Senior Intelligence Analyst, Advanced Intelligence Access
Listed on 2026-07-01
-
IT/Tech
Cybersecurity, Information Security
Senior Intelligence Analyst, Advanced Intelligence Access
Location:
Kuwait City, Kuwait
Position Level: Mid
About the jobMandiant is a recognized leader in cyber security expertise. This role is an exciting opportunity to join Mandiant Intelligence, delivering our Advanced Intelligence Access (AIA) service. Being onsite and embedded with a customer 4-5 days per week, you will leverage Mandiant's cyber threat intelligence to enable network defenders and customer CTI teams to defend against the threats they face. You will be supported and enabled by a network of colleagues and specialists right across Mandiant Intelligence and contribute to Mandiant's deep technical skills and CTI knowledge.
You will have access to industry leading tooling and data and will work towards delivering on customer priority intelligence requirements. In this role, you will focus on supporting the customer's CTI defensive mission, helping SOC, threat hunters, detection engineers, and CTI analysts counter threats and enable secure operation on the customer site at least 4 days per week (expenses included).
Part of Google Cloud, Mandiant provides dynamic cyber defense, threat intelligence and incident response services.
- Understand the customers' Cyber Threat Intelligence (CTI) requirements. Identify their needs and opportunities for deployment of CTI within their operations to have the greatest defensive impact.
- Evaluate tools and best practices for tracking advanced threats, Tools, Techniques, and Procedures (TTPs) of attacker's motivations, and industry and attacker trends.
- Perform analysis of customer data, taking their bespoke sources to identify threat activity, or to build and automate investigative workflows.
- Write intelligence reporting against customer requirements, appropriate for their intelligence analysts or executive leaders.
- Support the integration of CTI into customer's security processes and technologies, including Security Information and Event Management (SIEM) and Threat Intelligence Platform (TIP) systems.
- Bachelor's degree or equivalent practical experience.
- 7 years of experience working in a government or military environment, leveraging and developing CTI for network, host and log analysis, to enable the detection and response to cyber threats.
- Experience in leveraging CTI to describe, track and develop new intelligence on advanced persistent threats.
- Experience in conducting or supporting incident response and investigations within enterprise environments.
- Experience in SOC operations, threat hunting, detection engineering and SOC workflow optimization.
- Experience in network Intrusion Detection System (IDS) monitoring, Endpoint Detection and Response (EDR) solutions, SIEM and Security Orchestration, Automation, and Response (SOAR) integration, and managing and contributing CTI into a threat intelligence platform.
- Understanding of core cyber security concepts, common enterprise IT infrastructure components, operating system internals and networking.
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law.
See also Google's EEO Policy.
If you have a need that requires accommodation, please let us know by completing the Accommodations for Applicants form. English proficiency is a requirement for all roles.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).