Cyber Threat Intelligence Analyst, Associate
Singapore · Full Time
Be the first to apply
- Experience
- 4+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 1 hour ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Role Overview
We are looking for a Cyber Threat Intelligence Analyst to join our Technology team. This role involves supporting technical threat investigations by monitoring cyber adversaries and producing actionable intelligence that enhances detection, response, and risk-aware decision-making within our firm.
About the Technology Division
Our Technology division focuses on innovation to strengthen the links and capabilities that empower the organization, enabling clients and colleagues to reshape markets and influence the future of communities.
Key Duties
- Perform proactive threat research and investigative analysis to identify adversary campaigns, capabilities, infrastructure, targets, and tactics, techniques, and procedures (TTPs) using internal collections, open-source intelligence, and commercial intelligence sources.
- Monitor and analyze threat actors, malware families, vulnerabilities, campaigns, and emerging threats to maintain comprehensive knowledge of adversary behaviors and methods.
- Evaluate cyber threat intelligence alerts and incoming data, assessing their relevance, credibility, severity, and impact, and escalate actionable insights appropriately.
- Draft concise and impactful threat intelligence reports, including tactical and technical analyses, threat assessments, summaries, and briefings tailored for both operational and non-technical audiences.
- Validate, enrich, and characterize threat indicators and technical data using various internal, commercial, and open-source security tools, curating high-confidence indicators of compromise for operational uses.
- Utilize analytical frameworks like MITRE ATT&CK and the Diamond Model to describe adversary activities, infrastructure, capabilities, and their interrelations.
- Analyze internal and external security datasets to discover patterns, correlations, and trends that inform threat investigations and intelligence assessments.
- Collaborate with teams including threat hunting, security monitoring, incident response, and detection engineering to convert threat intelligence into detection measures, investigative leads, mitigations, and control validations.
- Update and maintain threat profiles relevant to assigned responsibilities and contribute intelligence that promotes proactive detection and discovery.
- Enhance CTI analytic processes, investigative methods, playbooks, and automation tools to improve intelligence workflow efficiency and consistency.
- Where relevant, employ scripting and data analysis, particularly in Python, to support investigations, enrichment tasks, data processing, and analytic workflows.
Candidate Requirements
- At least 4 years of experience in cyber threat intelligence, cybersecurity investigations, threat hunting, security operations, incident response, or related fields.
- Proficient in researching cyber threat actors, malware, campaigns, vulnerabilities, and adversary TTPs using various intelligence sources.
- Knowledgeable about intelligence analysis frameworks such as MITRE ATT&CK, the Diamond Model, intelligence lifecycle, and structured analytic techniques.
- Experience with alert triage and investigative analysis, including assessing intelligence for relevance, credibility, and organizational impact.
- Strong skills in report writing and analytic communication to clearly present evidence, assessments, confidence, implications, and recommendations.
- Understanding of intelligence requirements and collection management concepts to identify information gaps and align data acquisition with priority needs.
- Familiarity with SIEM, endpoint, network, threat intelligence platforms, and other security tools, including interpreting security telemetry for investigations.
- Experience enriching and analyzing technical indicators such as domains, IPs, URLs, file hashes, and malware artifacts.
- Working knowledge of scripting or data analysis, preferably Python, for automation and investigative workflows.
- Exceptional analytical and critical-thinking abilities to synthesize multiple information sources, separate facts from assessments, and build evidence-based judgments.
- Able to collaborate across cybersecurity teams and communicate effectively with both technical and non-technical stakeholders.
- Capable of managing multiple investigative and intelligence priorities concurrently while ensuring detailed, timely, and quality analysis.
Preferred Qualifications
- Certifications such as GIAC Cyber Threat Intelligence (GCTI), CISSP, CASP+, or equivalent.
- Experience with threat intelligence platforms, commercial intelligence tools, OSINT tooling, malware analysis platforms, or large-scale security data analytics.
- Familiarity with intelligence requirements management, source evaluation, structured analytic methods, or intelligence production best practices.
Company Information
Our firm, with over 90 years of history, commits to putting clients first, doing what is right, exemplary ideas leadership, diversity and inclusion, and community contribution. We operate globally with more than 80,000 employees at 1,200 offices across 42 countries. We offer an empowering and supportive environment, attracting top talent who collaborate creatively and benefit from comprehensive employee advantages and career mobility.
Equal Opportunity Employer Statement
We are dedicated to fostering diversity and inclusion in our workforce. We recruit and develop staff based on skills and talents and value a broad range of backgrounds and experiences that reflect our global communities.
Industry
Financial Services