Threat Intelligence Analyst

Posted 3 Days Ago
Be an Early Applicant
2 Locations
In-Office
Entry level
Design • Manufacturing
The Role
Monitor global cyber threats, analyze intelligence from OSINT, commercial feeds, industry platforms, and dark web tools, and correlate findings with internal security events. Develop KQL queries for threat hunting and investigations, produce intelligence reports and executive briefings, support full-lifecycle incident response and forensic investigations, and strengthen detection capabilities through threat modeling, playbooks, and collaboration with SOC and technology teams.
Summary Generated by Built In

About the Role

We are looking for a skilled and proactive Threat Intelligence Analyst to join our Information Security team.

This is an exciting opportunity to play a critical role in protecting DS Smith's operations, data, and infrastructure by identifying, analysing, and communicating cyber security threats. You will help strengthen our security posture through actionable threat intelligence, advanced threat hunting, and hands-on incident response activities.

Working closely with Security Operations, Incident Response, Infrastructure, and wider Technology teams, you will monitor the evolving threat landscape, investigate potential cyber threats, and support the continuous improvement of our detection and response capabilities. Leveraging Microsoft Sentinel, Microsoft Defender, DarkIQ, and other intelligence sources, you will provide timely intelligence that helps the business stay ahead of emerging threats.

A core focus of the role is to transform threat intelligence into meaningful insights and practical actions, ensuring risks are understood and mitigated before they impact the organisation.

Key responsibilities include:

  • Monitoring the global threat landscape for emerging cyber threats, vulnerabilities, and threat actor activity relevant to DS Smith and the manufacturing sector

  • Analysing intelligence from multiple sources, including OSINT, commercial feeds, industry sharing platforms, and dark web monitoring tools

  • Correlating external intelligence with internal security events using Microsoft Sentinel and Microsoft Defender

  • Developing and maintaining advanced KQL queries to support threat hunting, detection engineering, and incident investigation activities

  • Producing actionable threat intelligence reports, threat actor profiles, IoCs, and executive briefings

  • Supporting and participating in incident response activities, from initial triage through containment, eradication, recovery, and post-incident review

  • Conducting forensic investigations and providing threat context during live security incidents

  • Collaborating with SOC teams, security architects, and technology stakeholders to strengthen detection and response capabilities

  • Contributing to the development of threat models, risk assessments, playbooks, and operational processes

  • Maintaining awareness of evolving cyber threats, attack techniques, and trends impacting the manufacturing and logistics sectors

This role offers an excellent opportunity to influence cyber security strategy while working as part of a collaborative team focused on protecting a global organisation.

About You

You're an experienced cyber security professional with a strong background in threat intelligence, incident response, and security operations.

We're looking for:

  • Experience in cyber security, with a focus on threat intelligence, incident response, or security operations

  • Proven hands-on experience managing security incidents throughout the full incident response lifecycle

  • Strong understanding of cyber threats, threat actor behaviour, attack methodologies, and intelligence frameworks such as MITRE ATT&CK, the Diamond Model, and Cyber Kill Chain

  • Advanced knowledge of Microsoft Sentinel, Microsoft Defender, and KQL for threat hunting and investigation

  • Experience working with threat intelligence platforms and dark web monitoring solutions, such as DarkIQ or equivalent

  • Strong analytical skills with the ability to identify patterns and draw meaningful conclusions from complex datasets

  • Knowledge of malware analysis, phishing investigations, and infrastructure security principles

  • Experience with scripting and automation using PowerShell, Python, or similar technologies

  • Excellent communication skills, with the ability to translate technical findings into clear business-focused recommendations

  • A collaborative approach and desire to continuously improve security capabilities across the organisation

It would be advantageous if you also have:

  • Relevant industry certifications such as GCTI, GTIA, SC-200, or equivalent

  • Experience within manufacturing, logistics, or industrial environments

  • Knowledge of OT/ICS security and threats affecting operational technology environments

  • Familiarity with GDPR, NIS2, and other relevant cyber security regulations

Skills Required

  • Experience in cybersecurity focused on threat intelligence, incident response, or security operations
  • Hands-on experience managing security incidents through the full incident response lifecycle
  • Understanding of cyber threats, threat actor behavior, attack methodologies, MITRE ATT&CK, the Diamond Model, and Cyber Kill Chain
  • Advanced knowledge of Microsoft Sentinel, Microsoft Defender, and KQL
  • Experience with threat intelligence platforms and dark web monitoring solutions such as DarkIQ or equivalent
  • Strong analytical skills for identifying patterns and drawing conclusions from complex datasets
  • Knowledge of malware analysis, phishing investigations, and infrastructure security principles
  • Experience with scripting and automation using PowerShell, Python, or similar technologies
  • Excellent communication skills and ability to translate technical findings into business recommendations
  • Relevant industry certification such as GCTI, GTIA, SC-200, or equivalent
  • Experience in manufacturing, logistics, or industrial environments
  • Knowledge of OT/ICS security and operational technology threats
  • Familiarity with GDPR, NIS2, and other relevant cybersecurity regulations

DS Smith Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about DS Smith and has not been reviewed or approved by DS Smith.

  • Fair & Transparent Compensation Pay is considered okay to good across many roles, with some plants indicating competitive or above‑market hourly rates for operators and similar positions. This supports a broadly fair perception of base pay even as experiences vary by site.
  • Healthcare Strength U.S. offerings include day‑one medical/vision and dental, employer HSA contributions, and 100% company‑paid life and short/long‑term disability, alongside an EAP. Some role descriptions also highlight mental‑health and fertility options.
  • Retirement Support Packages commonly reference a 401(k) with company match and, in some locations, pension eligibility or company‑funded retirement contributions. This positions retirement benefits as a meaningful component of total rewards.

DS Smith Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Maidenhead
12,147 Employees

What We Do

DS Smith provides innovative packaging solutions, paper products and recycling services with a commitment to sustainability and a circular economy. Our core purpose is to Redefine Packaging for a Changing World, and our expert teams work closely with like-minded partners to incorporate renewable resources for products that minimize our environmental impact, reduce complexity and increase profitability through supply chain optimization

Similar Jobs

Samsara Logo Samsara

Senior Software Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
Poland
4000 Employees
Remote or Hybrid
2 Locations
289097 Employees

Capco Logo Capco

Integration Engineer

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
Poland
6000 Employees

Mondelēz International Logo Mondelēz International

Senior Director, Global Supply Chain Excellence Program & Focused Improvement Lead

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
29 Locations
90000 Employees
174K-287K Annually

Similar Companies Hiring

Fortune Brands Innovations Thumbnail
Manufacturing
Deerfield, IL
10000 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account