Threat Intelligence Lead

1 giorno fa


Rome, Italia Canonical A tempo pieno

OverviewThe Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.This role will report to the CISO.You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.What you'll do in this roleBuild and own Canonical's threat intelligence strategyBuild and maintain OSINT research environmentsDevelop OSINT tradecraft, principals, and techniquesIdentify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasetsCollaborate across teams to inform on activity of interestCoordinate adversary / campaign trackingContribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the spaceWork with product and engineering teams to explain cybersecurity threats and advise on mitigation strategiesWork with the OPSEC and IS team to help implement / update security controls prioritising cyber defenceIdentify intelligence gaps and propose new tools and research projects to fill themConduct briefings for executives, internal stakeholders and external customersThe successful Threat Intelligence Lead will beAn experienced threat intelligence leader (or similar)Knowledgeable about the current open source threat landscape and computer networking / infrastructure conceptsHighly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)Able to identify, organise, catalogue, and track adversary tradecraft trends — often with incomplete dataExperienced using threat intelligence data to influence enterprise architecture or product development decisionsAn excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiencesAble to travel twice a year, for company events up to two weeks longDesired CharacteristicsA professional portfolio of OSINT related scripts, tools, or frameworksDemonstrated involvement in the larger OSINT community (please share relevant links)Degree qualified, with a bachelor's degree in computer science, information security, or a related fieldCertifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)Experience in a tech company or government / military signal intelligence departmentsWhat we offer youDistributed work environment with twice-yearly team sprints in personPersonal learning and development budget of USD 2,000 per yearAnnual compensation reviewRecognition rewardsAnnual holiday leaveMaternity and paternity leaveEmployee Assistance ProgrammeOpportunity to travel to new locations to meet colleaguesPriority Pass, and travel upgrades for long haul company eventsAbout CanonicalCanonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.Canonical is an equal opportunity employerWe are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.J-18808-Ljbffr#J-18808-Ljbffr



  • Rome, Italia Canonical A tempo pieno

    A leading open source technology firm is seeking a Threat Intelligence Lead to develop and execute its threat intelligence strategy. This role involves understanding cyber threat actors, leading OSINT activities, and working with engineering teams to enhance cybersecurity. Candidates should have experience in threat intelligence, a degree in a related field,...


  • Rome, Italia Gruppo Maggioli A tempo pieno

    Location: Albano LazialeUn'azienda di cybersicurezza cerca un esperto in Cyber Threat Intelligence con almeno 5 anni di esperienza. Responsabile della gestione di programmi di Cyber Threat Intelligence e Incident Response. Richiede forti competenze in Digital Forensics, eccellenti capacità comunicative in italiano e inglese, e una certificazione...


  • Greater Rome Metropolitan Area, Italia Visibily A tempo pieno

    Visibily è un Managed Security Services Provider (MSSP) specializzato nella protezione continua delle infrastrutture digitali di aziende e organizzazioni. Offriamo soluzioni avanzate di sicurezza informatica gestita, combinando monitoraggio 24/7, threat intelligence, risposta agli incidenti e tecnologie all'avanguardia. Il nostro obiettivo è garantire la...


  • Rome, Italia Gruppo Maggioli A tempo pieno

    Un'azienda di cybersicurezza cerca un esperto in Cyber Threat Intelligence in Albano Laziale. Il candidato ideale deve avere almeno 5 anni di esperienza nella gestione di programmi di Cyber Threat Intelligence e Incident Response. Sono richieste forti competenze in Digital Forensics e capacità comunicative in italiano e inglese, oltre a una certificazione...

  • Security Engineer Ii

    1 giorno fa


    Rome, Italia Amazon A tempo pieno

    Overview A leading global technology firm is seeking a Security Engineer II to join their AWS Security team. The role involves conducting offensive security assessments, providing leadership within the team, and contributing to security tool development. Candidates must hold a Bachelor’s degree or relevant certifications and possess a current TS / SCI...

  • Security Engineer Ii

    1 giorno fa


    Rome, Italia Amazon A tempo pieno

    OverviewA leading global technology firm is seeking a Security Engineer II to join their AWS Security team. The role involves conducting offensive security assessments, providing leadership within the team, and contributing to security tool development. Candidates must hold a Bachelor’s degree or relevant certifications and possess a current TS / SCI...

  • Cyber Security Consultant

    3 settimane fa


    Rome, Italia agap2 Italia A tempo pieno

    Cyber Security Consultant OT – RomaConsulente Cyber Security con esperienza senior in sicurezza OT, focalizzato su protezione di infrastrutture critiche e ambienti industriali ICS/SCADA.1. Il tuo ruoloOpererai come Cyber Security Consultant specializzato in ambienti OTSupporterai clienti enterprise e industriali su progetti di sicurezza...

  • Cyber Security Consultant

    2 settimane fa


    Rome, Italia agap2 Italia A tempo pieno

    Consulente Cyber Security con esperienza senior in sicurezza OT, focalizzato su protezione di infrastrutture critiche e ambienti industriali ICSS/SCADA. 1. Il tuo ruoloOpererai come Cyber Security Consultant specializzato in ambienti OT Supporterai clienti enterprise e industriali su progetti di sicurezza avanzata Contribuirai all’analisi di minacce cyber...

  • Cyber Security Consultant

    3 settimane fa


    Rome, Italia agap2 Italia A tempo pieno

    Cyber Security Consultant OT – Roma Consulente Cyber Security con esperienza senior in sicurezza OT, focalizzato su protezione di infrastrutture critiche e ambienti industriali ICS/SCADA. 1. Il tuo ruolo Opererai come Cyber Security Consultant specializzato in ambienti OT Supporterai clienti enterprise e industriali su progetti di sicurezza avanzata...

  • Cyber Security Consultant

    3 settimane fa


    Rome, Italia agap2 Italia A tempo pieno

    Cyber Security Consultant OT/ICS con esperienza su infrastrutture critiche e ambienti industriali complessi. 1. Il tuo ruolo - Opererai come Cyber Security Consultant specializzato in sicurezza OT/ICS presso clienti enterprise e infrastrutture critiche - Contribuirai all’analisi, prevenzione e risposta a minacce cyber in contesti industriali -...