Threat Intel Specialist (REMOTE)
CywareAbout the role
About Cyware
Cyware is a venture-backed organization, headquartered in New York City. The firm was founded by innovative practitioners to solve the massive-scale cybersecurity challenges they saw daily while working for leading global banks and technology organizations.
Cyware is disrupting the cybersecurity operations market with innovation that gives the firm claim to being the far-and-away ONLY company capable of delivering technology to build cyber fusion centers for customers in large enterprises and the mid-market.
Cyware is in hyper-growth mode. Your next opportunity starts here!!
More on Cyware: (www.cyware.com)
Built on innovation designed by SecOps practitioners and cybersecurity leaders, Cyware offers multiple technologies within its next-generation platform, including advanced threat intelligence solutions (TIP) for large and small security teams, vendor-agnostic security automation (SOAR), and security case management. As a result, organizations are able to increase speed and accuracy while reducing costs and analyst burnout. Cyware's Virtual Cyber Fusion solutions make secure collaboration, information sharing, and enhanced threat visibility a reality for enterprises, sharing communities (ISAC/ISAO), MSSPs, and government agencies of all sizes and needs.
About you:
- You can lead on strategic and tactical initiatives
- You are hungry, inquisitive, proactive, energetic, and driven
- You have a growth mindset and are committed to delivering results
- You thrive in a fast-paced, collaborative environment
Why We Are Hiring:
The Threat Intel Specialist will function as the threat SME, working with technology partners on common use cases and integrations, serving on multiple MITRE and industry alliance committees, fielding inquiries, interacting and collaborating with other industry experts in knowledge sharing groups and initiatives, and innovating to improve processes and deliverables.
Come join an exciting startup company in the cybersecurity space that just completed its $30 million Series B funding!
What You Will Do:
- Collect, process, catalog, and document threat information using a Multi-Source approach and various technical and human means
- Regularly interact with various commercial threat intel feed partners for integration with Cyware products
- Work with Technical Alliance Partnership to establish new value add relationships to build integrations
- Work with the Product team as a subject matter expert for cyber threat intelligence
- Provide Cyber Threat Intelligence and related integration knowledge to internal stakeholders.
- Develop actionable information in the form of technical indicators, reports, lists, rules, signatures, or indicators and warnings
- Critically analyze threat intelligence feeds and help internal teams for better integration
- Expertise in Threat hunting tools and capabilities
- Work with Malware sandbox providers for better integration with Cyware products
- Work with the product team and help them map the various threat intel feeds formats and structures to standard structures like STIX/TAXII
- Work with the product team for providing any expert advice on new features for Cyware's threat intel products
- Work with the research team and external partners for threat intelligence-related projects when required.
- Effectively analyze threat data and create easy-to-understand takeaway reports/presentations
- Establish and maintain a repository of a threat intelligence feed providers and enrichment providers
- Work effectively with all teams that operate across numerous geographies
- Quickly obtain knowledge of our current existing process, and identify success factors, strengths, weaknesses, and opportunities.
- Demonstrate analytics and provide intel briefing to Cyware executive leadership
- Provide advisory on all Threat Intel related activities
Who You Are
- 5+ years of work experience as a Threat Intel Analyst with relevant hands-on experience with large-scale enterprise cybersecurity products.
- The candidate should have experience with the management of information security tools such as Threat Intel Platform, Threat Intel Feeds, etc.
- Sound knowledge of STIX / TAXII, MITRE ATT&CK framework and related use cases
- Knowledge of handling the IOC, TTP and Threat actors in conjunction with SOC/Incident Response and Threat Hunting operations
- The candidate must have experience working with large threat intel feeds like Crowdstrike, Mandiant, Rec
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s