Mid-Level Cyber Threat Intelligence Analyst
Why This Role Stands Out
You'll thrive in this hybrid role as a Mid-Level Cyber Threat Intelligence Analyst, contributing to the security of critical financial infrastructure and developing expertise in threat hunting and supply chain risk. This position offers significant growth potential within a reputable organization, allowing you to hone your Splunk skills and make a real impact.
Quick Overview
Job Description
Mid-Level Cyber Threat Intelligence Analyst
Threat Intelligence | Supply Chain Risk | Splunk
Location: Greater Phoenix Area (Hybrid – 3 Days Onsite)
Employment Type: Full-Time Employee (FTE)
Protect Critical Financial Infrastructure
Join a leading financial technology organization that helps power and secure some of the most important payment and transaction networks in the United States. Our solutions support financial institutions, businesses, and consumers at scale, creating a unique opportunity to make a meaningful impact in cybersecurity while protecting critical financial infrastructure.
We are seeking a Mid-Level Cyber Threat Intelligence Analyst to strengthen our Cyber Threat Intelligence (CTI) program with a focus on threat intelligence operations, cyber supply chain risk, threat hunting, and Splunk-driven security analytics.
This role offers the opportunity to work alongside experienced security professionals, track sophisticated threat actors, analyze emerging cyber risks, and help drive intelligence-led defense strategies across a highly visible and mission-critical environment.
Position Summary
The Mid-Level Cyber Threat Intelligence Analyst is responsible for identifying, analyzing, and communicating cyber threats that may impact the organization, its technology ecosystem, and its third-party partners. This role combines traditional CTI responsibilities with a growing emphasis on Cyber Supply Chain Risk Management (C-SCRM) and the operationalization of intelligence through Splunk Enterprise Security and related security platforms.
The successful candidate will leverage intelligence from internal and external sources to identify adversarial activity, support threat hunting efforts, assess supply chain risks, and improve the organization''s overall security posture.
Key Responsibilities
Cyber Threat Intelligence
- Monitor, collect, analyze, and disseminate intelligence on cyber threats, threat actors, vulnerabilities, and emerging attack campaigns.
- Track adversary tactics, techniques, and procedures (TTPs) utilizing MITRE ATT&CK and other threat intelligence frameworks.
- Produce intelligence reports, threat assessments, executive summaries, and actionable recommendations.
- Research, validate, and operationalize indicators of compromise (IOCs) and indicators of attack (IOAs).
Supply Chain & Third-Party Risk Analysis
- Monitor cyber threats impacting software vendors, technology providers, service providers, and other critical third parties.
- Assess intelligence related to vendor compromises, ransomware activity, credential exposures, and software supply chain threats.
- Support Cyber Supply Chain Risk Management (C-SCRM) initiatives through analysis and reporting.
- Identify and communicate emerging cyber risks that could impact organizational operations or strategic partners.
Splunk Security Operations & Threat Hunting
- Utilize Splunk Enterprise Security and related technologies to correlate threat intelligence with internal security telemetry.
- Conduct proactive threat hunting activities across endpoint, network, cloud, identity, and application environments.
- Develop, optimize, and tune detection content using intelligence-driven analytics.
- Analyze large data sets to identify suspicious patterns, anomalies, and potential malicious activity.
Security Operations & Incident Support
- Partner with Security Operations Center (SOC), Incident Response, and Security Engineering teams to support investigations and response efforts.
- Provide intelligence context and attribution analysis for security incidents.
- Help improve threat detection and response capabilities through intelligence-driven recommendations.
- Participate in internal and external cybersecurity and intelligence-sharing forums.
- Develop and maintain procedures, intelligence documentation, and operational playbooks.
- Participate in on-call security operations activities as required.
Minimum Qualifications
- Bachelor''s degree in Cybersecurity, Computer Science, Engineering, Mathematics, Physical Sciences, or a related field, or equivalent experience.
- 4+ years of experience in cybersecurity, threat intelligence, security operations, incident response, or a related discipline.
- Experience analyzing cyber threats, campaigns, and adversary behavior.
- Experience utilizing Splunk for security monitoring, investigation, analytics, or threat hunting.
- Strong understanding of:
- Network security concepts and protocols
- Windows, Linux, and macOS operating systems
- Incident response processes
- MITRE ATT&CK framework
- Adversarial TTPs and threat actor methodologies
- Strong analytical and problem-solving skills.
- Excellent written, verbal, and presentation skills.
- Ability to work independently and collaboratively within a fast-paced security environment.
Preferred Qualifications
- Experience working within a formal Cyber Threat Intelligence (CTI) program.
- Experience supporting Cyber Supply Chain Risk Management (C-SCRM) initiatives.
- Experience with Splunk Enterprise Security, Threat Intelligence Platforms (TIPs), SOAR tools, and threat hunting programs.
- Cloud security experience in AWS, Azure, or Google Cloud Platform.
- Relevant industry certifications such as GCTI, GCIH, GCIA, CISSP, Security+, or similar.
Why Join Us?
You''ll have the opportunity to help defend a nationally significant financial technology ecosystem while working alongside highly skilled cybersecurity professionals. This role offers exposure to sophisticated threats, meaningful career growth, and the ability to directly influence how intelligence is used to protect critical business operations and customer trust.
Benefits Highlights
- Hybrid work model (3 days onsite in the Greater Phoenix area)
- Competitive medical, dental, and vision coverage
- Company-funded HSA contributions and FSA options
- 401(k) with 100% company match on the first 6% contributed
- Flexible Time Off, 11 paid holidays, and a paid volunteer day
- 12 weeks paid parental leave
- Comprehensive family-planning and parenting support, including fertility, adoption, surrogacy, pregnancy, and postpartum resources
If you''re passionate about Cyber Threat Intelligence, Supply Chain Security, and Splunk-driven security operations, and want to make a meaningful impact protecting critical financial infrastructure, we''d love to hear from you.
Skills
Similar jobs
Cyber Systems Engineer
Apex Systems · Eglin Air Force Base, United States
18 minutes ago€70/hrSecurity Governance, Risk, and Compliance (GRC) Engineer
Cynet Systems · San Jose, United States
38 minutes ago$90 - $120/hrONLY W2: Security Analyst: Onsite from Day 1 in Columbia, SC: ONLY W2 : SC Residency Required (No Relocation allowed)
Information Resource Group, Inc. · Columbia, United States
1 hour agoSenior Associate, SAP Security
KPMG · Philadelphia, United States
1 hour agoSr. Principal Industrial Security Analyst ( 13968-1) with Security Clearance
Northrop Grumman · Roy, United States
1 hour ago$101.4k - $152.2k/yrSr Principal Cyber System Security Engineer - 18310 with Security Clearance
Northrop Grumman · Roy, United States
1 hour ago$122.8k - $184.2k/yr