Cyber Threat Intelligence Principal Specialist

2 weeks ago


London, United Kingdom Willis Towers Watson Full time

Cyber Threat Intelligence Principal Specialist
- London, GB

August 14, 2023

The individual will contribute to and work as part of a global multi-disciplined security community with clear vision and direction and top-down support across the business. They will help the wider community in fostering a culture which is both security aware and is a great place to come to work. WTW has a large global footprint and the successful individual will find a fascinating range of work.

This role is aligned to our Hybrid workstyle, predominantly based from home with occasional travel to WTW offices.

**The Role**

Provide support to Information Cyber Security from across the business by undertaking activities which include:

- Lead the team’s efforts to operationalise intelligence, providing direction to more junior specialists and mentoring them in their development.
- Focus on the latest Tactics, Techniques, and Procedures (TTPs) being deployed by threat actors. Map these TTPs to WTW’s operational environment to help protect our systems and data.
- Produce assessments on cyber threats, attacks, and external incidents of interest to WTW. Support threat hunting activities.
- Collect, analyse, and interpret qualitative and quantitative, technical and non-technical data in all-source intelligence analysis.
- Ensure timely response to any cyber incident to minimise risk exposure and production downtime by collaborating closely with incident response colleagues.
- Conduct security research - identify and navigate relevant online sources, including cyber security websites, forums, social media, and traditional sources to support research processes.
- Perform open source intelligence (OSINT) collection and analysis, identifying the most relevant and immediate cyber threats, malicious code, suspicious domains, and security vulnerabilities.
- Work with third parties developing shared intelligence including government, law enforcement agencies, and peer institutions operating in industry sectors relevant to WTW.

**The Requirements**
- Must have strong verbal and written communication skills, interpersonal collaborative skills and the ability to communicate security and risk-related concepts to both highly technical and non-technical audiences.
- Experience in developing and maintaining operational threat intelligence. Ability to review information to determine its significance, validate its accuracy, and assess its reliability.
- Ability to compile data from both open and closed sources, drawing analytical conclusions to shape recommendations for key internal decision-makers.
- Knowledge of Cloud security and incident response activities in a Cloud environment.
- Excellent understanding of Lockheed Martin’s Cyber Kill Chain, the Diamond Model of Intrusion Analysis and the MITRE ATT&CK framework. Ability to implement threat modelling in support of Threat Intelligence activities.
- Understanding of assets and data of value to threat actors and how organisations are compromised.
- Experience working in one or more of Cyber Threat Intelligence, Cyber Security Operations or Digital Forensics.
- Experienced in analysing malware, hacking tools and threat actor TTPs to characterise threat actors’ technical methods for accomplishing their goals.
- Experience of tracking threat actors and building up a repository of threat knowledge.
- Knowledge of privilege escalation, persistence and lateral movement techniques deployed by threat actors.
- Experience of working and communicating within a global team environment.
- Willingness to join an on-call roster to support response to out-of-hours incidents.

**At WTW, we believe difference makes us stronger. We want our workforce to reflect the different and varied markets we operate in and to build a culture of inclusivity that makes colleagues feel welcome, valued and empowered to bring their whole selves to work every day. We are an equal opportunity employer committed to fostering an inclusive work environment throughout our organisation. We embrace all types of diversity.


  • Senior Cyber Threat Intelligence Analyst

    Found in: JG UK C2 - 2 weeks ago


    London, United Kingdom Computershare Full time

    Senior Cyber Threat Intelligence AnalystThis is a hybrid position primarily based in Edinburgh or Bristol UK. We're committed to your flexibility and wellbeing and our hybrid strategy currently requires two days a week in the office, giving you the option to work remotely for some of your working week. Find out more about our culture of flexible working .We...


  • London, United Kingdom Barclay Simpson Full time

    I'm working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. Working closely with the wider cyber function, including but not limited to threat intelligence and forensics to assist with investigations and improve the threat hunting service. ...

  • Intelligence Specialist

    42 minutes ago


    London, United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. Working closely with the wider cyber function, including but not limited to threat intelligence and forensics to assist with investigations and improve the threat hunting service. ...


  • London, United Kingdom Henderson Scott Full time

    **Cyber Intelligence Analyst - £70,000 - £85,000** You must be able to gain and maintain UK Government clearance **Remote with regular on-site presence in London and other locations as the business requires.** this role is a member of a small team that delivers computer network defence support in the UK, providing day-to-day security monitoring...

  • Threat Intelligence

    7 days ago


    London, United Kingdom Zync Group Full time

    **Threat Intelligence - Malware Expert - Hybrid UK (Manchester, Birmingham, Leeds, Bristol) - £65,000 + Bonus - Network Security - Intelligence Analysis** **The company**:This company is a multinational telecommunications company based in London, UK. It is one of the world's largest telecommunications companies and operates in more than 180 countries. The...

  • Cyber Intelligence Analyst

    Found in: Talent UK C2 - 5 days ago


    London, United Kingdom Northrop Grumman Full time

    Requisition ID: R10157896 Part of Northrop Grumman’s Intelligence and Response (I&R) team, this role is a member of a small team that delivers computer network defence support in the UK, providing day-to-day security monitoring operations and services protecting NG’s computing infrastructure from sophisticated threats and strategically positioning...


  • London, United Kingdom Cyber Spring Full time

    Job Description I am currently working with an exciting Software business looking for a Cyber Security Specialist in the UK to support a wider global security team. Working closely with the Information Security Manager, we are looking for someone to help maintain the security of the company by managing and monitoring a range of security tools and...


  • London, United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements. Some of your responsibilities will be as follows: Work closely with...


  • London, United Kingdom Cloudsecurityexpo Full time

    I'm working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements. Some of your responsibilities will be as follows: Work closely...


  • London, United Kingdom Anson McCade Ltd - IT and Finance Recruitment Full time

    **Principal Cyber Security Consultant** Are you an experienced cyber security professional looking to make a real difference in the fight against online threats? Do you want to join a company that is at the forefront of cutting-edge technology and innovation? If so, they want you to join thisexciting team. They are seeking a highly skilled Cyber Security...


  • London, United Kingdom INTEL 471 Full time

    **Company Overview: Intel 471 empowers enterprises, government agencies, and other organizations to win the cybersecurity war using near-real-time insights into the latest malicious actors, relationships, threat patterns, and imminent attacks relevant to their businesses. Founded in 2014, Intel 471 provides comprehensive intelligence and monitoring on threat...

  • Threat and Vulnerability Engineer.

    Found in: Talent UK C2 - 2 weeks ago


    London, United Kingdom Millennium Management Full time

    Threat and Vulnerability Engineer The successful candidate for this position will be a subject matter expert in Information Security, possessing a wide range of experience in various technologies, tools, and methodologies. The primary responsibilities of this role include identifying, analyzing, and prioritizing vulnerabilities within the organization. The...


  • London, United Kingdom GCS Full time

    Job Description The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our...

  • Cyber Security Specialist

    Found in: Jooble UK C2 - 3 weeks ago


    London, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences,...

  • Cyber Security Specialist

    Found in: Talent UK 2A C2 - 3 weeks ago


    London, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...


  • London, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences,...


  • London, United Kingdom Barclay Simpson Full time

    I’m working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist. Working closely with the wider cyber function, including but not limited to threat intelligence and forensics to assist with investigations and improve the threat hunting service. ...

  • Cyber Security Specialist

    Found in: Whatjobs ES C2 - 1 week ago


    London Area, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...

  • Cyber Security Specialist

    Found in: Appcast Linkedin GBL C2 - 3 weeks ago


    London Area, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...

  • Cyber Security Specialist

    Found in: Appcast UK C2 - 2 weeks ago


    London Area, United Kingdom GCS Full time

    The Cyber Security Specialist holds the key responsibility of safeguarding the company's vital infrastructure, intellectual assets, and customer information from evolving cyber threats, ensuring uninterrupted operations. You will adopt a proactive stance in constructing, implementing, and managing our Cyber capabilities to bolster our defences, utilizing...