Senior Technical Threat Intelligence Analyst
| Salary | £55,000+ |
This is a strong opportunity for a technically minded CTI analyst who enjoys investigation, actor profiling, vulnerability intelligence, and producing high-quality reporting.
It would suit someone who wants to stay close to the technical side of threat intelligence without moving into a pure coding, SOC, or penetration testing role.
Responsibilities
We are working with a specialist cyber intelligence business that supports some of the most security-conscious organisations across the UK and Europe.
Their clients include financial institutions, government bodies, and critical national infrastructure organisations. The business sits within a wider European cybersecurity group, giving it the backing and reach of a larger organisation while retaining the feel of a close-knit, specialist intelligence team.
This is an environment for someone who enjoys proper research, technical investigation, and producing intelligence that clients can actually use.
The Role
This is a technically focused threat intelligence role, but it is not a coding-heavy position.
The focus is on investigation, interpretation, and intelligence production. You will be looking at threat actor activity, domains, infrastructure, vulnerabilities, TTPs, malware reporting, and technical indicators, then turning that information into clear, accurate, and useful intelligence.
You will support the production of technical cyber threat intelligence reporting, respond to client requests for intelligence, contribute to threat actor profiles, and help assess emerging vulnerabilities and campaigns.
You will also act as a quality control point for junior analysts’ work, helping improve the accuracy, clarity, and consistency of intelligence deliverables.
Requirements
What You’ll Be Doing
You will be responsible for:
- Investigating technical threat activity across domains, infrastructure, vulnerabilities, IOCs, malware, campaigns, and TTPs.
- Building and maintaining threat actor profiles.
- Assessing new vulnerabilities from an intelligence perspective, including exploitability, likely targeting, sector relevance, and potential impact.
- Reading technical reporting and identifying the relevant TTPs, indicators, actor behaviours, and intelligence value.
- Producing clear written intelligence products, from short updates and RFIs through to longer technical or strategic reports.
- Generating or working with VirusTotal rules or similar matching logic.
- Supporting client monitoring service lines.
- Responding to Requests for Intelligence from clients.
- Reviewing and QC’ing junior analysts’ work before it reaches clients.
- Supporting the continuous improvement of the cyber intelligence service portfolio.
- Contributing to client engagement where required.
What We’re Looking For
We are looking for someone with strong technical curiosity, sound analytical judgement, and the ability to explain why threat activity matters.
You do not need to be a software developer, but you should be comfortable working with technical threat data and making sense of it.
Relevant experience may include:
- Cyber threat intelligence
- Threat actor tracking
- Vulnerability intelligence
- Domain and infrastructure investigation
- TTP mapping
- IOC analysis
- OSINT
- Dark web monitoring or investigations
- Malware report analysis or malware triage
- Detection logic, VirusTotal rules, YARA or similar
Benefits
Package
- £55,000 to £65,000 salary
- Remote-first working
- 25 days holiday plus bank holidays
- Birthday day off
- Private healthcare
- Pension scheme
- Career development within a wider European cybersecurity group