Threat Intelligence Analyst Jobs

Analysts who identify, assess, and mitigate cyber threats. A critical role in the front lines of digital defence.

Open roles
0

Threat Intelligence Analysts play a pivotal role in the cyber security ecosystem. They gather, analyse, and interpret data to identify potential threats and vulnerabilities. Working in a fast-paced environment, these analysts help organisations stay ahead of cyber attacks by providing actionable insights and strategic recommendations. They are often employed by security operations centres (SOCs), government agencies, and large enterprises, where they collaborate with other security professionals to enhance overall security posture.

What the role does

Inside the role of a Threat Intelligence Analyst

A typical week is split between monitoring threat feeds, conducting deep dives into specific threats, and communicating findings to stakeholders.

  1. 01
    Monitor threat feeds and intelligence sources for new vulnerabilities and threats.
  2. 02
    Analyse and correlate data from various sources to identify patterns and trends.
  3. 03
    Develop and maintain threat intelligence reports and briefings.
  4. 04
    Collaborate with incident response teams to provide context during security incidents.
  5. 05
    Update threat intelligence databases and tools with new information.
  6. 06
    Participate in regular team meetings to share insights and discuss ongoing threats.
Career ladder

From Junior to Principal

A typical UK progression for threat intelligence analysts. Years are guidance — strong people move faster, and many senior folks sidestep into research, product or management.

  1. Level 1

    Junior Threat Intelligence Analyst

    0–2 yrs

    Assists in monitoring threat feeds and supports the creation of basic threat intelligence reports.

  2. Level 2

    Threat Intelligence Analyst

    2–5 yrs

    Leads the analysis of threat data and produces detailed intelligence reports for stakeholders.

  3. Level 3

    Senior Threat Intelligence Analyst

    5–8 yrs

    Manages a team of analysts and oversees the development of advanced threat intelligence strategies.

  4. Level 4

    Principal Threat Intelligence Analyst

    8+ yrs

    Provides strategic direction for the organisation's threat intelligence programme and advises senior leadership.

Pathway

How to become a Threat Intelligence Analyst

There's no single route, but most people follow some version of these steps.

  1. 1

    Entry-Level Analyst

    Start with foundational tasks like monitoring threat feeds and assisting in report creation.

  2. 2

    Specialised Analyst

    Develop expertise in specific threat areas and lead the analysis of complex threats.

  3. 3

    Team Lead

    Manage a team of analysts and ensure the quality and timeliness of threat intelligence outputs.

  4. 4

    Strategic Advisor

    Provide strategic insights to senior leadership and influence the organisation's security posture.

  5. 5

    Programme Director

    Oversee the entire threat intelligence programme and drive innovation in threat detection and response.

No Threat Intelligence Analyst Jobs jobs right now

We don't have any matching roles at the moment, but new jobs are added daily.

Latest jobs

Cambridge University Press & Assessment (CUPA) logo

Cyber Security Lead

This role involves setting the cyber security strategy and priorities for English Learning Technology, providing expert advice on cyber risk, and leading a small security operations team. The position requires deep expertise in security governance, risk management, and cloud security, with a focus on AWS.

Cambridge University Press & Assessment (CUPA) Cambridge, Cambridgeshire, United Kingdom £71,800 – £91,600 pa
Hybrid Permanent
Darktrace logo

Frontend Software Engineer (JavaScript / TypeScript & React)

Develop and maintain dynamic, accessible user interfaces for a cutting-edge AI-driven cybersecurity platform. Collaborate with cross-functional teams to integrate frontend components with backend systems, optimise performance, and ensure scalability. Work extensively with React, TypeScript, and modern frontend tools within a security-conscious environment.

Darktrace Cambridge, CB2 3BJ, United Kingdom
Hybrid Permanent
CrowdStrike logo

Sales Development Representative , Reading)

The role involves generating and qualifying leads for CrowdStrike's SMB/Corporate sales team through outbound prospecting, lead evaluation, and scheduling product demos. The candidate will use CRM tools like Salesforce.com and run creative outreach campaigns via email and social media to identify new prospects. This position requires regular office attendance in Reading twice a week and targets individuals passionate about entering tech sales within the B2B SaaS security space.

CrowdStrike Reading, United Kingdom
Hybrid Permanent
CrowdStrike logo

Associate Platform Professional Services Consultant , GBR)

This role involves delivering and integrating Falcon Next-Gen SIEM solutions for customers, acting as a trusted technical advisor, and enabling security outcomes through log management, XDR, and SOAR capabilities. The consultant will onboard data, develop use cases, provide knowledge transfer, and collaborate with product teams to influence roadmap enhancements based on customer feedback. Work is conducted remotely with occasional travel, emphasizing hands-on technical delivery and cross-functional collaboration.

CrowdStrike United Kingdom
Remote Permanent
CrowdStrike logo

Incident Response Consultant - Weekend Shift , GBR)

Lead and conduct incident response engagements for high-profile cybersecurity breaches, performing forensic analysis across Windows, Mac, and Linux systems. Hunt for advanced threats using AI-native tools, analyze network and host data, and produce detailed reports for legal and executive stakeholders. Work weekends in a collaborative, mission-driven environment focused on stopping breaches at scale.

CrowdStrike United Kingdom
Remote Permanent Shift-work
CrowdStrike logo

Sr. Analyst, Falcon Complete , GBR)

Conduct real-time monitoring, analysis, and incident response for enterprise clients using advanced threat detection tools and AI-driven platforms. Perform malware analysis, forensic investigations, and remote remediation across Windows, Mac, and Linux environments. Develop security processes, mentor junior analysts, and contribute to thought leadership through technical communication and public speaking.

CrowdStrike United Kingdom
Remote Permanent
FAQs

Common questions

  • A degree in computer science, information security, or a related field is typically required. Relevant certifications like Certified Threat Intelligence Analyst (CTIA) can also be beneficial.

  • Key skills include strong analytical abilities, knowledge of cyber threats and attack vectors, and excellent communication skills to convey complex information clearly.

  • They stay updated by monitoring threat feeds, participating in industry forums, and attending conferences and training sessions.

  • Salary ranges can vary based on experience and location. For more detailed information, please refer to the salary section on this page.

Hiring threat intelligence analysts?

Post your role in 90 seconds and reach the specialist audience that already reads this page.