Cyber Threat Intelligence (CTI) Analyst

3 months, 2 weeks ago
Full-time
Senior
Cybersecurity
AI2CYBER

AI2CYBER

AI2CYBER is a leading cybersecurity company that leverages AI technology to provide dynamic threat mitigation solutions. With a deep understanding of the constantly evolving security landscape, we proactively stay ahead of emerging challenges and equip...

Internet Software & Services
Founded 2014

Description

  • Analyze threat actor activity, campaigns, malware families, and evolving adversary TTPs.
  • Produce actionable intelligence reports for SOC teams, incident response, and leadership.
  • Conduct threat landscape assessments and sector-specific risk analysis.
  • Track and profile APT groups, financially motivated actors, and emerging threats.
  • Extract, correlate, and enrich IOCs such as domains, IPs, hashes, and infrastructure patterns.
  • Map adversary techniques to MITRE ATT&CK and analyze malware behavior, sandbox outputs, PCAPs, logs, and telemetry.
  • Support detection rule development using Sigma, YARA, Splunk, and EDR queries.
  • Work with STIX/TAXII feeds and threat intelligence platforms to support ingestion, normalization, and correlation.
  • Contribute to intelligence scoring models and validate intelligence with internal telemetry and honeypot data.
  • Support SOC investigations, incident response, purple-team exercises, and present findings to technical and executive stakeholders.

Requirements

  • This position is available only for Greek residents.
  • Strong understanding of adversary TTPs, the Kill Chain, MITRE ATT&CK, and IOC lifecycle/enrichment techniques.
  • Experience with threat intelligence platforms, malware analysis reports, log analysis tools such as Splunk or ELK, and OSINT collection techniques.
  • Knowledge of STIX/TAXII, YARA or Sigma rule creation, network protocols, and traffic analysis.
  • Experience with Windows and Linux security telemetry.
  • Scripting capability, with Python preferred, for data processing and automation.
  • Preferred experience tracking specific threat actors such as APT28, Lazarus, or FIN7.
  • Preferred familiarity with exploit development trends and CVE weaponization timelines.
  • Preferred experience with honeypots, telemetry-driven intelligence, ransomware ecosystems, and initial access brokers.
  • Nice-to-have certifications include GIAC GCTI, GCIA, GCED, OSCP, OSCE, CISSP, or SANS CTI-related certifications.

Benefits

  • Highly competitive salary reviewed upward on a regular basis.
  • Work from home with a performance-focused, remote-friendly setup.
  • Participation in state-of-the-art projects, tech challenges, and large-scale initiatives.
  • Personal and professional development opportunities with industry experts.
  • Continuous learning with access to board resources.
  • Structured onboarding plan and training for a smooth induction.
  • Equipment support to ensure you have the tools needed to work effectively.
  • No dress code for maximum comfort.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Middle Information Security Access Specialist

GR8 Tech 251-1K IT Services

GR8_TECH is hiring an IAM and access management professional to secure and automate employee access across its global B2B iGaming technology organization.

Active Directory AWS Azure
23 hours, 56 minutes ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by handling fraud and insider-threat cases from initial signal through resolution, protecting the company and its customers.

Python SIEM SQL
1 day ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by resolving fraud and insider-threat cases and protecting the company and its customers.

Python SIEM SQL
1 day ago

Cyber Threat Intelligence Analyst

Toyota Tsusho Systems 51-250 IT Services

Toyota Tsusho Systems US, Inc., a Toyota group technology and mobility company, is hiring a CTI Analyst to conduct cyber threat intelligence operations, malware and TTP research, and supporting engineering that strengthens global security defenses.

Cybersecurity
2 days ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers