Analyst, Cyber Threat Intelligence at S-RM | England | Rezi

Analyst, Cyber Threat Intelligence at S-RM

Analyst, Cyber Threat Intelligence

S-RM · England

1 weeks ago

Analyst, Cyber Threat Intelligence

S-RM · England

13 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

As a Cyber Threat Intelligence (CTI) Analyst, you will work closely with the Global Cyber Threat Intelligence Lead and Customer Success Managers to deliver high-value intelligence services to clients. This role offers the opportunity to shape the development of S-RM's CTI services, working with practice lead, managed service teams, and technical development teams to identify opportunities for innovation and improvement.

Responsibilities

  • Conduct dark web monitoring using threat intelligence platforms and specialist tools.
  • Set up and deliver regular monitoring engagements for clients.
  • Conduct targeted investigations using threat intelligence platforms, tools, and open-source intelligence.
  • Support in-depth investigations with a strong threat intelligence component, including conducting research and drafting client-facing reports.
  • Contribute to public write-ups and presentations on emerging vulnerabilities, trends, and threat actor techniques.
  • Help cultivate relationships with external intelligence-sharing partners and identify opportunities to grow the practice.
  • Stay current with threat intelligence developments.
  • Collaborate closely with S-RM's Incident Response and Risk & Resilience teams where CTI adds value to their engagements.
  • Work alongside the Managed Detection and Response (MDR) and Attack Surface Management (ASM) teams to ensure unified service delivery across all managed service offerings.
  • Identify opportunities for innovation and improvement within CTI services.

Requirements

  • Excellent written and verbal communication skills, with the ability to produce clear, concise, and well-structured analytical reports.
  • Strong analytical and problem-solving skills, including the ability to work with incomplete, ambiguous, or conflicting information, and to assess the credibility, reliability, and relevance of sources and data.
  • Strong attention to detail and the ability to maintain focus and quality when processing large volumes of data across multiple sources.
  • Understanding of foundational cyber concepts, such as common attack vectors, high-level security terminology, and general threat actor motivations.
  • Understanding of core intelligence concepts, including the intelligence lifecycle, requirements gathering, and the distinction between tactical, operational, and strategic intelligence outputs.
  • Demonstrated interest in the cyber threat landscape, including financially-motivated activity, as well as broader geopolitical, industry-specific, or emerging threats.
  • Academic or professional background in a research-focused discipline (qualitative or quantitative), such as Political Science, International Relations or Security Studies, Intelligence Studies, Criminology, Cybersecurity, Data Science, or related fields.
  • Experience using OSINT methodologies and/or threat intelligence platforms to collect, enrich, and analyse threat data from open, deep, and dark web sources.
  • Familiarity with dark web environments, underground forums, or illicit marketplaces, including an awareness of how threat actors communicate and operate in these spaces.
  • Ability to contextualize findings into business-relevant assessments, including potential impact, likelihood and recommended mitigations.
  • Foundational understanding of how cyber threats are categorised and communicated, including awareness of widely-used frameworks such as MITRE ATT&CK, the Diamond Model, or the Cyber Kill Chain.
  • Experience engaging with clients or stakeholders across the intelligence lifecycle, from requirements gathering through delivery, or a demonstrated willingness to develop this skill.
  • Proficiency in a second language is a strong advantage, particularly Russian, Spanish, Arabic, Portuguese, French, Mandarin, or other languages relevant to cyber threat actor communities.
  • An investigative mindset and genuine enthusiasm for research.
  • A collaborative approach and willingness to work across teams.
  • Ability to manage competing priorities and deliver under pressure.
  • Initiative and ownership — a self-starter who identifies opportunities to enhance S-RM's cyber capabilities.
  • Candidates must have permission to work in the UK by the start of their employment.

Skills

  • Threat intelligence platforms
  • OSINT methodologies
  • Dark web monitoring
  • Written communication
  • Verbal communication
  • Analytical reporting
  • Problem-solving
  • Data analysis
  • Cybersecurity concepts
  • Intelligence concepts
  • Cyber threat landscape analysis
  • Research
  • Client engagement

Location

  • UK

Work Type

  • Hybrid working
  • Flexible working hours

Experience Level

  • Not specified

Education Level

  • Not specified

Benefits

  • 25 days holiday per year in addition to public holidays (+1 day for every year of service up to a maximum of 30 days in total)
  • Hybrid working
  • Flexible working hours
  • Matching pension contribution up to 7% (up to a maximum of 14% combined)
  • Financial education
  • Life Insurance 4X annual salary
  • Fertility treatment leave – 5 days of leave per cycle of treatment per year
  • Maternity leave – 26 weeks of full pay followed by 13 weeks of half pay
  • Paternity leave – 6 weeks of full pay
  • Medical insurance (taxable benefit) for you and your family
  • Virtual GP for you and your family members that live in the same household
  • EAP programme for you and your immediate family
  • Free access to the world-famous mindfulness app

About the Company

  • S-RM is a global intelligence and cyber security consultancy.
  • Since 2005, S-RM has helped demanding clients solve tough information security challenges.
  • S-RM is committed to developing sharp, curious, driven individuals.
  • S-RM invests in people's wellbeing, learning, and ideas.
  • S-RM's Cyber Security division is the fastest-growing part of the company.
  • The cyber sector is always evolving, and Incident Response and Managed Services practices are in more demand than ever.
  • S-RM is quick to respond, innovate, and improve.
  • S-RM does not get too hung up on hierarchy or bureaucracy.
  • S-RM empowers employees to implement good ideas.
  • S-RM has a diverse team of intelligence analysts, technical specialists, software developers, investigators, risk managers, and more.
  • S-RM fosters a culture of equality, diversity, and inclusion.

Equal Opportunity

  • We nurture a culture of equality, diversity, and inclusion, and are dedicated to developing a workforce that reflects a variety of talents, experiences, and perspectives.