Threat Intelligence Lead

An exciting remote-based opportunity has arisen for a Threat Intelligence Lead to join our Technology team, reporting to the Chief Information Security Officer. You will design and lead the company’s cyber threat intelligence (CTI), security testing and proactive threat-hunting programmes, helping to protect our customers, assets and brands across our global operations.Working closely with our internal and external security operations teams, you will anticipate, assess and mitigate threats. The intelligence you provide will support strategic decisions, incident response and continuous improvements to our cyber resilience.

This pivotal Cyber Security role requires strong technical expertise, intelligence capability and commercial awareness within a regulated financial environment.

What you will do as our Threat Intelligence Lead:

This is an overview and not an exhaustive list of responsibilities. Collaborating with your Line Manager, you will develop your own objectives but focus on all of the following and more:

  • Lead the development of our CTI function, establishing clear governance, processes, intelligence priorities and measurable outcomes.

  • Represent the organisation in key external intelligence-sharing forums, including FS-ISAC, the NCSC’s CiSP and relevant industry partnerships.

  • Use the MITRE ATT&CK framework to identify and analyse attacker tactics, techniques and procedures and strengthen our detection capabilities.

  • Develop the Proactive Threat Hunting Initiative, using intelligence and security tools to identify emerging threats, attack paths and vulnerabilities and security gaps.

  • Oversee the collection and analysis of tactical, operational and strategic threat intelligence, with a particular focus on threats affecting insurance and financial services sectors.

  • Proactively search for malicious activity, anomalies and emerging threats across enterprise networks, endpoints and cloud environments.

  • Provide clear, actionable intelligence and threat landscaping briefings to senior leaders, Board committees and key stakeholders across the business.

What are we looking for in our Threat Intelligence Lead?

We’re looking for an experienced Cyber Threat Intelligence professional who can combine their strong technical expertise with the ability to develop our CTI capability and turn complex intelligence into clear, actionable business insights.

  • MITRE ATT&CK training/certification is essential.

  • Experience developing Priority Intelligence Requirements (PIRs).

  • Strong experience working closely with SOC, Incident Response, Vulnerability Management, Security Engineering and Risk.

  • Experience managing the end-to-end intelligence lifecycle.

  • Significant Cyber Threat Intelligence (CTI) or closely related cyber security experience.

  • Strong experience analysing strategic, operational, and tactical threat intelligence.

  • Practical experience with MITRE ATT&CK, threat actor profiling, IOC analysis, threat hunting and intelligence-led detection engineering.

  • Evidence of leading/developing a CTI capability.

  • Relevant professional certification such as GCTI, CRTIA, CPTIA, GIAC, or CISSP is desirable.

In return you will be welcomed and supported by our Ardonagh family joining an organisation that cares about you as a person and your wellbeing. Some of the other benefits are:

  • Holiday entitlement of 26 days plus bank holidays, increasing with length of service

  • 35 hour working week

  • Opportunity to progress your career across the entire Ardonagh family

  • Award-winning learning & development offering and support to obtain professional qualifications to enhance your knowledge and career prospects

  • Pension scheme for when you feel it’s time to retire

  • 24-hour Employee Assistance support for you and your family’s physical and mental wellbeing

  • Corporate perks such as discounted gym memberships, cinema tickets, shopping, Eyecare vouchers, cycle to work and much more

  • One day paid volunteering to give back to our communities

  • Ardonagh Community Trust (ACT) - raising funds for charity with donation matching in your local community

  • The Spotlight Awards, where we celebrate the best of the Ardonagh Group and all the bright talent across our business.

We offer genuine potential for both personal and professional development, come and be part of our story and help us shape our future. So, what are you waiting for? Apply today and one of our team will be in touch.#LI-HC1

#LI-Remote

INDX3

#AIB

Everywhen is an equal opportunities employer, with a growing and thriving diversity, equity and inclusion strategy; we are committed to a working environment that is free from discrimination, is inclusive, and empowers our people to bring their whole self to work and reach their full potential.

If your application is successful, we will conduct relevant employment checks prior to you commencing employment with us. These will include verifying your recent employment, address, credit history and a standard criminal record check.

As an Everywhen colleague, you will be expected to uphold our values, act professionally and respectfully towards others, and contribute to a workplace where everyone is treated with dignity and respect. We expect all colleagues to help maintain an environment free from bullying, harassment, victimisation and other inappropriate behaviours, supporting our commitment to an inclusive and high-performing culture.

Please note: We may close a vacancy prior to the publish end date if the required quality or number of applications has been received. 

Note to recruiters and employment agencies: We will not pay for unsolicited CVs from recruiters and employment agencies unless we have a signed agreement and have requested assistance, in writing, for a specific opening.

Job Details

Company
Everywhen, part of the Ardonagh Group
Location
London, South East, England, United Kingdom
Hybrid / Remote Options
Employment Type
Full-Time
Salary
Competitive salary
Posted