Threat Intelligence Lead

vor 2 Wochen


Sydney, Österreich Canonical Vollzeit

Join to apply for the Threat Intelligence Lead role at Canonical Continue with Google Continue with Google 3 months ago Be among the first 25 applicants Join to apply for the Threat Intelligence Lead role at Canonical Get AI-powered advice on this job and more exclusive features. Sign in to access AI-powered advices Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google Continue with Google The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.This role will report to the CISO.You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.What you'll do in this roleBuild and own Canonical's threat intelligence strategy Build and maintain OSINT research environments Develop OSINT tradecraft, principals, and techniques Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets Collaborate across teams to inform on activity of interest Coordinate adversary/campaign tracking Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence Identify intelligence gaps and propose new tools and research projects to fill them Conduct briefings for executives, internal stakeholders and external customers The successful Threat Intelligence Lead will beAn experienced threat intelligence leader (or similar) Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.) Able to identify, organise, catalogue, and track adversary tradecraft trends — often with incomplete data Experienced using threat intelligence data to influence enterprise architecture or product development decisions An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences Able to travel twice a year, for company events up to two weeks long Desired CharacteristicsA professional portfolio of OSINT related scripts, tools, or frameworks Demonstrated involvement in the larger OSINT community (please share relevant links) Degree qualified, with a bachelor's degree in computer science, information security, or a related field Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc) Experience in a tech company or government/military signal intelligence departments What we offer youWe consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.Distributed work environment with twice-yearly team sprints in person Personal learning and development budget of USD 2,000 per year Annual compensation review Recognition rewards Annual holiday leave Maternity and paternity leave Employee Assistance Programme Opportunity to travel to new locations to meet colleagues Priority Pass, and travel upgrades for long haul company events About CanonicalCanonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.Canonical is an equal opportunity employerWe are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function Job function Information Technology Industries Software Development Referrals increase your chances of interviewing at Canonical by 2x Sign in to set job alerts for “Threat Intelligence Lead” roles. Continue with Google Continue with Google Continue with Google Continue with Google We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr



  • Council of the City of Sydney, Österreich Proofpoint Vollzeit

    Threat Intelligence Analyst – Proofpoint Join Proofpoint as a Threat Intelligence Analyst in our global team focused on protecting organizations worldwide. About Us Proofpoint is the leader in human‑centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on our cloud‑based solutions to stop targeted threats, safeguard...


  • Council of the City of Sydney, Österreich Control Risks Vollzeit

    Control Risks is seeking a Researcher to join its growing Online Threat Intelligence team, based in Sydney. This is a unique opportunity to work in a team of threat intelligence experts and conduct research on open sources and deep and dark web venues and produce bespoke written analysis. Tasks and Responsibilities Research and production Conduct manual and...


  • Council of the City of Sydney, Österreich Control Risks Vollzeit

    Control Risks is seeking a Researcher to join its growing Online Threat Intelligence team, based in Sydney. This is a unique opportunity to work in a team of threat intelligence experts and conduct research on open sources and deep and dark web venues and produce bespoke written analysis. Tasks And Responsibilities Conduct manual and automated searches to...


  • Council of the City of Sydney, Österreich Commonwealth Bank Vollzeit

    Your Role As an operational cyber threat intelligence analyst, you will play a crucial role in contributing to safeguarding practices for our customers, colleagues, and communities against known and unknown cyber threats. Part of a world class, motivated, and highly skilled team of intelligence specialists, you will be involved in researching, analysing, and...


  • Council of the City of Sydney, Österreich Commonwealth Bank Vollzeit

    Your Role As an operational cyber threat intelligence analyst, you will play a crucial role in contributing to safeguarding practices for our customers, colleagues, and communities against known and unknown cyber threats. Part of a world class, motivated, and highly skilled team of intelligence specialists, you will be involved in researching, analysing, and...


  • Council of the City of Sydney, Österreich Control Risks Vollzeit

    A security consultancy in Sydney is seeking a Researcher for its Online Threat Intelligence team. The role involves conducting research on threats from various sources, producing written analysis, and requires proficiency in Mandarin. Ideal candidates will have strong knowledge of open-source intelligence and threat analysis. This position offers a unique...

  • Security Engineer

    vor 3 Wochen


    Council of the City of Sydney, Österreich Snap Inc. Vollzeit

    Snap Inc ( is a technology company. We believe the camera presents the greatest opportunity to improve the way people live and communicate. Snap contributes to human progress by empowering people to express themselves, live in the moment, learn about the world, and have fun together. The Company’s three core products are Snapchat ( , a visual messaging app...


  • Council of the City of Sydney, Österreich Commonwealth Bank Vollzeit

    A major financial institution in Australia is seeking an operational cyber threat intelligence analyst to safeguard their customers and communities. You will analyze threat data and provide actionable intelligence while collaborating with cyber defense teams. The ideal candidate has experience in cyber threat intelligence and strong analytical skills. This...


  • Council of the City of Sydney, Österreich CrowdStrike Vollzeit

    A global cybersecurity leader is seeking a highly motivated Senior Analyst to join their Counter Adversary Operations team. This role involves threat hunting to protect organizations from advanced attackers, as well as building lasting partnerships with customers through actionable threat intelligence. Candidates should have significant experience in...


  • Council of the City of Sydney, Österreich Control Risks Vollzeit

    A business consulting firm in Sydney is seeking a Researcher to join their Online Threat Intelligence team. As a Researcher, you will conduct research on open sources and produce written analysis to address client threats. The role requires proficiency in open-source intelligence collection and Mandarin, along with strong attention to detail. This is a...