
CTI Analyst
Posted Sep 16

Posted Sep 16
This is a fully remote position, open to applicants in Texas.
• Collaborate with fellow CTI team members to provide operational coverage in CTI activities.
• Assist with ongoing intelligence monitoring, review of alerts, information requests, advisories, incident-response queries, active hunts, and additional operational CTI requirements.
• Record operational insights and convert them into actionable intelligence, hunting strategies, detection methods, or defensive measures.
• Investigate malware, threat actors, campaigns, infrastructure, attack techniques, and emerging threats pertinent to the organization.
• Generate actionable research documents, advisories, threat profiles, indicators, MITRE ATT&CK mappings, hunting hypotheses, queries, detection suggestions, and defensive recommendations.
• Focus research on real-world threats, observed activities, operational deficiencies, or established strategic priorities.
• Communicate significant discoveries to the team and pertinent stakeholders.
• Uphold technical rigor, source verification, analytical precision, and thorough documentation.
• Create, enhance, and sustain tools and automation that support CTI operations and malware or TTP research.
• Emphasize engineering tasks that address operational or research gaps while enhancing analytical quality, efficiency, or resilience.
• Authenticate and document tools and workflows for use, maintenance, and support by other members of the CTI team.
• A minimum of 3-5 years of practical experience in cyber threat intelligence, encompassing operational intelligence support and technical threat research.
• Strong capabilities in malware analysis, including both static and behavioral analysis, along with the ability to articulate attacker techniques and their defensive implications.
• Experience in researching threat actors, campaigns, and infrastructure; validating sources; and differentiating between observed facts and analytical evaluations.
• Competence in converting research into actionable intelligence, ATT&CK mappings, hunting queries, detection recommendations, and defensive guidance.
• Proficiency in scripting or programming for the development and maintenance of tools and automation for intelligence operations and research.
• Background in supporting incident response and threat hunting through timely and relevant intelligence.
• Excellent documentation and communication abilities, with the capability to present technical findings to diverse stakeholders.
• Ability to independently manage assigned tasks, communicate updates and obstacles, and share ongoing operational responsibilities within a team setting.
• Experience providing support for CTI within large enterprise, automotive, or manufacturing sectors.
• Familiarity with malware reverse engineering, threat infrastructure analysis, or detection engineering.
• Knowledge of threat intelligence platforms, security data sources, APIs, and automation workflows.
• Experience in enhancing collaborative research methods, operational processes, and tool maintainability.
• Competitive salary and comprehensive health benefits.
• Opportunities for professional growth and development.
• Flexible working arrangements and a supportive team environment.
• Access to the latest tools and technologies in cybersecurity.
Tenet Healthcare
Early Childhood Educators
Get handpicked remote jobs straight to your inbox weekly.