Threat Intelligence Lead

Riyadh, Riyadh Canonical

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.

This role will report to the CISO.

You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.

As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.

What you'll do in this role

  • Build and own Canonical's threat intelligence strategy
  • Build and maintain OSINT research environments
  • Develop OSINT tradecraft, principals, and techniques
  • Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets
  • Collaborate across teams to inform on activity of interest
  • Coordinate adversary/campaign tracking
  • Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space
  • Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies
  • Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence
  • Identify intelligence gaps and propose new tools and research projects to fill them
  • Conduct briefings for executives, internal stakeholders and external customers

The successful Threat Intelligence Lead will be

  • An experienced threat intelligence leader (or similar)
  • Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts
  • Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)
  • Able to identify, organise, catalogue, and track adversary tradecraft trends - often with incomplete data
  • Experienced using threat intelligence data to influence enterprise architecture or product development decisions
  • An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences
  • Able to travel twice a year, for company events up to two weeks long

Desired Characteristics

  • A professional portfolio of OSINT related scripts, tools, or frameworks
  • Demonstrated involvement in the larger OSINT community (please share relevant links)
  • Degree qualified, with a bachelor's degree in computer science, information security, or a related field
  • Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)
  • Experience in a tech company or government/military signal intelligence departments

What we offer you

We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.

  • Distributed work environment with twice-yearly team sprints in person
  • Personal learning and development budget of USD 2,000 per year
  • Annual compensation review
  • Recognition rewards
  • Annual holiday leave
  • Maternity and paternity leave
  • Employee Assistance Programme
  • Opportunity to travel to new locations to meet colleagues
  • Priority Pass, and travel upgrades for long haul company events

About Canonical

Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.

Canonical is an equal opportunity employer

We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Software Development

Referrals increase your chances of interviewing at Canonical by 2x

Get notified about new Threat Intelligence Lead jobs in Riyadh, Riyadh, Saudi Arabia .

We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

This advertiser has chosen not to accept applicants from your region.

Cyber Threat Intelligence Analyst

Riyadh, Riyadh Help AG

Posted 19 days ago

Job Viewed

Tap Again To Close

Job Description

Help Ag is looking for a Cyber Threat Intelligence Analyst (TIA) who will be a part of the Cyber Defense team, responsible to help collect, analyze, and disseminate cyber intelligence impacting the company or its customers. The ideal candidate will be a professional with experience in cyber intelligence/cyber risk, delivering equivalent services to organizations, with drive and creativity. This is a fantastic opportunity for a passionate professional that wants to evolve in the Cyber Intelligence world. The position will involve essential duties and responsibilities that must continue to be performed during crisis situations and contingency operations, which may necessitate extended hours of work.


Responsibilities

  • Identify, collect, and perform analysis of raw, primary, and secondary data derived from various sources.

  • Create and update General Intelligence Requirements (GIR)s, Priority Intelligence Requirements (PIR)s, and Organization Specific Intelligence Requirements (OSIR)s for customers.

  • Create threat profiles and threat landscapes for companies and or customers.

  • Create diamond models around customers and threat adversaries.

  • Improve the creation and delivery of intelligence information to customers and partners, via different reports and tools, linking the dots and adding value to the service delivered.

  • Perform investigations on the internet and dark web on different topics, from broad investigations to specific searches.

  • Identify, assess, and track tactics, techniques, and procedures of cyber threat actors.

  • Provide threat review and validation to customers on their exposure to cyber security risks, threats, and potential impact.

  • Provide actionable strategic, technical, and tactical cyber intelligence to company & its subsidiaries through weekly, monthly, and ad hoc reports, briefings, and presentations.

  • Conduct Internet searches, in English and Arabic, to profile customers’ online presence and optimize data feeds into back end cyber threat harvesting and analysis solutions.

  • Apply advanced search techniques (e.g., Boolean terms) in Google/Bing search engines, social sites, domain databases, darknet, etc. to reduce false positives.

  • Support customers in take down efforts to remove fraudulent, offensive, and suspicious online content.

  • Be up to date on knowledge of attacker tools/techniques, country and regional cyber threats, business, and political landscapes to reflect their context into detected/created threats to reduce false positives to help improve generated reports.

  • Provide feedback and recommendations to Backend Cyber defense teams such as the MDR Team to enhance detection's (e.g., false positives, generic data, fine-tuning, updated info, etc.) and improve portal performance and/or experience.

  • Understand customer industries to generate Arabic keywords to support searches of online Arabic content.

  • Identify new information sources (English and Arabic), search keywords (English and Arabic) and best practices to achieve more accurate and customer related threat detection.

  • When customers request ad-hoc investigations, assist in defining the investigation scope, delivery date and present the findings to the customer (report).

  • Understand and perform analysis of competing hypotheses (ACH) for use in threat hunting and advisory production.

  • Manage the life cycle of threat intelligence.

  • Maintain a high degree of awareness of the current threat landscape.

  • Assist in providing threat and vulnerability analysis as well as security advisory services.

  • Participate in knowledge sharing with other Analysts and writing technical articles for Internal Knowledge Bases.

  • Perform tasks independently with some oversight.

  • Deliver Cyber Intelligence services.

  • Research and craft analytic papers and deliver intelligence briefings under short deadlines on various geographical and functional topics.

  • Use knowledge, creativity, and analytic tradecraft best practices to obtain solutions to complex problems.

Qualifications & Skills:

  • A Degree in Computer Science, Information Systems, Electronics Engineering, or a closely related degree.

  • 1 - 4 years’ experience as a TIA or related position.

  • An active, demonstrable interest in cyber threat detection, and cyber threat intelligence.

  • A thorough understanding of IT systems and network security concepts, network protocols.

  • Thorough understanding of cyber threats and warfare such as Internet services attacks, User attacks, APTs, malicious mobile apps, online fraud, dark-net, hackers’ tools/techniques, hacktivist, etc.

  • Knowledge of latest global cyber-attacks, prominent ransomware, APT groups.

  • Demonstrable knowledge around GIR creations and threat profiling/landscaping.

  • Demonstrable knowledge of cyber threat intelligence, threat actors, malware, tactics, techniques, and procedures (TTPs), intelligence analysis, use of diamond models and various security methodologies and processes.

  • Demonstrable knowledge analysis of competing hypotheses (ACH) for evaluating multiple competing hypotheses for observed data.

  • Deep knowledge of IT security best practices, common attack types, and detection/prevention methods.

  • Demonstrable knowledge of cyber operational security, log analysis, netflow analysis, incident response, malware analysis, computer forensics, and/or cybercrime.

  • Demonstrable knowledge on deep and dark web.

  • Good understanding of the cyber kill chain or attack vectors.

  • Excellent verbal and written communication skills including the ability to clearly articulate technical and strategic level cyber matters to a variety of audiences.

  • Ability to multitask, prioritize, and manage time effectively.

  • Strong attention to detail.

  • Excellent interpersonal skills and professional demeanor.

  • Excellent customer service skills.

  • Formal Intelligence Analysis training & certifications like GCTI, GOSI, C|TIA, Security+, RCIA, CTIP, CPTIA, CRTIA, CTIS-I and or CTIS-II.

Benefits:

  • Health insurance with one of the leading global providers for medical insurance.

  • Career progression and growth through challenging projects and work.

  • Employee engagement activities throughout the year.

  • Tailored training & development program.

About Us:

Help AG is the cyber security arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.

Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat group in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.

Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor-agnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defenses and safeguarding their business.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Cyber Threat Intelligence Analyst

Riyadh, Riyadh Help AG

Posted today

Job Viewed

Tap Again To Close

Job Description

Help Ag is looking for a Cyber Threat Intelligence Analyst (TIA) who will be a part of the Cyber Defense team, responsible to help collect, analyze, and disseminate cyber intelligence impacting the company or its customers. The ideal candidate will be a professional with experience in cyber intelligence/cyber risk, delivering equivalent services to organizations, with drive and creativity. This is a fantastic opportunity for a passionate professional that wants to evolve in the Cyber Intelligence world. The position will involve essential duties and responsibilities that must continue to be performed during crisis situations and contingency operations, which may necessitate extended hours of work.

Responsibilities

  • Identify, collect, and perform analysis of raw, primary, and secondary data derived from various sources.

  • Create and update General Intelligence Requirements (GIR)s, Priority Intelligence Requirements (PIR)s, and Organization Specific Intelligence Requirements (OSIR)s for customers.

  • Create threat profiles and threat landscapes for companies and or customers.

  • Create diamond models around customers and threat adversaries.

  • Improve the creation and delivery of intelligence information to customers and partners, via different reports and tools, linking the dots and adding value to the service delivered.

  • Perform investigations on the internet and dark web on different topics, from broad investigations to specific searches.

  • Identify, assess, and track tactics, techniques, and procedures of cyber threat actors.

  • Provide threat review and validation to customers on their exposure to cyber security risks, threats, and potential impact.

  • Provide actionable strategic, technical, and tactical cyber intelligence to company & its subsidiaries through weekly, monthly, and ad hoc reports, briefings, and presentations.

  • Conduct Internet searches, in English and Arabic, to profile customers’ online presence and optimize data feeds into back end cyber threat harvesting and analysis solutions.

  • Apply advanced search techniques (e.g., Boolean terms) in Google/Bing search engines, social sites, domain databases, darknet, etc. to reduce false positives.

  • Support customers in take down efforts to remove fraudulent, offensive, and suspicious online content.

  • Be up to date on knowledge of attacker tools/techniques, country and regional cyber threats, business, and political landscapes to reflect their context into detected/created threats to reduce false positives to help improve generated reports.

  • Provide feedback and recommendations to Backend Cyber defense teams such as the MDR Team to enhance detection's (e.g., false positives, generic data, fine-tuning, updated info, etc.) and improve portal performance and/or experience.

  • Understand customer industries to generate Arabic keywords to support searches of online Arabic content.

  • Identify new information sources (English and Arabic), search keywords (English and Arabic) and best practices to achieve more accurate and customer related threat detection.

  • When customers request ad-hoc investigations, assist in defining the investigation scope, delivery date and present the findings to the customer (report).

  • Understand and perform analysis of competing hypotheses (ACH) for use in threat hunting and advisory production.

  • Manage the life cycle of threat intelligence.

  • Maintain a high degree of awareness of the current threat landscape.

  • Assist in providing threat and vulnerability analysis as well as security advisory services.

  • Participate in knowledge sharing with other Analysts and writing technical articles for Internal Knowledge Bases.

  • Perform tasks independently with some oversight.

  • Deliver Cyber Intelligence services.

  • Research and craft analytic papers and deliver intelligence briefings under short deadlines on various geographical and functional topics.

  • Use knowledge, creativity, and analytic tradecraft best practices to obtain solutions to complex problems.

Qualifications & Skills:

  • A Degree in Computer Science, Information Systems, Electronics Engineering, or a closely related degree.

  • 1 - 4 years’ experience as a TIA or related position.

  • An active, demonstrable interest in cyber threat detection, and cyber threat intelligence.

  • A thorough understanding of IT systems and network security concepts, network protocols.

  • Thorough understanding of cyber threats and warfare such as Internet services attacks, User attacks, APTs, malicious mobile apps, online fraud, dark-net, hackers’ tools/techniques, hacktivist, etc.

  • Knowledge of latest global cyber-attacks, prominent ransomware, APT groups.

  • Demonstrable knowledge around GIR creations and threat profiling/landscaping.

  • Demonstrable knowledge of cyber threat intelligence, threat actors, malware, tactics, techniques, and procedures (TTPs), intelligence analysis, use of diamond models and various security methodologies and processes.

  • Demonstrable knowledge analysis of competing hypotheses (ACH) for evaluating multiple competing hypotheses for observed data.

  • Deep knowledge of IT security best practices, common attack types, and detection/prevention methods.

  • Demonstrable knowledge of cyber operational security, log analysis, netflow analysis, incident response, malware analysis, computer forensics, and/or cybercrime.

  • Demonstrable knowledge on deep and dark web.

  • Good understanding of the cyber kill chain or attack vectors.

  • Excellent verbal and written communication skills including the ability to clearly articulate technical and strategic level cyber matters to a variety of audiences.

  • Ability to multitask, prioritize, and manage time effectively.

  • Strong attention to detail.

  • Excellent interpersonal skills and professional demeanor.

  • Excellent customer service skills.

  • Formal Intelligence Analysis training & certifications like GCTI, GOSI, C|TIA, Security+, RCIA, CTIP, CPTIA, CRTIA, CTIS-I and or CTIS-II.

Benefits:

  • Health insurance with one of the leading global providers for medical insurance.

  • Career progression and growth through challenging projects and work.

  • Employee engagement activities throughout the year.

  • Tailored training & development program.

About Us:

Help AG is the cyber security arm of e& enterprise and provides leading enterprise businesses across the Middle East with strategic consultancy combined with tailored information security solutions and services that address their diverse requirements, enabling them to evolve securely with a competitive edge.

Present in the Middle East since 2004, Help AG was strategically acquired by Etisalat group in Feb 2020, hence creating a cyber security and digital transformation powerhouse in the region.

Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor-agnostic, trustworthy, independent, and cyber security focused. With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defenses and safeguarding their business.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Threat Intelligence Analyst-ISE

Riyadh, Riyadh BAE Systems

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

(Saudi National Only)

Grade: 05

Location: RIYADH

Advert closing: 12/08/2025

ACCOUNTABILITIES:

Supporting the overall delivery of the threat intelligence function by providing subject matter expertise, analysis and guidance to protect BAE Systems against cyber threats by capturing and disseminating security information and providing threat intelligence expertise as and when required and presenting to, and engaging with internal/external customers, acting as a single point of contact for defined groups.

Responsibilities

· Maintains up-to-date knowledge of cyber security threats, analyst toolsets and relevant activity group tactics, techniques, and procedures (TTPs)

· Acts as a subject matter expert for the security toolsets, creating bespoke reports for defined groups.

· Conducts formal reviews of activities, processes, products, or services. Collects, collates and examines records as part of specified testing strategies for evidence of compliance with management directives, or the identification of abnormal occurrences.

· Supports security breaches in accordance with established procedures, recommends required actions and follows up to ensure these are implemented.

· Ensures all security administration processes are delivered, and checks that all requests relating to the threat intelligence lifecycle are dealt with according to agreed procedures.

· Delivers departmental plans, policies and processes and looks for continued improvement opportunities.

· Performs security risk, vulnerability assessments, and business impact analysis of information systems. Investigates suspected attacks and supports security incidents.

· Reports on system quality, collects metrics, and provides specialist advice to support others.

Activity

· Conduct detailed analysis of cyber threat data from diverse sources, including open-source information, social media, and dark web forums.

· Generate threat intelligence reports, including assessments of the tactics, techniques, and procedures (TTPs) used by threat actors.

· Collaborate with internal teams to share threat intelligence and provide recommendations on threat mitigation strategies.

· Provide real-time incident response support and assist in the investigation of security incidents.

· Coordinate with internal / external intelligence-sharing communities and government agencies to exchange threat information.

· Perform regular assessments of the organization’s threat intelligence capabilities and recommend improvements.

· Investigate root cause, document findings, implement recovery strategies, and communicate status to team members.

· Evaluate and prioritize incoming threat alerts and notifications to determine the level of risk and necessary response.

Reporting:

· Senior Threat Intelligence Analyst will be reporting to Cyber Security Manager.

Job Requirements:

· Education: University degree in Computer Science, Data Science or equivalent. CREST & GIAC qualifications or equivalent proven industry experience.

· Experience: 5+ years on IT security field

· Special Skills: Experience of working within Cyber Threat Intelligence discipline.

Understanding of Cyber Threat Intelligence techniques and best practice.

Understanding of the deployment and use of Threat Intelligence and coordination of ATP and TTPs to support Cyber Operations.

Ability to evaluate threat intelligence to identify actionable high fidelity indicators of compromise and attacker tactics, techniques and procedures (TTP).

Ability to generate high quality and concise written and verbal CTI output, proving an explanation of technical issues to non-technical audiences

SAUDI NATIONAL EMPLOYEE BENEFITS

In return for the required high levels of commitment and hard work you will receive a competitive salary and benefits package, including a generous leave and leave allowance, a full health care scheme and access to discounted gym membership.

ISE

International Systems Engineering (ISE), established in 1988, is part of BAE Systems’ global portfolio. For over 30 years.

International System Engineering (ISE) is a trusted provider in delivering secure mission-critical solutions, services and cutting-edge technologies. ISE products portfolio includes Cybersecurity, Secure Infrastructure/Cloud Management, Secure Network & Domain Management, Application Support & Development, End User Computing & Support, and IT Service Management.

Aligned with the Kingdom’s national objectives, ISE is committed to investing in local talent, advanced technologies, and strong partnerships with both international and local suppliers. Our efforts continues to grow in line with Saudi Vision 2030 in improving national capabilities in high technology areas and contribute to building a highly skilled, inclusive, and future-ready team.

Note: All appointments in Saudi Arabia are subject to receipt of all necessary Government and/or Customer approvals. If you are Ex-military, you MUST submit your end of service certificate with your application. We aim to complete the assessment and selection process within 3 weeks from closing date.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Threat Intelligence Analyst-ISE

Riyadh, Riyadh BAE Systems

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Senior Threat Intelligence Analyst-ISE role at BAE Systems

Join to apply for the Senior Threat Intelligence Analyst-ISE role at BAE Systems

Accountabilities

Supporting the overall delivery of the threat intelligence function by providing subject matter expertise, analysis and guidance to protect BAE Systems against cyber threats by capturing and disseminating security information and providing threat intelligence expertise as and when required and presenting to, and engaging with internal/external customers, acting as a single point of contact for defined groups.

(Saudi National Only)

Grade: 05

Location: RIYADH

Advert closing: 12/08/2025

Accountabilities

Supporting the overall delivery of the threat intelligence function by providing subject matter expertise, analysis and guidance to protect BAE Systems against cyber threats by capturing and disseminating security information and providing threat intelligence expertise as and when required and presenting to, and engaging with internal/external customers, acting as a single point of contact for defined groups.

Responsibilities

  • Maintains up-to-date knowledge of cyber security threats, analyst toolsets and relevant activity group tactics, techniques, and procedures (TTPs)
  • Acts as a subject matter expert for the security toolsets, creating bespoke reports for defined groups.
  • Conducts formal reviews of activities, processes, products, or services. Collects, collates and examines records as part of specified testing strategies for evidence of compliance with management directives, or the identification of abnormal occurrences.
  • Supports security breaches in accordance with established procedures, recommends required actions and follows up to ensure these are implemented.
  • Ensures all security administration processes are delivered, and checks that all requests relating to the threat intelligence lifecycle are dealt with according to agreed procedures.
  • Delivers departmental plans, policies and processes and looks for continued improvement opportunities.
  • Performs security risk, vulnerability assessments, and business impact analysis of information systems. Investigates suspected attacks and supports security incidents.
  • Reports on system quality, collects metrics, and provides specialist advice to support others.

Activity

  • Conduct detailed analysis of cyber threat data from diverse sources, including open-source information, social media, and dark web forums.
  • Generate threat intelligence reports, including assessments of the tactics, techniques, and procedures (TTPs) used by threat actors.
  • Collaborate with internal teams to share threat intelligence and provide recommendations on threat mitigation strategies.
  • Provide real-time incident response support and assist in the investigation of security incidents.
  • Coordinate with internal / external intelligence-sharing communities and government agencies to exchange threat information.
  • Perform regular assessments of the organization’s threat intelligence capabilities and recommend improvements.
  • Investigate root cause, document findings, implement recovery strategies, and communicate status to team members.
  • Evaluate and prioritize incoming threat alerts and notifications to determine the level of risk and necessary response.

Reporting

  • Senior Threat Intelligence Analyst will be reporting to Cyber Security Manager.

Job Requirements

  • Education: University degree in Computer Science, Data Science or equivalent. CREST & GIAC qualifications or equivalent proven industry experience.
  • Experience: 5+ years on IT security field
  • Special Skills: Experience of working within Cyber Threat Intelligence discipline.

Understanding of Cyber Threat Intelligence techniques and best practice.

Understanding of the deployment and use of Threat Intelligence and coordination of ATP and TTPs to support Cyber Operations.

Ability to evaluate threat intelligence to identify actionable high fidelity indicators of compromise and attacker tactics, techniques and procedures (TTP).

Ability to generate high quality and concise written and verbal CTI output, proving an explanation of technical issues to non-technical audiences

Saudi National Employee Benefits

In return for the required high levels of commitment and hard work you will receive a competitive salary and benefits package, including a generous leave and leave allowance, a full health care scheme and access to discounted gym membership.

ISE

International Systems Engineering (ISE), established in 1988, is part of BAE Systems’ global portfolio. For over 30 years.

International System Engineering (ISE) is a trusted provider in delivering secure mission-critical solutions, services and cutting-edge technologies. ISE products portfolio includes Cybersecurity, Secure Infrastructure/Cloud Management, Secure Network & Domain Management, Application Support & Development, End User Computing & Support, and IT Service Management.

Aligned with the Kingdom’s national objectives, ISE is committed to investing in local talent, advanced technologies, and strong partnerships with both international and local suppliers. Our efforts continues to grow in line with Saudi Vision 2030 in improving national capabilities in high technology areas and contribute to building a highly skilled, inclusive, and future-ready team.

Note: All appointments in Saudi Arabia are subject to receipt of all necessary Government and/or Customer approvals. If you are Ex-military, you MUST submit your end of service certificate with your application. We aim to complete the assessment and selection process within 3 weeks from closing date.

Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Defense and Space Manufacturing

Referrals increase your chances of interviewing at BAE Systems by 2x

Sign in to set job alerts for “Threat Intelligence Analyst” roles.

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Threat Intelligence Analyst-ISE

Riyadh, Riyadh BAE Systems

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Job Number:

Job Number: 00129254

(Saudi National Only)

Grade: 05

Location: RIYADH

Advert closing: 12/08/2025

ACCOUNTABILITIES:

Supporting the overall delivery of the threat intelligence function by providing subject matter expertise, analysis and guidance to protect BAE Systems against cyber threats by capturing and disseminating security information and providing threat intelligence expertise as and when required and presenting to, and engaging with internal/external customers, acting as a single point of contact for defined groups.

Responsibilities

· Maintains up-to-date knowledge of cyber security threats, analyst toolsets and relevant activity group tactics, techniques, and procedures (TTPs)

· Acts as a subject matter expert for the security toolsets, creating bespoke reports for defined groups.

· Conducts formal reviews of activities, processes, products, or services. Collects, collates and examines records as part of specified testing strategies for evidence of compliance with management directives, or the identification of abnormal occurrences.

· Supports security breaches in accordance with established procedures, recommends required actions and follows up to ensure these are implemented.

· Ensures all security administration processes are delivered, and checks that all requests relating to the threat intelligence lifecycle are dealt with according to agreed procedures.

· Delivers departmental plans, policies and processes and looks for continued improvement opportunities.

· Performs security risk, vulnerability assessments, and business impact analysis of information systems. Investigates suspected attacks and supports security incidents.

· Reports on system quality, collects metrics, and provides specialist advice to support others.

Activity

· Conduct detailed analysis of cyber threat data from diverse sources, including open-source information, social media, and dark web forums.

· Generate threat intelligence reports, including assessments of the tactics, techniques, and procedures (TTPs) used by threat actors.

· Collaborate with internal teams to share threat intelligence and provide recommendations on threat mitigation strategies.

· Provide real-time incident response support and assist in the investigation of security incidents.

· Coordinate with internal / external intelligence-sharing communities and government agencies to exchange threat information.

· Perform regular assessments of the organization’s threat intelligence capabilities and recommend improvements.

· Investigate root cause, document findings, implement recovery strategies, and communicate status to team members.

· Evaluate and prioritize incoming threat alerts and notifications to determine the level of risk and necessary response.

Reporting:

· Senior Threat Intelligence Analyst will be reporting to Cyber Security Manager.

Job Requirements:

· Education: University degree in Computer Science, Data Science or equivalent. CREST & GIAC qualifications or equivalent proven industry experience.

· Experience: 5+ years on IT security field

· Special Skills: Experience of working within Cyber Threat Intelligence discipline.

Understanding of Cyber Threat Intelligence techniques and best practice.

Understanding of the deployment and use of Threat Intelligence and coordination of ATP and TTPs to support Cyber Operations.

Ability to evaluate threat intelligence to identify actionable high fidelity indicators of compromise and attacker tactics, techniques and procedures (TTP).

Ability to generate high quality and concise written and verbal CTI output, proving an explanation of technical issues to non-technical audiences

SAUDI NATIONAL EMPLOYEE BENEFITS

In return for the required high levels of commitment and hard work you will receive a competitive salary and benefits package, including a generous leave and leave allowance, a full health care scheme and access to discounted gym membership.

ISE

International Systems Engineering (ISE), established in 1988, is part of BAE Systems’ global portfolio. For over 30 years.

International System Engineering (ISE) is a trusted provider in delivering secure mission-critical solutions, services and cutting-edge technologies. ISE products portfolio includes Cybersecurity, Secure Infrastructure/Cloud Management, Secure Network & Domain Management, Application Support & Development, End User Computing & Support, and IT Service Management.

Aligned with the Kingdom’s national objectives, ISE is committed to investing in local talent, advanced technologies, and strong partnerships with both international and local suppliers. Our efforts continues to grow in line with Saudi Vision 2030 in improving national capabilities in high technology areas and contribute to building a highly skilled, inclusive, and future-ready team.

Note: All appointments in Saudi Arabia are subject to receipt of all necessary Government and/or Customer approvals. If you are Ex-military, you MUST submit your end of service certificate with your application. We aim to complete the assessment and selection process within 3 weeks from closing date.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Threat Intelligence Analyst-ISE

Riyadh, Riyadh BAE Systems

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Number: Job Number: 00129254

(Saudi National Only)

Grade: 05

Location: RIYADH

Advert closing: 12/08/2025

ACCOUNTABILITIES:

Supporting the overall delivery of the threat intelligence function by providing subject matter expertise, analysis and guidance to protect BAE Systems against cyber threats by capturing and disseminating security information and providing threat intelligence expertise as and when required and presenting to, and engaging with internal/external customers, acting as a single point of contact for defined groups.

Responsibilities

· Maintains up-to-date knowledge of cyber security threats, analyst toolsets and relevant activity group tactics, techniques, and procedures (TTPs)

· Acts as a subject matter expert for the security toolsets, creating bespoke reports for defined groups.

· Conducts formal reviews of activities, processes, products, or services. Collects, collates and examines records as part of specified testing strategies for evidence of compliance with management directives, or the identification of abnormal occurrences.

· Supports security breaches in accordance with established procedures, recommends required actions and follows up to ensure these are implemented.

· Ensures all security administration processes are delivered, and checks that all requests relating to the threat intelligence lifecycle are dealt with according to agreed procedures.

· Delivers departmental plans, policies and processes and looks for continued improvement opportunities.

· Performs security risk, vulnerability assessments, and business impact analysis of information systems. Investigates suspected attacks and supports security incidents.

· Reports on system quality, collects metrics, and provides specialist advice to support others.

Activity

· Conduct detailed analysis of cyber threat data from diverse sources, including open-source information, social media, and dark web forums.

· Generate threat intelligence reports, including assessments of the tactics, techniques, and procedures (TTPs) used by threat actors.

· Collaborate with internal teams to share threat intelligence and provide recommendations on threat mitigation strategies.

· Provide real-time incident response support and assist in the investigation of security incidents.

· Coordinate with internal / external intelligence-sharing communities and government agencies to exchange threat information.

· Perform regular assessments of the organization’s threat intelligence capabilities and recommend improvements.

· Investigate root cause, document findings, implement recovery strategies, and communicate status to team members.

· Evaluate and prioritize incoming threat alerts and notifications to determine the level of risk and necessary response.

Reporting:

· Senior Threat Intelligence Analyst will be reporting to Cyber Security Manager.

Job Requirements:

· Education: University degree in Computer Science, Data Science or equivalent. CREST & GIAC qualifications or equivalent proven industry experience.

· Experience: 5+ years on IT security field

· Special Skills: Experience of working within Cyber Threat Intelligence discipline.

Understanding of Cyber Threat Intelligence techniques and best practice.

Understanding of the deployment and use of Threat Intelligence and coordination of ATP and TTPs to support Cyber Operations.

Ability to evaluate threat intelligence to identify actionable high fidelity indicators of compromise and attacker tactics, techniques and procedures (TTP).

Ability to generate high quality and concise written and verbal CTI output, proving an explanation of technical issues to non-technical audiences

SAUDI NATIONAL EMPLOYEE BENEFITS

In return for the required high levels of commitment and hard work you will receive a competitive salary and benefits package, including a generous leave and leave allowance, a full health care scheme and access to discounted gym membership.

ISE

International Systems Engineering (ISE), established in 1988, is part of BAE Systems’ global portfolio. For over 30 years.

International System Engineering (ISE) is a trusted provider in delivering secure mission-critical solutions, services and cutting-edge technologies. ISE products portfolio includes Cybersecurity, Secure Infrastructure/Cloud Management, Secure Network & Domain Management, Application Support & Development, End User Computing & Support, and IT Service Management.

Aligned with the Kingdom’s national objectives, ISE is committed to investing in local talent, advanced technologies, and strong partnerships with both international and local suppliers. Our efforts continues to grow in line with Saudi Vision 2030 in improving national capabilities in high technology areas and contribute to building a highly skilled, inclusive, and future-ready team.

Note: All appointments in Saudi Arabia are subject to receipt of all necessary Government and/or Customer approvals. If you are Ex-military, you MUST submit your end of service certificate with your application. We aim to complete the assessment and selection process within 3 weeks from closing date.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Threat intelligence Jobs in Riyadh !

INFORMATION SECURITY ANALYST

Riyadh, Riyadh Kfshrc

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Admin Section - Information Security Department

Summary

Responsible for executing and maintaining the operational components of the Organization's security strategy, ensuring a secure, efficient, and effective technology environment. This role aims to protect all Organization data by maintaining a secure information environment.

Essential Responsibilities and Duties
  1. Assist in implementing cybersecurity methodologies, procedures, and tools within the Information Security Management Division.
  2. Assist in drafting information security policies across the Organization in accordance with the laws and regulations of the Kingdom of Saudi Arabia.
  3. Assist in building and maintaining a catalog of available security services aligned with security policies and in compliance with industry standards such as ISO 27001.
  4. Support periodic assessments to evaluate how well security services align with and meet business objectives, determining if services should be decommissioned or new services added.
  5. Issue NCA and CVE bulletins to stakeholders and provide guidance to the remediation team.
  6. Conduct regularly scheduled reviews of security service quality.
  7. Participate in planning, executing, and reporting security audits and network vulnerability assessments with minimal supervision.

Qualifications: One (1) year of related experience with a Master’s degree, or three (3) years with a Bachelor’s degree.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information Security Specialist

Riyadh, Riyadh Total-TECH Co.

Posted 19 days ago

Job Viewed

Tap Again To Close

Job Description

” The Job Description”

  1. Design, implement, and maintain information security solutions and policies.
  2. Monitor and protect networks, systems, and applications from cyber threats.
  3. Manage and maintain F5 Load Balancers, including configuration, troubleshooting, and optimization.
  4. Administer Privileged Access Management (PAM) and Identity & Access Management (IAM) tools to ensure secure access control.
  5. Implement and manage Network Access Control (NAC) solutions, particularly Cisco ISE.
  6. Oversee Mobile Device Management (MDM) policies to secure mobile endpoints.
  7. Deploy and monitor Endpoint Detection and Response (EDR) tools for threat detection and incident response.
  8. Ensure compliance with NCA cybersecurity regulations and requirements.
  9. Conduct regular security assessments, audits, and risk evaluations.
  10. Collaborate with IT and business teams to respond to security incidents and develop mitigation strategies.
  11. Maintain up-to-date documentation of security processes, systems, and incident reports.
    Requirements:
  • Bachelor’s degree in Information Security, Computer Science, Cybersecurity, or a related field.
  • 3+ years of experience in an information security role.
  • Strong knowledge of network security principles and practices.
  • Hands-on experience with:
    F5 Load Balancers.
    PAM/IAM solutions (e.g., CyberArk, Azure AD, Okta).
    NAC (Cisco ISE) systems.
    MDM platforms (e.g., Intune, MobileIron).
    EDR tools (e.g., CrowdStrike, SentinelOne, Microsoft Defender).
    Familiarity with NCA (National Cybersecurity Authority) guidelines and compliance requirements.
  • Saudi national (this role is open to Saudi citizens only).

Tagged as: EDR , F5 , IAM , ISE , MDM , NAC , NCA , PAM

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information Security Analyst

Riyadh, Riyadh Unifonic

Posted today

Job Viewed

Tap Again To Close

Job Description

Proudly voted a Great Place to Work®, we are a dynamic startup in the SaaS space that is revolutionizing the way businesses communicate. Our team is made up of 500 energetic and passionate Unifones who are dedicated to delivering the best possible experience to 5000+ customer-centric companies.

We pride ourselves on our fun and collaborative work environment, where creativity and new ideas are constantly encouraged. As shareholders in the business, we’re so much more than a group of passionate communicators. We are Unifones. Join our team and be a part of something big!

**Meet the team!**

Our Engineering team is responsible for designing, developing, and maintaining the systems and technologies that drive Unifonic’s solutions. We work closely with other departments to ensure our products and services meet the needs of our customers. If you are passionate about technology and are excited about working on cutting-edge communication and engagement solutions, we want you on our team.

As an Information Security Analyst, you will collaborate with cross-functional teams (security engineers and analysts, technical program managers, business stakeholders, and risk & compliance teams) to help maintain security controls and policies within Unifonic.

**Help us shape the future of communications by**:

- Understanding how security is crucial for operations across the organization and advising on best practices.
- Maintaining security controls and policies within Unifonic.
- Working with stakeholders across the organization to make sure compliance needs are met. Also, implementing the information security roadmap.
- Maintenance of ISMS and all related systems.
- Performing security reviews and gap analysis.
- Maintaining risk registers and assisting in treating security risks.
- Maintaining up-to-date knowledge of ISO standards, security threats, countermeasures, industry good practices, and assistive technologies.
- Assisting in replying to Unifonic’s customers’ security due diligence and RFI.
- Supporting the Legal team when there’s the need to respond to security incidents.
- Supporting the Compliance team when needed to provide input on everything related to Information Security.
- Understanding how data should be managed so that an organization can be compliant with security standards.

**What you will bring**:

- Hands-on 3+ years of work experience in information security, program/project management, or similar capacities.
- Knowledge of ISO 27001, 27017, 27018 (preferably certified practitioner).
- Knowledge of SOC2 (has gone through at least one audit process).
- Understanding of IT (systems, cloud, etc).
- Experience working with start-ups while helping them on their information security journey while they scale up is a plus.
- Knowledge of GDPR, ISO9000, CSA, and PCI is nice to have.
- Superb communication skills with an ability to describe technical and security issues/solutions to technically and non-technically minded people.
- Excellent written language skills to be used both in technical and non-technical contexts.
- An inquisitive, analytical mind.
- Great organizational skills.
- Ability to work on projects concurrently and under tight deadlines.
- Self-motivated with a determination to provide solutions.
- Ability to follow procedures as well as suggest improvement ideas.
- BA/BS in Computer Science, Information Systems, or equivalent work experience.

**As a Unifone, you will receive a range of benefits**:

- Competitive salary and bonus.
- Unifonic share scheme (we are all owners!).
- 30 holiday days after your first anniversary.
- Your Birthday off!
- We pay all the GOSI costs on your behalf.
- Flexible working arrangements.
- Spend up to 10 weeks per year working from anywhere in the world!
- Paid leave for new parents.
- Linkedin learning license.
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Threat Intelligence Jobs View All Jobs in Riyadh