About the Role
We are looking for a Threat Intelligence Engineer to join our Information Security team. In this role, you will operationalize intelligence and build engineering solutions to counter emerging security threats, working closely with various security and technology teams to integrate threat data into our security infrastructure and protect the organization.
Responsibilities
- Support the day-to-day operations of the cyber threat intelligence (CTI) program by managing threat feeds, parsing indicators of compromise (IOCs), and ensuring data quality across our platforms.
- Analyze emerging threats and adversary tactics, techniques, and procedures (TTPs) to help engineer robust detection and prevention mechanisms.
- Collaborate with our Global Security Operations Center (GSOC), Detection Engineering, and Incident Response teams to ingest and operationalize threat intelligence into our SIEM, EDR, and firewalls.
- Build and maintain API integrations, scripts, and playbooks to automate indicator ingestion, correlation, and dissemination across security platforms.
- Assist in the deployment, configuration, maintenance, and tuning of our Threat Intelligence Platforms (TIP) and related security engineering tools.
- Assist in generating timely intelligence alerts, briefs, and tactical reports for technical teams to provide context around active threats.
Requirements
- 2-4 years of experience in cybersecurity, with at least 1-2 years focused on threat intelligence, security engineering, or security operations (SOC).
- A solid understanding of network fundamentals, operating system internals, common attack vectors, and the general cyber threat landscape.
- Experience working with APIs, data formats (JSON, XML, STIX/TAXII), and systems integration to streamline security workflows.
- The ability to analyze data from various sources (e.g., open-source intelligence, technical reports, internal logs) to draw technical conclusions and identify malicious activity.
- Familiarity with common threat intelligence and security frameworks like MITRE ATT&CK and the Cyber Kill Chain.
- Strong written and verbal communication skills, with the ability to document engineering processes and communicate threat findings clearly.
- Hands-on experience with security information and event management (SIEM) systems, threat intelligence platforms (TIPs), or EDR solutions.
Skills
- APIs
- JSON
- XML
- STIX/TAXII
- SIEM
- TIPs
- EDR
- Python
- PowerShell
- Bash
- AWS
- Azure
- GCP
- Malware analysis
- Reverse engineering
Location
- Ontario
Work Type
- Regular, full-time
Experience Level
- 2-4 years of experience in cybersecurity
- 1-2 years focused on threat intelligence, security engineering, or security operations (SOC)
Education Level
- CompTIA Security+/CySA+
- GIAC (GSEC, GCTI)
- Similar intermediate credentials
Salary/Compensations
- $71,400 - $105,660 per year
Benefits
- Medical
- Dental
- Vision
- Pension plan
- Employee stock purchase plan
- Commuter benefits
- In-house wellness program
- Broad learning & development opportunities
- Charitable giving platform with company match
- Fitness allowance
- Employee discount programs
- Free games & events
- Stocked pantries
- Basic life insurance coverage
- 14 paid holidays per calendar year
- Paid vacation time per calendar year (ranging from 15 to 25 days) or eligibility to participate in the Company’s discretionary time off program
- Up to 10 paid sick days per calendar year
- Paid parental and compassionate leave
- Wellbeing programs for mental health and other wellness support
- Family planning support through Maven
About the Company
- Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe.
- The Company develops and publishes products principally through Rockstar Games, 2K, Private Division, and Zynga.
- Our products are currently designed for console gaming systems, PC, and Mobile, including smartphones and tablets, and are delivered through physical retail, digital download, online platforms, and cloud streaming services.
- The Company’s common stock is publicly traded on NASDAQ under the symbol TTWO.
- While our offices (physical and virtual) are casual and inviting, we are deeply committed to our core tenets of creativity, innovation and efficiency, and individual and team development opportunities.
- Our industry and business are continually evolving and fast-paced, providing numerous opportunities to learn and hone your skills.
- We work hard, but we also like to have fun and believe that we provide a great place to come to work each day to pursue your passions.
Equal Opportunity
- As an equal opportunity employer, Take-Two Interactive Software, Inc. (“Take-Two”) is committed to fostering and celebrating the diverse thoughts, cultures, and backgrounds of its talent, partners, and communities throughout its organization.
- Consistent with this commitment, Take-Two does not discriminate or retaliate against any employee or job applicant because of their race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, and genetic information (including family medical history), or on the basis of any other trait protected by applicable law.
- We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
