Jobs and Careers
US

Cyber Threat Fusion Intelligence - Lead

USAA
San Antonio, United Statesfull_timeVerifiedPosted 5 Jun 2025
💰 $273,930/yr($143,320/yr$273,930/yr)

About the role

Why USAA?

At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.

Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful.

The Opportunity

The Cyber Threat Fusion Intelligence Team (CFIT) is seeking a motivated Lead Strategic Cyber Threat Fusion Intelligence Analyst with demonstrated experience in cyber threat-centric and cyber-criminal Fraud analytic capabilities. This candidate will drive our strategic intelligence program while integrating with our technical and operational intelligence programs to support operations, cyber fraud threat hunting missions, vulnerability management, insider threat, and business requirements while ensuring that senior leaders are advised of current and ongoing threats allowing them to make informed decisions.

The CTI team is USAA’s premier cyber intelligence program dedicated to support our Cyber Threat Operation Center (CTOC). The CTOC exists to detect, analyze, and respond to cyber security events. The CTOC is comprised of several teams, all reporting to the ED of IS Engineering & Cybersecurity. These teams are individual units that partner as needed to provide centralized and coordinated response activities. Our Cyber Threat Intelligence team is responsible for collecting, analyzing, and disseminating threat intelligence regarding threat actors targeting USAA and our members. This information is used to continually enhance threat management capabilities to maximize our protective and detective cyber security posture and continuously improve our processes.

Our Cyber Threat Intelligence team is responsible for collecting, analyzing, and disseminating threat intelligence regarding threat actors targeting USAA. This information is used to continually enhance threat management capabilities to maximize our protective and detective cyber security posture and continuously improve our processes.

Specifically, a successful candidate will be collecting requirements from stakeholders and conducting research and analysis to provide timely and actionable intelligence that drives and informs the security posture of USAA

We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ, or Colorado Springs, CO. Relocation assistance is not available for this position.

What you'll do:

  • Influences and leads efforts across the Information Security department and enterprise as a subject matter expert in their domain.
  • Leads research efforts and analysis of the latest information security vulnerabilities, threats, exploits, trends and intelligence. Shares intelligence with the enterprise. Collaborates in the Intelligence community with external organizations.
  • Serves as subject matter expert, leads, and improves the vulnerability management, security configuration assessment, and/or penetration testing programs.
  • Develops analysts through training and knowledge sharing activities.
  • Monitors internal and external networks, systems, and applications for advanced security anomalies and events (e.g. suspicious behavior attacks, and security breaches). Trains analysts in incident detection and response. Leads and improves the incident response program.
  • Leads and responds to cyber incidents, performing detailed analysis using complex security tools to determine root cause and impact by using a broad range of demonstrated experience (e.g. forensics, networking, servers, coding, etc.) to determine a malicious actor's tactics, techniques, and procedures. Acts as leader for cyber incidents.
  • May testify as expert witness in court.
  • Incorporates discoveries from the incident response process to substantially improve the existing detection capabilities, operational processes, security controls, and overall program.
  • Prepares and delivers written and verbal briefs with recommendations to senior leadership and external parties on latest threats, alerts, incidents, and improvements.
  • Drives and directs quality work efforts. Serves as the primary resource for cross-functional team members on escalated issues of a unique nature.
  • Maintains expert level knowledge of USAA Information Security standards as well as industry information security best practices, frameworks, laws, and regulations.
  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

USAA

View company profile →