Senior Analyst, Threat Intelligence
DeepwatchAbout the role
Come join Deepwatch’s team of world-class cybersecurity professionals and the brightest minds in the industry. If you're ready to challenge yourself with work that matters, then this is the place for you. We're redefining cybersecurity as one of the fastest growing companies in the U.S. – and we have a blast doing it!
Who We Are
Deepwatch is the leader in managed security services, protecting organizations from ever-increasing cyber threats 24/7/365. Powered by Deepwatch’s cloud-based security operations platform, Deepwatch provides the industry’s fastest, most comprehensive detection and automated response to cyber threats together with tailored guidance from dedicated experts to mitigate risk and measurably improve security posture. Hundreds of organizations, from Fortune 100 to mid-sized enterprises, trust Deepwatch to protect their business.
Our core values drive everything we do at Deepwatch, including our approach to tackling tough cyber challenges. We seek out tenacious individuals who are passionate about solving complex problems and protecting our customers. At Deepwatch, every decision, process, and hire is made with a focus on improving our cybersecurity solutions and delivering an exceptional experience for our customers. By embracing our values, we create a culture of excellence that is dedicated to empowering our team members to explore their potential, expand their skill sets, and achieve their career aspirations, which is supported by our unique annual professional development benefit.
Deepwatch recognition includes:
- 2023, 2022 and 2021 Great Place to Work® Certified
- 2023 and 2022 Forbes America’s Best Startup Employers
- 2023 and 2022 Fortress Cybersecurity Award
- 2023 $180M Series C investment from Springcoast Capital Partners, Splunk Ventures, and Vista Credit Partners of Vista Equity Partners
- 2022 Cigna Healthy Workforce Silver Designation
- 2022 Cybersecurity Excellence Award for MDR
Senior Analyst, Threat Intelligence
This job is hybrid and candidates must be available available to work in one of our COE locations: Tampa, FL; Denver, CO; DC metro area, CA (Bay area), Austin, TX.
As a Senior Threat Intelligence Analyst, you will be instrumental in collecting, analyzing, and disseminating cyber threat intelligence that directly informs and enhances our security awareness, detection, response, and defensive capabilities. You’ll leverage your expertise to process large volumes of cyber threat data, conduct deep-dive analysis, and produce high-quality reports for internal and external stakeholders.
This role requires a keen eye for detail, strong analytic tradecraft, and excellent communication skills. You’ll play a key role in shaping intelligence-driven security operations while supporting the broader threat intelligence needs of our clients and internal teams.
In this role, you’ll get to:
- Assist in threat research for context to indicators
- Assist in threat hunting, response, and detection program development and maturity
- Monitor and evaluate publicly available sources, selecting and reviewing cyber threat reporting for relevance and actionability.
- Process selected cyber threat reporting for structured ingestion into OpenCTI, ensuring accurate tagging and classification for enhanced data correlation and searchability.
- Analyze processed threat intelligence, correlating and synthesizing findings with other internal and external sources to create a comprehensive threat picture.
- Produce brief, high-impact summaries highlighting essential facts for internal sharing, as well as more detailed formal reports that include key facts, technical details, threat actor profiling, victimology, attack chains, and TTPs.
- Conduct triage analysis of indicators and results, escalating relevant findings and supporting alert generation.
- Recommend mitigation measures based on technical analysis and threat assessments to reduce client risk exposure.
- Identify and map key elements from intelligence reports to STIX threat objects for easy consumption by stakeholders and ingestion into the Threat Intelligence Platform.
- Ingest finalized intelligence reports and supporting data into the Threat Intelligence Platform for knowledge management, correlation, hunting, and alerting, ensuring accessibility for internal teams and clients.
- Collect, process, and analyze ransomware activity and data leak site listings, maintaining a comprehensive leak site database to track trends, generate reports, and inform clients.
- Creat
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s