Cyber Threat Intelligence Analyst

1 day, 6 hours ago
Full-time
Mid Level
Cybersecurity
Toyota Tsusho Systems

Toyota Tsusho Systems

Toyota Tsusho Systems (TTS) is the global ICT company of the Toyota Tsusho Group, offering innovative IT solutions to drive business growth and create new ventures. As a member of the Toyota Group, TTS specializes in cybersecurity, digital transformati...

IT Services
51-250
Founded 2011

Description

  • Participate in recurring CTI operational coverage, including monitoring, alert reviews, RFIs, advisories, incident-response requests, and threat hunts.
  • Document operational findings and translate them into intelligence, hunting, detection, and defensive actions.
  • Research malware, threat actors, campaigns, infrastructure, attack techniques, and emerging threats.
  • Produce research reports, advisories, threat profiles, indicators, MITRE ATT&CK mappings, hunting hypotheses, queries, detection recommendations, and defensive guidance.
  • Present significant technical findings to CTI teams and relevant stakeholders.
  • Maintain rigorous source validation, analytical accuracy, and documentation standards.
  • Develop, improve, maintain, validate, and document tools and automation supporting CTI operations and research.
  • Prioritize engineering and research work that addresses operational gaps and improves analytic quality, efficiency, and resilience.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • 3–5 years of hands-on experience in cyber threat intelligence, including operational support and technical threat research.
  • Strong malware analysis skills, including static and behavioral analysis.
  • Experience researching threat actors, campaigns, and infrastructure and distinguishing observed facts from analytic assessments.
  • Ability to translate research into actionable intelligence, ATT&CK mappings, hunting queries, detection recommendations, and defensive guidance.
  • Proficiency in scripting or programming for CTI tools and automation.
  • Experience supporting incident response and threat hunting with timely intelligence.
  • Strong documentation, communication, and technical presentation skills.
  • Ability to work independently, communicate status and blockers, and share operational responsibilities.
  • Preferred: Experience in large enterprise, automotive, or manufacturing environments; malware reverse engineering, threat infrastructure analysis, detection engineering, threat intelligence platforms, APIs, or automation workflows.

Benefits

  • Opportunity to strengthen organizational defenses through practical threat intelligence and research.
  • Individual-contributor role combining hands-on CTI operations with deep technical research.
  • Collaboration with experienced peers and opportunities to improve shared team capabilities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Middle Information Security Access Specialist

GR8 Tech 251-1K IT Services

GR8_TECH is hiring an IAM and access management professional to secure and automate employee access across its global B2B iGaming technology organization.

Active Directory AWS Azure
6 hours, 13 minutes ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by handling fraud and insider-threat cases from initial signal through resolution, protecting the company and its customers.

Python SIEM SQL
6 hours, 28 minutes ago

Investigations Analyst

Turing 251-1K Internet Software & Services

Turing is hiring an Investigations Analyst to support its security investigations function by resolving fraud and insider-threat cases and protecting the company and its customers.

Python SIEM SQL
6 hours, 28 minutes ago

Security Operations Analyst (L1)

JustMarkets 1-10 Capital Markets

Full-time Security Operations Analyst supporting a fintech innovation team by triaging security alerts, conducting initial investigations, and escalating potential incidents.

DNS HTTP Linux macOS PowerShell Python SIEM TCP/IP
2 days, 5 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers