.
  • Maintain intel repositories: accurate tagging, TLP markings, confidence levels, and deduplication.

Translating priority threats and TTPs into actionable guidance, courses of action, and security outcomes (with other SMEs)

  • Recommend MFA rollouts, geo/IP restrictions, and mail filtering adjustments and configuration baselines.
  • Flag actively exploited CVEs, track remediation progress, and suggest compensating controls where patching lags.
  • Propose threat hunts, initial detection opportunities, and draft low-noise rules.
  • Assist red/purple teams with threat briefs, ATT&CK mappings, and test data.

What you’ll bring
We’re looking for someone with 3–5 years of experience in a security role such as Security Operations Center (SOC), Incident Response (IR), or Cyber Threat Intelligence (CTI) analyst.

On top of that, you should also meet (most of) the following criteria:

  • Intermediate understanding of the threat landscape and the MITRE ATT&CK framework – and, of course, have the curiosity to deepen this expertise.
  • Strong analytical foundation and attention to details throughout the intelligence lifecycle.
  • Clear and structured communication skills, with the ability to produce client-ready advisory and suggested courses of action for a varied set of stakeholders.
  • Proficiency with SIEM/EDR platforms and basic query languages such as KQL, Sigma, Splunk SPL.
  • Familiarity with cloud and on-prem infrastructure technologies and common hardening techniques.

We also welcome skills like basic Python scripting for parsing, enrichment, and automation; experience with malware triage using sandboxes and common tools; and familiarity with – or a genuine willingness to learn – how to write and test effective, low-noise detection rules. If you’re eager to grow in these areas, we’d love to hear from you.

What we offer
The Tech Collective is a fast-growing consulting company powered by Implement Consulting Group. We help organisations unlock the immense potential of data, AI, and analytics, ensuring that they are fit for the digital future.

Through co-creation and passionate advisory, we aim to make our clients’ data easy to handle and provide useful insights.

In our collective, you’ll find people with a combination of nerdiness and infectious energy. We’re passionate about technology, but we also have a sincere interest in people.

We’re conducting interviews on an ongoing basis and will close this opportunity once we find our new colleague, so please apply as soon as possible.

We look forward to hearing from you!

Skills Required

  • 3-5 years experience in SOC, Incident Response, or CTI
  • Intermediate understanding of threat landscape and MITRE ATT&CK
  • Strong analytical skills and attention to detail across intelligence lifecycle
  • Clear, structured communication; ability to produce client-ready advisories
  • Proficiency with SIEM/EDR platforms and basic query languages (KQL, Sigma, Splunk SPL)
  • Familiarity with cloud and on-prem infrastructure technologies and hardening techniques
  • Basic Python scripting for parsing, enrichment, and automation
  • Experience with malware triage using sandboxes and common tools
  • Familiarity or willingness to learn writing and testing low-noise detection rules

Implement Consulting Group Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Implement Consulting Group and has not been reviewed or approved by Implement Consulting Group.

  • Equity Value & Accessibility Equity participation is accessible relatively early, with opportunities to buy shares and benefit from profit or dividend sharing. Feedback suggests this adds meaningful upside to total rewards.
  • Pay Growth & Progression Advancement is described as accessible, with promotions tied to increases in salary and bonus. Feedback suggests progression and performance translate into tangible pay growth.
  • Parental & Family Support Equal parental leave for all parents and structured before/during/after-leave support are explicitly offered. These concrete policies signal strong family support within the benefits package.

Implement Consulting Group Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Raleigh, NC
1,329 Employees
Year Founded: 1996

What We Do

How can organisations become truly fit for humans and fit for the future? More competitive, adaptable and sustainable – and more innovative, engaging and entrepreneurial? We believe it calls for an uncompromising combination of deep functional and transformational expertise. It also calls for a certain mindset: that all change starts with people and that consulting is, in essence, helping. And it demands we work in small, agile teams committed to creating impact together with our clients. Headquartered in Copenhagen with offices in Aarhus, Stockholm, Gothenburg, Malmo, Oslo, Zurich, Munich, Hamburg and Raleigh, we are fortunate to count more than 1000 colleagues working globally with clients on projects of all shapes, sizes and ambitions.

Similar Jobs

Xero Logo Xero

Designer

Cloud • Fintech • Information Technology • Machine Learning • Software
Hybrid
Kuglebjerg, DNK
4500 Employees

Xero Logo Xero

Designer

Cloud • Fintech • Information Technology • Machine Learning • Software
Hybrid
Kuglebjerg, DNK
4500 Employees

RapDev Logo RapDev

Servicenow Engineer

Information Technology • Productivity • Professional Services • Software
Hybrid
28 Locations
130 Employees

Xero Logo Xero

Head of Customer Success

Cloud • Fintech • Information Technology • Machine Learning • Software
Hybrid
2 Locations
4500 Employees

Similar Companies Hiring

Northslope Thumbnail
Artificial Intelligence • Information Technology • Software • Analytics • Consulting • Generative AI
London, GB
100 Employees
Compa Thumbnail
Artificial Intelligence • HR Tech • Software • Business Intelligence
Irvine, CA
75 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account