Cyber Threat Intelligence Analyst

1 month ago


Cannon Street, Greater London, United Kingdom AVEVA Full time

AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure, chemicals and minerals – safely, efficiently and more sustainably.

We're the first software business in the world to have our sustainability targets validated by the SBTi, and we've been recognized for the transparency and ambition of our commitment to diversity, equity, and inclusion. We've also recently been named as one of the world's most innovative companies.

If you're a curious and collaborative person who wants to make a big impact through technology, then we want to hear from you Find out more at AVEVA Careers ) .

For more information about our privacy policy and how to manage cookies, visit our Privacy Policy ) .

The Job

The Cyber Security Threat Intelligence Analyst is a member of the AVEVA Security team and works closely with the other members of the team to operationally maintain a comprehensive information security program. This includes analysis of security events, validating threat intelligence sources and feeds, prioritise, rate, and provide advisory that are related to AVEVA. They work with the Cyber Threat Intelligence Manager and wider AVEVA Digital Security team and communicates with AVEVA staff to re-enforce security awareness and compliance.

Roles and Responsibilities

Primary Duties

  • Gather, validate, prioritize, and analyze a wide range of emerging cyber threat intelligence from diverse sources, including open-source, commercial, external, internal, and private, to assess its relevance, impact, and severity for AVEVA.
  • Work with internal security teams, security programs and 3rd party to provide data driven insights into existing and emerging threats.
  • Leverage threat intelligence to improve the prioritization of preventative controls and mitigations to improve defences of AVEVA.
  • Deliver relevant and actionable intelligence to teams and leadership across AVEVA to improve AVEVA ability to detect threats in AVEVA environment.
  • Maintain and update a comprehensive threat database with relevant indicators of compromise (IOCs).
  • Support response to internal incidents by managing intelligence collected during investigations and building a common understanding of threat activities.
  • Proactively identifying, Investigating, and provide support on hunting potential attacks and security risks on AVEVA networks and systems using various platforms and threat feeds.
  • Creating and maintaining information security operations process, procedure, and checklist documentation, such as Cyber Threat Intelligence Process and playbook.
  • Support incident response activity from Cyber Threat Intelligence perspective throughout AVEVA defined Security Incident Response phases and framework such as NIST.
  • Reports to Cyber Threat Intelligence Manager concerning security events, incident trends, residual risk, vulnerabilities, and other security exposures, including misuse of information assets and noncompliance.
  • Works with the AVEVA's wider business unit teams and any required partners/business functions such as R&D to resolve security events, incidents, and service requests from cyber security threat intelligence perspective.
  • Ensures compliance of security processes and procedures and supports service-level agreements (SLAs) to ensure that services quality is managed and maintained.
  • Contributes through security advisories, blogs, and other communication channels on current and emerging security threats to AVEVA assets and people via the security awareness program.
  • Operate threat intelligence reporting Service against defined schedule and agreed reporting templates.
  • Be available to provide reactive support to critical security incidents outside standard business hours as part of a ROTA.

Additional Duties

Under the guidance of Cyber Threat Intelligence Manager

  • Assist with control improvements to identify control weaknesses and contributes to threat advisories.
  • Participates in security investigations and compliance reviews, as requested by internal or external team.
  • Maintain awareness of applicable regulatory standards, upstream risks, and industry leading security practices.
  • Provide feedback and recommendations on existing and new security tools and techniques for the improvement of analysis, incident investigation and security controls.

Skills & Qualifications

  • Experience producing actionable intelligence report with validated, prioritized severity and with proper impacts assessment on Indicator of Attacks (IOAs) together with Indicator of Compromises (IoCs).
  • Experience producing intelligence products or reporting within the cyber security, geopolitical, or any other security domains.
  • Good understanding of cyber threat attack vectors, cyber threat landscape, cyber threat profile and cyber threat intelligence framework such as MITRE ATT&CK and how they are used, and methods to detect and mitigate them.
  • Good technical knowledge of Microsoft Operating Systems. Knowledge and experience of Linux and Macintosh.
  • Technical knowledge of:
  • Cyber Security Threat Intelligence
  • Cyber Security Threat Intelligence solutions
  • Cyber Security Threat Hunting
  • Network traffic and protocol of security events from network devices, firewalls, intrusion detection and prevention systems
  • Endpoint Detection and Response controls
  • Endpoint protection and anti-malware controls
  • Identity and access management (IAM) concept
  • Email and phishing protection solutions
  • Experience in scripting, query languages and automation languages such as Powershell, Python, SPL, KQL, OSQuery, YARA, and SIGMA as an advantage.
  • Experience in integrating Security Information and Event Management (SIEM) with Managed Threat Intelligence Platform as an advantage.
  • Knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls.
  • Knowledge and experience in developing and documenting security processes and plans.
  • Experience with common information security management frameworks, such as MITRE ATTACK, International Organization for Standardization (ISO) 2700x and the ITIL, COBIT and National Institute of Standards and Technology (NIST) or Center for Internet Security (CIS) frameworks.
  • Minimum of 3 years information and cyber security experience as Cyber Threat intelligence, Security Analyst or Cyber Security Threat Hunting.
  • Bachelor's degree in information systems or equivalent work experience in relevant information and cyber security domain.
  • Security certification from a recognised organisation such as ISC2, CompTIA, ECCouncil, SANS Institute is as advantage.
  • Technology standard certification such as from Cisco, VMware, Microsoft is an advantage.

AVEVA requires all successful applicants to undergo and pass a comprehensive background check before they start employment. Background checks will be conducted in accordance with local laws and may, subject to those laws, include proof of educational attainment, employment history verification, proof of work authorization, criminal records, identity verification, credit check. Certain positions dealing with sensitive and/or third party personal data may involve additional background check criteria.

AVEVA is an Equal Opportunity Employer. We are committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all our employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business.

Come and join AVEVA to create the transformative technology that enables our customers to engineer a better world.

Empowering you with pioneering tech

AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure, chemicals and minerals – safely, efficiently and more sustainably.

We're the first software business in the world to have our sustainability targets validated by the SBTi, and we've been recognized for the transparency and ambition of our commitment to diversity, equity, and inclusion. We've also recently been named as one of the world's most innovative companies.

If you're a curious and collaborative person who wants to make a big impact through technology, then we want to hear from you Find out more at AVEVA Careers ) .

For more information about our privacy policy and how to manage cookies, visit our Privacy Policy ) .




  • Cannon Street, Greater London, United Kingdom AVEVA Full time

    AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure, chemicals and minerals – safely, efficiently and more sustainably.We're the first software business in the world to have our sustainability targets validated by the SBTi, and...


  • Cannon Street, Greater London, United Kingdom AVEVA Full time

    AVEVA is a global leader in industrial software. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure, chemicals and minerals – safely, efficiently and more sustainably.We're the first software business in the world to have our sustainability targets validated by the SBTi, and...


  • Birmingham New Street Station, United Kingdom City of London Police Full time

    **Type of contract: Fixed Term / Permanent** **Rank/Grade: C** **Directorate/Department: Specialist Operations - Intelligence Development** **Vetting level required: MV/SC** **Location: Guildhall Yard East or New Street, London** **Salary: £29,030 per annum, plus London Weighting £6,710 per annum** **Description of Department**: The City of London...


  • Coleman Street, United Kingdom Intec Select Ltd Full time

    Head of Cyber Security – circa £150,000 – Hybrid – Global Consultancy Overview: We are seeking a Head of Cyber Security for one of our global consultancy clients. This role will oversee the Cyber Security team, ensuring robust technology, controls, and processes to safeguard devices, data, and digital networks from cyber threats. Key...


  • Street, United Kingdom Cyber Resource Full time

    Engagement TypeContract Short Description12to18month contractHybrid: 3 days per week required onsite 5 years of BA Experiencein IT project. IT software/application project experiencerequired Inpersoninterview Do not submitcandidates from req. 738530. CompleteDescription Work with internal staff tooptimize processes and improve quality for the design...


  • Chester-le-Street, Durham, United Kingdom Cyber Resource Full time

    Engagement TypeContract Short Description12 to 18 month contractHybrid: 3 days per week required onsite5 years of Business Analyst experience in IT projects. Experience with IT software/application projects is required.In-person interview required.Do not submit candidates from req. Complete Description Collaborate with internal teams to enhance processes and...


  • Chester-le-Street, Durham, United Kingdom Cyber Resource Full time

    Engagement TypeContract Short Description12 to 18 month contractHybrid: 3 days per week required onsite5 years of Business Analyst experience in IT projects. Experience in IT software/application projects is required.In-person interview required.Do not submit candidates from req. Complete Description Collaborate with internal teams to enhance processes and...


  • Lime Street, United Kingdom VIQU Limited Full time

    Senior Security Analyst Remote – Ad hoc travel Up to £65,000 VIQU are seeking a Senior Security Analyst to join a non-profit organisation who work to support the London Insurance Market. They are seeking a Senior Security Analyst to join their small security team, working across a wide range of projects to support the security operations, security...


  • Birmingham New Street Station, United Kingdom City of London Police Full time

    **Directorate**:Crime **Location**:Cyber Crime Unit, New Street **Rank**:Detective Constable **Length**:Permanent (full time basis) **Role**: Cyber Crime is a priority for the City of London Police and at the forefront of tackling this threat is its Cyber Crime Unit, based at New Street (and due to move to Salisbury Square in 2027). The unit has grown in...


  • Street, United Kingdom Education Scotland Full time

    **Overview**: This is an exciting opportunity to join Education Scotland’s Digital Services team as Head of Information Security to embed best practice and ensure a security by design approach. Education Scotland is Scotland's national improvement agency for education. Our role is to provide assurance and promote improvement, from the early years to adult...

  • Head of Security

    3 weeks ago


    Lime Street, United Kingdom SSR General & Management Full time

    Head of Security – Global Operations Based London UK - Executive Package Must have the RTW in the UK as sponsorship is not available Our client is a leading global transport and logistics organisation with significant operations across most continents. Established with significant revenues in Americas, Asia and Europe. The Role We are seeking an...

  • Systems Analyst 2

    1 month ago


    Street, United Kingdom Prolim Global Full time

    PROLIM () is currently seekingSystems Analyst 2 for one of our top Client forLocation 111 E 17th Street Austin Texas 78711 Hybrid OnSite and Telework Qualified candidates can directly send your updated resumeand contact info via email: Job description: Asa Technical Business Analyst the candidate must align informationtechnology systems with business...

  • Head of Security

    1 week ago


    Lime Street, United Kingdom SSR General & Management Full time

    Head of Security – Global Operations Based London UK - Executive PackageMust have the RTW in the UK as sponsorship is not availableOur client is a leading global transport and logistics organisation with significant operations across most continents. Established with significant revenues in Americas, Asia and Europe.The RoleWe are seeking an exceptional...

  • SOC Team Lead

    1 month ago


    Coleman Street, United Kingdom Intec Select Ltd Full time

    Security Operations Team Leader – c£90,000 – Remote Working Overview:      Our client, a global cloud technology organisation, are looking for a Security Operations Team Leader to join their London team with remote working, gaining experience with mind blowing large-scale cutting-edge systems. You will be responsible for the coordination of the...


  • Birmingham New Street Station, United Kingdom City of London Police Full time

    **Type of contract: Substantive** **Rank/Grade: Detective Constable / Police Constable** **Directorate/Department: Professional Standards Directorate** **Vetting level required: MV/SC** - Please note if at the time of selection, you do not have the appropriate level of vetting you will need to undergo the vetting process, which will determine whether you...


  • Chester-le-Street, Durham, United Kingdom Goldman Sachs Full time

    ENGINEERINGWhat We DoAt Goldman Sachs, our Engineers don't just make things - we make things possible. Change the world by connecting people and capital with ideas. Solve the most challenging and pressing engineering problems for our clients. Join our engineering teams that build massively scalable software and systems, architect low latency infrastructure...


  • Chester-le-Street, United Kingdom ITPS Full time

    Cloud and Infrastructure Manager - Salary Banding - Competitive (Hybrid working 3 days HQ based, 2 days home based)We’re experts in solving complex business problems through intelligent and secure IT implementation that protects and transforms organisations, helping them to grow. We embrace innovation and drive change, bringing new ideas, new technologies...