Senior Cyber Threat Intelligence Analyst
AmgenAbout the role
Career Category
Information SystemsJob Description
Join our team at AMGEN Capability Center Portugal, number 1 company in Best WorkplacesTM https://www.greatplacetowork.pt/ ranking in Portugal (category 201-500 employees) by the Great Place to Work Institute. We have a team of over 300 talented people and more than 35 different nationalities, diverse areas of expertise and professional experience that are shaping the future of healthcare. This is your chance to explore a world of opportunities in different areas such as Cybersecurity, Data & Analytics, Digital, Technology and Innovation, Finance, General & Admin, Human Resources, Regulatory Affairs and many more. In Lisbon's city center, our AMGEN office fosters innovation, excellence, and inspiration. Come thrive with us at AMGEN, supporting our mission To Serve Patients. What we do at AMGEN matters in people’s lives.SENIOR CYBER THREAT INTELLIGENCE ANALYST
LIVE
WHAT YOU WILL DO
Our Cyber Threat Intelligence (CTI) analysts play a vital role in enhancing Amgen’s cyber defense posture by identifying, analyzing, and disseminating intelligence related to cyber threats.
The Specialist, Cyber Threat Intelligence (CTI) is responsible for driving Amgen’s threat intelligence strategy by identifying, evaluating, and contextualizing emerging cyber threats that may impact global operations. This position provides actionable intelligence and expert-level guidance to threat detection, response, and executive stakeholders.
The Specialist is a thought leader within the security organization, mentoring junior analysts, shaping intelligence products, and guiding the integration of intelligence into technical and strategic defenses. This role operates at the intersection of intelligence, security operations, and threat research to proactively defend Amgen’s infrastructure and assets.
Key Responsibilities
Lead the development of Amgen’s cyber threat intelligence program, aligning with business objectives and evolving threat landscapes.
Drive intelligence collection strategies from open sources, dark web, vendor feeds, ISACs, and government partnerships.
Deliver strategic, operational, and tactical intelligence reports to various audiences including SOC, IR, executives, and business units.
Develop threat actor profiles and campaign tracking that inform risk decisions and threat modeling.
Guide enrichment of detection content, threat hunting activities, and IR investigations with relevant intelligence insights.
Collaborate with detection engineering and SOC teams to operationalize threat intelligence in SIEMs, EDRs, and TIPs.
Maintain awareness of global cyber threats and geopolitical developments that could affect Amgen’s operations or supply chain.
Serve as a subject matter expert during major security incidents, providing timely threat context and attribution assessments.
Represent Amgen in industry groups, ISACs, and public-private intelligence sharing forums.
Mentor junior intelligence analysts and contribute to professional development within the security team.
Lead purple team threat emulation efforts, red team adversary simulation development, or threat modeling workshops.
WIN
WHAT WE EXPECT OF YOU
We are all different, yet we all use our unique contributions to serve patients. The committed professional we seek is passionate about cyber security and a strong cross-functional collaborator with these qualifications:
- Bachelor’s degree with practical experience in Cyber Threat Intelligence, Threat Hunting, or a similar security role.
- Demonstrated expertise in cyber threat intelligence, with experience producing intelligence products consumed by both technical and executive stakeholders.
- Deep understanding of threat actor tactics, techniques, and procedures (TTPs), malware campaigns, and cybercrime ecosystems.
- Proficiency with intelligence platforms (e.g., MISP, ThreatConnect, OpenCTI), SIEMs (e.g., Qradar, Splunk, Elastic Stack, Microsoft Sentinel ), and automation tools.
- Strong knowledge of threat intelligence frameworks (MITRE ATT&CK, kill chain, diamond model, STIX/TAXII).
- Experience supporting incident response with contextual intelligence and adversary tracking.
- Ability to handle ambiguity and prioritize in a dynamic threat landscape.
- Commitment to ongoing learning and development in the CTI field.
THRIVE
WHAT YOU C
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s