Overview
Allied Consultants, Inc is a proudly Austin based firm with over 34 years of experience delivering top-tier technical and business professionals within Texas State Agencies. We are currently seeking an experience Cybersecurity Threat Intelligence Analyst  to play a key role within a high-impact technical services team.
Â
At Allied Consultants, we value our consultants and are committed to providing an exceptional experience including:
- Highly competitive pay rates
- Local support staff for responsive, personal service
- Comprehensive benefits package, including:
- Medical insurance (with employer cost sharing)
- Life insurance
- A 401(K) plan with company match
- Flexible spending through a cafeteria plan
Candidates selected for interviews will be subject to a criminal background check and may be required to pass a drug screening, in compliance with federal and state regulations. All offers of employment are contingent upon successful completion of these checks.
Â
Allied Consultants is a proud to be an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Responsibilities
The Cybersecurity Operations Center (CSOC) Threat Intelligence Analyst is responsible for monitoring, analyzing, and operationalizing cyber threat intelligence across enterprise environments. This role ensures actionable intelligence is identified, prioritized, and disseminated to appropriate stakeholders to reduce cybersecurity risk and improve organizational awareness.
The selected individual will be responsible for administering threat intelligence platforms, supporting incident response activities, and integrating intelligence capabilities into existing security operations processes.
Team member will provide services in the following areas:
- Triage threat intelligence alerts generated from intelligence platforms and external intelligence sources.
- Create Security Incidents and route them to appropriate teams for investigation and resolution.
- Analyze, validate, and distribute Critical and Zero-Day CVE advisories to impacted stakeholders.
- Administer threat intelligence platforms, including tuning, scoping, content management, reporting, and platform optimization.
- Upload, validate, and maintain client's organizational data within intelligence platforms, including user account inventories, technology asset information, business partner listings, and third-party vendor data.
- Manage intelligence feed subscriptions and ensure threat intelligence data is properly integrated into cybersecurity monitoring systems.
- Verify threat intelligence feed ingestion into SIEM platforms and troubleshoot feed-related issues.
- Integrate threat intelligence platforms with client's systems, including SIEM, ServiceNow, ticketing workflows, and reporting solutions.
- Develop operational reports, threat trend summaries, and executive-level intelligence briefings.
- Collaborate with Incident Response, Security Operations, Vulnerability Management, and Infrastructure teams to support threat investigations and remediation activities.
- Conduct threat analysis and forecasting to identify emerging risks affecting client's systems, vendors, and business functions.
- Maintain documentation, procedures, and intelligence workflows supporting cybersecurity operations.
Qualifications
Minimum (Required):
Years
Skills/Experience
5
Experience performing cyber threat intelligence analysis within a Security Operations Center (SOC) or Cybersecurity Operations environment
5
Experience with threat intelligence platforms such as Recorded Future, CrowdStrike Intelligence, Anomali, Mandiant, Flashpoint, or equivalent
5
Experience analyzing Indicators of Compromise (IOCs), adversary TTPs, malware campaigns, and vulnerability intelligence
5
Experience creating and managing security incidents, case management workflows, and incident escalation processes
5
Experience with SIEM technologies and intelligence feed integration
5
Knowledge of cybersecurity frameworks including MITRE ATT&CK, NIST Cybersecurity Framework, and CIS Controls
5
Experience communicating cybersecurity risks and intelligence findings to technical and non-technical stakeholders
5
Strong written communication, documentation, reporting, and analytical skills
Preferred (Optional):
Years
Skills/Experience
Â
Certified Threat Intelligence Analyst (CTIA) certification
Â
GIAC Cyber Threat Intelligence (GCTI) certification
Â
Experience administering Recorded Future platforms and intelligence modules
Â
Experience integrating threat intelligence with Splunk, Microsoft Sentinel, QRadar, or equivalent SIEM platforms
Â
Experience integrating cybersecurity tools with ServiceNow
Â
Experience managing third-party risk intelligence or vendor intelligence programs
Â
Experience with TAXII/STIX frameworks and automated intelligence sharing
Â
Knowledge of vulnerability management, CVE monitoring, and zero-day response processes
Â
Experience with scripting and automation using PowerShell or Python
Learn more about this Employer on their Career Site
