Summary
Cognyte develops investigative intelligence solutions that help law enforcement, national security, and intelligence agencies identify and prevent criminal, terror, and security threats. The Threat Intelligence Analyst will research and analyze cyber threats across open, deep, and dark web sources, assess risks, and produce actionable intelligence for stakeholders. The role also supports customer intelligence requirements, investigations, reporting, onboarding, and client-facing activities.
Responsibilities
- Collect, research, and analyze threat intelligence from open, deep, and dark web sources, social media, forums, and commercial intelligence platforms
- Monitor and assess threat actors, cybercrime activity, vulnerabilities, malware campaigns, and emerging threats relevant to customer environments
- Correlate information from multiple sources to identify indicators, trends, risks, and actionable intelligence insights
- Produce high-quality intelligence reports, assessments, alerts, and briefings for internal and external stakeholders
- Support customer intelligence requirements through timely intelligence production and threat notification activities
- Apply analytical methodologies and intelligence tradecraft to develop accurate and defensible intelligence assessments
- Collaborate with product, engineering, security, and operational teams to support investigations, threat hunting, and intelligence-driven decision making
- Contribute to the continuous improvement of intelligence processes, collection programs, knowledge repositories, and reporting standards
- Deliver dedicated demos, value propositions, and remotely facilitate client onboarding, monthly touchpoint calls, and Quarterly Business Reviews to support renewal and cross-sell functions
- Provide Q&A and product feedback
Skills
- Bachelor's degree or Practical Engineer diploma in a relevant technical field, or equivalent professional experience
- 2-5 years of experience in threat intelligence, cybersecurity, intelligence analysis, investigations, or related disciplines
- Working knowledge of cyber threat intelligence methodologies, intelligence lifecycle concepts, and structured analytical techniques
- Experience conducting intelligence collection and research using OSINT, social media, dark web, and other publicly available sources
- Understanding of threat actors, cybercrime, malware, ransomware, phishing, social engineering, and common attack methodologies
- Familiarity with networking concepts, operating systems, internet protocols, and vulnerability management frameworks
- Strong analytical, critical-thinking, and problem-solving skills with the ability to produce actionable intelligence assessments
- Proactive, highly motivated team player with excellent communication skills, sound judgment, attention to detail, and a customer-focused mindset
- Exceptional SLA Management and Reporting Skills
- Hands-on troubleshooting skills with OS such as Linux / Unix / Windows Server
- Virtualization technologies in clusters configuration
- Experience with container orchestration and management using Kubernetes
- LAN network equipment configuration and integration
- Enterprise server hardware (e.g. Dell, Cisco, HP, Dell, Intel, IBM)
- Telecommunications protocols and technologies (GSM / GPRS / 5G / UMTS / 4G (LTE) / VoLTE)
- Analysis technology (Packet sniffing and capture. Data traffic and packet stream analysis tools)
- Scripting with languages such as, Python or PowerShell, for automation and system administration
Qualifications
Must Haves
- Bachelor's degree or Practical Engineer diploma in a relevant technical field, or equivalent professional experience
- 2-5 years of experience in threat intelligence, cybersecurity, intelligence analysis, investigations, or related disciplines
- Working knowledge of cyber threat intelligence methodologies, intelligence lifecycle concepts, and structured analytical techniques
- Experience conducting intelligence collection and research using OSINT, social media, dark web, and other publicly available sources
- Understanding of threat actors, cybercrime, malware, ransomware, phishing, social engineering, and common attack methodologies
- Familiarity with networking concepts, operating systems, internet protocols, and vulnerability management frameworks
- Strong analytical, critical-thinking, and problem-solving skills with the ability to produce actionable intelligence assessments
- Proactive, highly motivated team player with excellent communication skills, sound judgment, attention to detail, and a customer-focused mindset
- Exceptional SLA Management and Reporting Skills
- Hands-on troubleshooting skills with OS such as Linux / Unix / Windows Server
- Virtualization technologies in clusters configuration
- Experience with container orchestration and management using Kubernetes
- LAN network equipment configuration and integration
Nice to Haves
- Enterprise server hardware (e.g. Dell, Cisco, HP, Dell, Intel, IBM)
- Telecommunications protocols and technologies (GSM / GPRS / 5G / UMTS / 4G (LTE) / VoLTE)
- Analysis technology (Packet sniffing and capture. Data traffic and packet stream analysis tools)
- Scripting with languages such as, Python or PowerShell, for automation and system administration
Benefits