About the Role
As a Cyber Threat Intelligence (CTI) Analyst, you will work closely with the Global Cyber Threat Intelligence Lead and Customer Success Managers to deliver high-value intelligence services to clients. This role offers the opportunity to shape the development of S-RM's CTI services, working with practice lead, managed service teams, and technical development teams to identify opportunities for innovation and improvement.
Responsibilities
- Conduct dark web monitoring using threat intelligence platforms and specialist tools.
- Set up and deliver regular monitoring engagements for clients.
- Conduct targeted investigations using threat intelligence platforms, tools, and open-source intelligence.
- Support in-depth investigations with a strong threat intelligence component, including conducting research and drafting client-facing reports.
- Contribute to public write-ups and presentations on emerging vulnerabilities, trends, and threat actor techniques.
- Help cultivate relationships with external intelligence-sharing partners and identify opportunities to grow the practice.
- Stay current with threat intelligence developments.
- Collaborate closely with S-RM's Incident Response and Risk & Resilience teams where CTI adds value to their engagements.
- Work alongside the Managed Detection and Response (MDR) and Attack Surface Management (ASM) teams to ensure unified service delivery across all managed service offerings.
- Identify opportunities for innovation and improvement within CTI services.
Requirements
- Excellent written and verbal communication skills, with the ability to produce clear, concise, and well-structured analytical reports.
- Strong analytical and problem-solving skills, including the ability to work with incomplete, ambiguous, or conflicting information, and to assess the credibility, reliability, and relevance of sources and data.
- Strong attention to detail and the ability to maintain focus and quality when processing large volumes of data across multiple sources.
- Understanding of foundational cyber concepts, such as common attack vectors, high-level security terminology, and general threat actor motivations.
- Understanding of core intelligence concepts, including the intelligence lifecycle, requirements gathering, and the distinction between tactical, operational, and strategic intelligence outputs.
- Demonstrated interest in the cyber threat landscape, including financially-motivated activity, as well as broader geopolitical, industry-specific, or emerging threats.
- Academic or professional background in a research-focused discipline (qualitative or quantitative), such as Political Science, International Relations or Security Studies, Intelligence Studies, Criminology, Cybersecurity, Data Science, or related fields.
- Experience using OSINT methodologies and/or threat intelligence platforms to collect, enrich, and analyse threat data from open, deep, and dark web sources.
- Familiarity with dark web environments, underground forums, or illicit marketplaces, including an awareness of how threat actors communicate and operate in these spaces.
- Ability to contextualize findings into business-relevant assessments, including potential impact, likelihood and recommended mitigations.
- Foundational understanding of how cyber threats are categorised and communicated, including awareness of widely-used frameworks such as MITRE ATT&CK, the Diamond Model, or the Cyber Kill Chain.
- Experience engaging with clients or stakeholders across the intelligence lifecycle, from requirements gathering through delivery, or a demonstrated willingness to develop this skill.
- Proficiency in a second language is a strong advantage, particularly Russian, Spanish, Arabic, Portuguese, French, Mandarin, or other languages relevant to cyber threat actor communities.
- An investigative mindset and genuine enthusiasm for research.
- A collaborative approach and willingness to work across teams.
- Ability to manage competing priorities and deliver under pressure.
- Initiative and ownership — a self-starter who identifies opportunities to enhance S-RM's cyber capabilities.
- Candidates must have permission to work in the UK by the start of their employment.
Skills
- Threat intelligence platforms
- OSINT methodologies
- Dark web monitoring
- Written communication
- Verbal communication
- Analytical reporting
- Problem-solving
- Data analysis
- Cybersecurity concepts
- Intelligence concepts
- Cyber threat landscape analysis
- Research
- Client engagement
Location
- UK
Work Type
- Hybrid working
- Flexible working hours
Experience Level
- Not specified
Education Level
- Not specified
Benefits
- 25 days holiday per year in addition to public holidays (+1 day for every year of service up to a maximum of 30 days in total)
- Hybrid working
- Flexible working hours
- Matching pension contribution up to 7% (up to a maximum of 14% combined)
- Financial education
- Life Insurance 4X annual salary
- Fertility treatment leave – 5 days of leave per cycle of treatment per year
- Maternity leave – 26 weeks of full pay followed by 13 weeks of half pay
- Paternity leave – 6 weeks of full pay
- Medical insurance (taxable benefit) for you and your family
- Virtual GP for you and your family members that live in the same household
- EAP programme for you and your immediate family
- Free access to the world-famous mindfulness app
About the Company
- S-RM is a global intelligence and cyber security consultancy.
- Since 2005, S-RM has helped demanding clients solve tough information security challenges.
- S-RM is committed to developing sharp, curious, driven individuals.
- S-RM invests in people's wellbeing, learning, and ideas.
- S-RM's Cyber Security division is the fastest-growing part of the company.
- The cyber sector is always evolving, and Incident Response and Managed Services practices are in more demand than ever.
- S-RM is quick to respond, innovate, and improve.
- S-RM does not get too hung up on hierarchy or bureaucracy.
- S-RM empowers employees to implement good ideas.
- S-RM has a diverse team of intelligence analysts, technical specialists, software developers, investigators, risk managers, and more.
- S-RM fosters a culture of equality, diversity, and inclusion.
Equal Opportunity
- We nurture a culture of equality, diversity, and inclusion, and are dedicated to developing a workforce that reflects a variety of talents, experiences, and perspectives.
