Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Threat Intelligence Analyst role.
Rezi rewrites your resume against DS Smith's job description. Free.

Tailor your resume to this Threat Intelligence Analyst role.
Rezi rewrites your resume against DS Smith's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Threat Intelligence Analyst posting at DS Smith — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Threat Intelligence Analyst posting at DS Smith — free, in seconds.
About the Role
We are looking for a skilled and proactive Threat Intelligence Analyst to join our Information Security team. This role plays a critical part in protecting DS Smith's operations, data, and infrastructure by identifying, analysing, and communicating cyber security threats. You will help strengthen our security posture through actionable threat intelligence, advanced threat hunting, and hands-on incident response activities. Working closely with various teams, you will monitor the threat landscape, investigate potential cyber threats, and support the continuous improvement of our detection and response capabilities. Leveraging tools like Microsoft Sentinel and DarkIQ, you will provide timely intelligence to help the business stay ahead of emerging threats. A core focus is transforming threat intelligence into meaningful insights and practical actions to mitigate risks before they impact the organisation.
Responsibilities
- Monitor the global threat landscape for emerging cyber threats, vulnerabilities, and threat actor activity relevant to DS Smith and the manufacturing sector.
- Analyse intelligence from multiple sources, including OSINT, commercial feeds, industry sharing platforms, and dark web monitoring tools.
- Correlate external intelligence with internal security events using Microsoft Sentinel and Microsoft Defender.
- Develop and maintain advanced KQL queries to support threat hunting, detection engineering, and incident investigation activities.
- Produce actionable threat intelligence reports, threat actor profiles, IoCs, and executive briefings.
- Support and participate in incident response activities, from initial triage through containment, eradication, recovery, and post-incident review.
- Conduct forensic investigations and provide threat context during live security incidents.
- Collaborate with SOC teams, security architects, and technology stakeholders to strengthen detection and response capabilities.
- Contribute to the development of threat models, risk assessments, playbooks, and operational processes.
- Maintain awareness of evolving cyber threats, attack techniques, and trends impacting the manufacturing and logistics sectors.
Requirements
- Experience in cyber security, with a focus on threat intelligence, incident response, or security operations.
- Proven hands-on experience managing security incidents throughout the full incident response lifecycle.
- Strong understanding of cyber threats, threat actor behaviour, attack methodologies, and intelligence frameworks such as MITRE ATT&CK, the Diamond Model, and Cyber Kill Chain.
- Advanced knowledge of Microsoft Sentinel, Microsoft Defender, and KQL for threat hunting and investigation.
- Experience working with threat intelligence platforms and dark web monitoring solutions, such as DarkIQ or equivalent.
- Strong analytical skills with the ability to identify patterns and draw meaningful conclusions from complex datasets.
- Knowledge of malware analysis, phishing investigations, and infrastructure security principles.
- Experience with scripting and automation using PowerShell, Python, or similar technologies.
- Excellent communication skills, with the ability to translate technical findings into clear business-focused recommendations.
- A collaborative approach and desire to continuously improve security capabilities across the organisation.
- Relevant industry certifications such as GCTI, GTIA, SC-200, or equivalent.
- Experience within manufacturing, logistics, or industrial environments.
- Knowledge of OT/ICS security and threats affecting operational technology environments.
- Familiarity with GDPR, NIS2, and other relevant cyber security regulations.
Skills
- Threat Intelligence
- Incident Response
- Security Operations
- Microsoft Sentinel
- Microsoft Defender
- KQL
- Threat Hunting
- OSINT
- Dark web monitoring
- MITRE ATT&CK
- Diamond Model
- Cyber Kill Chain
- PowerShell
- Python
- Malware analysis
- Phishing investigations
- Infrastructure security
- OT/ICS security
Location
- DS Smith
Work Type
- Full-time
Experience Level
- Experienced
About the Company
- DS Smith is a global leader in sustainable packaging solutions.