Job Closed
This listing is no longer active.
We securely connect everything to make anything possible.
Protective Intelligence Analyst
Location
California + 4 moreAll locations: California | District Of Columbia | New York | North Carolina | Texas
Posted
39 days ago
Salary
$128.1K - $162.3K / year
Seniority
Senior
Job Description
Protective Intelligence Analyst
Cisco
• Monitor threats against Cisco executives and personnel via vendor intelligence feeds, law enforcement reports, and OSINT research, triaging and escalating based on an established risk matrix • Produce and deliver risk assessments and recommendations ahead of executive travel and perform active monitoring of intelligence feeds to mitigate travel disruptions and risks • Conduct security investigations and maintain awareness of persons of interest (POIs) and potential hostile actors • Draft recurring reports analyzing internal threat metrics, emerging security TTPs, and geopolitical, cyber, and physical threats that may impact leadership, assets, or operations • Contribute to ad-hoc advisories, presentations, and projects on executive security, internal risk, and travel risk management, collaborating with STO Global Security, Executive Protection teams, and partners • Coordinate with Cisco vendors, internal stakeholders, and public/private partners to refine tooling, configure intelligence feeds, and liaise on risk concerns • Provide on-site or remote intelligence support for corporate events, shareholder meetings, and high-profile engagements; assist with pre-event security planning
Job Requirements
- Bachelor’s degree in international relations, political science, intelligence studies, criminal justice, journalism or a related field
- 4+ years of Private Sector experience (or government) in an Intelligence Analysis or Investigations role supporting a Protective Intelligence function
- Strong understanding of protection protocols, industry standards, vendor relationships, and specialized terminology
- Experience utilizing OSINT tools to research and conduct online monitoring of threats towards principals/executives (OSINT tools: e.g. Factal, Ontic, AlertMedia, Everbridge, Silo, etc.)
- Experience monitoring executive travel movements and conducting pre-trip intel assessments
- Experience using behavioral threat assessment methodologies to evaluate persons of interest who are targeting principals/executives
- Ability to draft clear and concise threat assessments that follow analytic standards, tradecraft, and intelligence methodologies, and integrate complex geopolitical, security, and/or policy issues
- Prior experience supporting a corporate intelligence function and working with a wide array of stakeholders, such as Executive Protection, Corporate Security, and Travel/Event Teams
- Ability to read and write in a foreign language such as (but not limited to): Spanish, French, German, Portuguese, Arabic, Hindi, Polish, or Japanese
- Basic understanding of cybersecurity operations and insider threat analysis
- Proficiency with current open-source intelligence (OSINT) tools provided by Ontic, Factal, Flashpoint, or similar systems
- Excellent critical thinking, judgement, attention to detail, written and verbal communication, collaboration, and interpersonal skills
- A global perspective with the ability to work across and engage individuals and teams from different geographies, cultures, and backgrounds
- Familiarity with and membership in public-private partnership programs such as the Domestic Security Alliance Council (DSAC) and/or Overseas Security Advisory Council (OSAC)
Benefits
- medical, dental and vision insurance
- a 401(k) plan with a Cisco matching contribution
- paid parental leave
- short and long-term disability coverage
- basic life insurance
- 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees
- 1 paid day off for employee’s birthday
- paid year-end holiday shutdown
- 4 paid days off for personal wellness determined by Cisco
- 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees
- flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use
- 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours of unused sick time carried forward from one calendar year to the next
- optional 10 paid days per full calendar year to volunteer
- employees are also eligible to earn annual bonuses
Related Guides
Related Categories
Related Job Pages
More Threat Intelligence Specialist Jobs
Private Equity Intelligence Analyst – Part-time / Internship
GainOne platform to find, assess, and act on every opportunity.
• Profile and analyze companies by collecting and processing their financials and preparing overviews of business, market, ownership and M&A track records • Develop integrated views on platform and add-on deal opportunities for leading private equity clients across Europe, with our technology supporting and enriching your insights • Support research initiatives and learn about specific niche sectors that we analyze on a weekly basis • Assist with research side projects (e.g. long lists)
Senior Technical and Financial Crime Intelligence Analyst
ManulifeManulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better.
• Lead criminal risk initiatives by sourcing, validating, and integrating multi-channel intelligence • Develop and maintain dynamic dashboards using tools such as Power BI or Tableau • Apply advanced analytics (predictive modeling, trend analysis) to uncover criminal risk patterns • Collaborate with law enforcement and industry partners to ensure intelligence sharing • Champion data integrity through rigorous mapping, cleansing, and validation processes • Leverage systems, tools, open-source and social media sites to support investigations • Present intelligence initiatives and dynamic dashboards to Investigation leadership
Intelligence Analyst II
Flashpoint Venture CapitalSince 2012 we have invested in US and Western European tech companies originating from Europe and Israel
• Conduct secure, focused counter fraud research on DDW and Surface Web and provide expert analysis to fulfill Customer requests. • Produce quality intelligence reports that provide additional context to clients. • Leverage Flashpoint proprietary tools and systems to support assigned tasks. • Leverage external tools to synthesize data and enhance analysis/alerting services. • Synthesize raw data to assess information credibility and determine relevance to the client base. • Create keywords/patterns to highlight high signal data within Flashpoint tools. • Safely navigate virtual environments to support assigned tasks, following Flashpoint rules of engagement. • Conduct online collection activities and engage threat actors (TAs). • Present at community calls, document team-specific processes/procedures, and facilitate job-specific guidance for new and junior team members.
Cyber Threat Hunter
ASM ResearchIt is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Role Description The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development, and continuous gap analysis to identify and mitigate emerging threats before they materialize. Key Responsibilities - Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations. - Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity. - Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy. - Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps. - Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time. - Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors. - Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience. - Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact. - Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior. Qualifications - Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience. - 4 years of experience in cybersecurity or a closely related technical security role. - Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations. - Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity. - Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations. - Ability to support work in a U.S.-only staffing environment and satisfy any client-required background investigation or security requirements. Preferred Qualifications - Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+, CISM, or CompTIA CySA+. - Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments. - Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements. - Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership. Job Specific Skills - Threat hunting and anomaly detection. - Log correlation and security event analysis. - Packet capture analysis and data parsing. - Malware analysis, reverse engineering, and binary analysis. - Threat intelligence analysis and TTP identification. - Incident response documentation and reporting. - Detection engineering collaboration and monitoring enhancement support. Compensation Ranges Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees. EEO Requirements It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment. Physical Requirements The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions. Disclaimer The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.



