Security Threat Intelligence Lead; Remote
Rolling Meadows, Cook County, Illinois, 60008, USA
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, IT Consultant
Overview
The Threat Intelligence Lead will serve as a key technical resource in our Global Cyber and Information Security (GCIS) organization. You will be responsible for developing and maturing Cyber Threat Intelligence approach, recommended standards, reference architecture designs and narratives. You will need to keep current on Threat Intelligence best practices and provide direction for technical specifications. You will work closely with other Information Security colleagues, the broader IT & Infrastructure organization, and Business teams globally to provide security architecture guidance and recommendations.
This is a position where you will take a leadership role and influence Cyber Threat Intelligence by example and clearly articulating objectives.
You can be fully remote/virtual/work from home and can sit anywhere in the US.
How You ll Make An Impact- Build and own the Cyber Threat Intelligence (CTI) program from the ground up, defining its vision, priorities, and lightweight processes suitable for a fast-paced environment.
- Develop threat models and track adversary tactics, techniques, and procedures (TTPs) relevant to the startup’s technology stack and business model.
- Collaborate closely with the Security Operations Center (SOC), engineering, Dev Ops, and exposure management teams to embed threat intelligence into detection, incident response, and vulnerability management workflows.
- Actively engage with external vendors, industry groups, and threat-sharing communities to enrich intelligence without heavy overhead.
- Lead or support proactive threat hunting activities informed by current intelligence and correlate internal telemetry with external threat data to identify emerging risks.
- Deploy and manage cost-effective threat intelligence platforms and tools; evaluate new technologies and integrations that scale with startup growth.
- Maintain clear and concise documentation of processes, intelligence requirements, and workflows for transparency and agility.
- Produce timely, actionable reports and briefings for technical teams and leadership, highlighting trends, risks, and recommended actions in a business-friendly format.
- Establish intelligence requirements aligned with business objectives and ensure integration of intelligence feeds into Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR) platforms, and other detection tools.
- Develop simple dashboards and metrics to measure CTI program effectiveness and demonstrate value to stakeholders.
- Bachelor s degree or equivalent in Computer Science or related field
- Minimum 3+ years of cybersecurity experience
- Minimum 3+ years working with Microsoft Azure
- 2+ years of experience working with other cloud platforms (AWS, GCP, Oracle)
- Strong knowledge of Open-Source Intelligence (OSINT) tools, malware analysis, and frameworks such as MITRE ATT&CK.
- Ability to balance technical depth with business priorities and communicate effectively with both engineers and executives.
- Knowledge and experience implementing security standards frameworks (NIST - CSF, ISO 27001, CSA CCM, PCI-DSS, GDPR)
- Certifications such as GIAC Cyber Threat Intelligence (GCTI), Certified Threat Intelligence Analyst (CTIA), or Certified Information Systems Security Professional (CISSP) preferred but not mandatory
- Hands-on experience with Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR) platforms, and threat intelligence platforms.
- 2+ years’ experience in a global organization
- Insurance and risk management domain knowledge desirable.
- Strong communications skills - oral and written.
- Self-starter with strong work ethic.
- Flexible and resilient, handle various demands planned and unplanned.
- Proven ability to handle multiple tasks and projects simultaneously.
- Problem solver and desire to close issues, pragmatic and realistic with solutions.
- Resilient and collaborative, motivated to pro-actively drive issues to successful mutually agreed upon resolutions.
We offer a competitive and comprehensive compensation package. The base salary range represents the anticipated low…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).