Senior Cyber Threat Intelligence Analyst, Intel Delivery _corporate_fare_ Google _place_ London, UK; United Kingdom _laptop_windows_ Remote eligible Mid Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area. _info_outline_ XMust be a British citizen to meet customer and compliance requirements, including potential access to classified information.Note: Google's hybrid workplace includes remote and in-office roles. By applying to this position you will have an opportunity to share your preferred working location from the following: In-office locations: London, UK. Remote location(s): United Kingdom. Minimum qualifications: Bachelor's degree or equivalent practical experience. 5 years of experience in a cyber security role (e.g., CTI Analyst, Computer Forensics, Incident Response, Security Engineer) within regulated environments. Experience integrating CTI with security solutions (e.g., IDS, EDR, SIEM, SOAR) to inform vulnerability management and network defense strategies. Experience authoring and tailoring CTI reports (operational, and tactical) for audiences, from technical teams to executive leadership. Experience with CTI analysis, including leveraging frameworks (e.g., MITRE ATT&CK) and managing TIPs to drive detection. Active UK Security Check (SC) security clearance and eligibility to obtain UK Developed Vetting (DV) security clearance. Preferred qualifications: Master's degree in a related field or advanced certifications. Experience in SOC workflow optimisation, detection engineering, or automating intelligence processes to reduce mean-time-to-detect. Experience analyzing data from security controls (e.g., firewalls, packet captures, malware triage) and standard network logging formats. Experience leading or supporting cyber investigations, bridging the gap between intelligence and remediation. Experience of cross-sector information sharing and adherence to strict information managing protocols (e.g., traffic light protocol (TLP). About the job In this role you will support Mandiant's Advanced Intelligence Access (AIA) program. The AIA program enables customers, via an onsite Cyber Analyst, access to the totality of Mandiant's Threat Intelligence, including raw data. You will ensure the delivery of intelligence to each customer's security or operational environments in order to drive decision making and action. You will also acts as a conduit to Mandiant's extensive network of cyber security, threat intelligence, and information operations professionals. You will be delivering key support to a UK government client. You will serve as a cyber threat intelligence (CTI) technical specialist, empowering the customer's mission; primarily through its operations and CTI team. You will be backed by Mandiant's network of UK and global experts, supporting you with training, specialisms, access to industry-leading tooling and proprietary data to fuel the analysis. You will blend this reach with your technical tradecraft to help secure UK Public Sector, and deliver impact for wider HMG audiences. This position requires onsite client-facing work 3-4 days per week at central London customer location to support their CTI requirements and integrate to enable their public-sector focused cyber defence mission. Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. Responsibilities Track priority cyber threats, acting as an CTI center of experience, using frameworks like MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT and CK) and Kill Chain. Leverage Mandiant tools and data to answer customer request for information (RFI's). Support integration of CTI into customer's mission. Build processes for its application within varied cyber defence technology stacks, including SIEM and Threat Intelligence Platforms (TIP) systems (KQL, SPL, Sigma, Yara etc.). Perform tactical, and operational research and analysis of adversarial cyber threats, and author intelligence for HMG audiences. Present tactical and intelligence about threat groups, the methodologies and the motivations behind activity and convey the findings to audiences. Work with customers to plan their intelligence needs and requirements and prepare and deliver briefings and reports to the customers' executives, security team, and fellow analysts. Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google'sApplicant and Candidate Privacy Policy (./privacy-policy). Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See alsoGoogle's EEO Policy (https://www.google.com/about/careers/applications/eeo/) ,Know your rights: workplace discrimination is illegal (https://careers.google.com/jobs/dist/legal/EEOC\_KnowYourRights\_10\_20.pdf) ,Belonging at Google (https://about.google/belonging/), andHow we hire (https://careers.google.com/how-we-hire/). If you have a need that requires accommodation, please let us know by completing ourAccommodations for Applicants form (https://goo.gl/forms/aBt6Pu71i1kzpLHe2). Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting. To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also https://careers.google.com/eeo/ and https://careers.google.com/jobs/dist/legal/OFCCP_EEO_Post.pdf If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form: https://goo.gl/forms/aBt6Pu71i1kzpLHe2.