Director, Cyber Threat Intelligence (CTI)
BNY
Director, Cyber Threat Intelligence (CTI)
The Director, Cyber Threat Intelligence (CTI) leads an adversary-focused intelligence capability that enables proactive defense of BNY's global platforms, clients, and critical financial operations. This leader builds an all-source intelligence program that produces timely, decision-grade assessments; sets and manages intelligence requirements; and integrates CTI into detection engineering, incident response, vulnerability management, fraud, and executive risk decisions. The role operates with a high degree of discretion, rigor, and ethical judgment, and partners across internal teams and external intelligence communities.
Mission & outcomes
- Shift security from reactive to anticipatory defense by maintaining an accurate, current picture of the actors targeting BNY, their intent, capabilities, and evolving tactics.
- Improve resilience and risk prioritization by translating technical intelligence into business-relevant insights that influence controls, investment decisions, and operational readiness.
- Integrate intelligence into operational workflows so CTI measurably improves detection coverage, incident outcomes, patch/vulnerability prioritization, and fraud/abuse disruption.
- Provide credible executive and regulatory engagement through clear, defensible assessments and briefings aligned to enterprise risk appetite.
Key responsibilities
- Build and lead the CTI program : define the operating model (strategic, operational, tactical intelligence), establish analytic standards and tradecraft, and develop a high-performing team.
- Intelligence requirements & collection management : set Priority Intelligence Requirements (PIRs) aligned to BNY's highest-risk assets and business services; manage collection plans across internal telemetry and trusted external sources; ensure legal/ethical sourcing and handling.
- All-source analysis and production : produce actor profiles, campaign assessments, early-warning reporting, estimative intelligence, and post-incident intelligence that informs prevention and recovery.
- Operational integration : embed CTI into the SOC, detection engineering, threat hunting, incident response, vulnerability management, identity/access, and fraud teams; drive clear handoffs from intelligence to action.
- Executive communications : brief senior leaders with concise, decision-grade intelligence; communicate uncertainty, confidence levels, and recommended actions; maintain a clear linkage to business impact and operational risk.
- Cross-functional and global coordination : operate effectively across regions, time zones, and lines of business; coordinate in joint, interagency, and multinational-style environments with appropriate discretion.
- External intelligence partnerships : build and maintain trusted relationships with peer institutions, government and law-enforcement partners, and intelligence-sharing communities; represent BNY professionally and responsibly.
- Governance, metrics, and continuous improvement : establish KPIs that demonstrate CTI impact (detection improvements, time-to-triage, disruption outcomes, prioritization effectiveness); run after-action reviews and update requirements based on changing threats.
- Talent development : mentor analysts and leaders; build training paths, rotations, and tradecraft review; foster a culture of integrity, curiosity, and mission focus.
Operating model & key interfaces This role partners closely with the CISO organization, SOC/IR leadership, detection engineering, vulnerability management, fraud/financial crime, technology risk, and business continuity teams. Outputs are designed to be actionable—mapped to controls, detections, mitigations, and executive decisions. The leader is expected to operate with high discretion and strong information-handling discipline.
Qualifications (required)
- 12+ years of progressive experience in cyber threat intelligence, all-source intelligence, counterintelligence, national security, or closely related threat analysis roles, including leadership of analysts and/or intelligence programs.
- Demonstrated ability to define intelligence requirements, manage collection, and produce high-quality assessments that drive operational action (not just reporting).
- Strong analytic tradecraft: structured thinking, bias awareness, evidentiary rigor, and clear communication of confidence/uncertainty.
- Proven track record integrating CTI with security operations (SOC, threat hunting, incident response), detection engineering, and vulnerability management.
- Experience briefing senior executives and influencing risk decisions with concise, business-relevant intelligence.
- High integrity, sound judgment, and consistent discretion in handling sensitive information.
Qualifications (preferred)
- Experience in financial services, critical infrastructure, or other highly regulated environments with high availability and systemic risk considerations.
- Prior work in joint/interagency settings or with intelligence-sharing communities; experience building trusted external partnerships.
- Background spanning cyber and traditional intelligence disciplines (e.g., CI, SIGINT/HUMINT-driven analysis, strategic warning, collection management).
- Familiarity with common CTI frameworks and operationalization practices (e.g., ATT&CK mapping, intelligence requirements/PIRs, estimative language, analytic standards).
- Relevant certifications (examples): GIAC (GCTI, GCIA), CISSP, or equivalent; advanced degree in intelligence studies, cybersecurity, international relations, or related field.
- Ability to obtain and maintain a security clearance, if required for external partnership engagements.
Success profile
- Adversary-centric : thinks in terms of actors, intent, capability, access, and pathways to business impact.
- Action-oriented : turns intelligence into prioritized decisions, measurable control improvements, and operational outcomes.
- Calm under pressure : leads through incidents and ambiguous, fast-moving situations with disciplined judgment.
- Enterprise connector : builds alignment across security, technology, fraud/financial crime, and business stakeholders globally.
- Ethical and trusted : models discretion, integrity, and responsible intelligence handling in every interaction.
- ...Title Technical Manager of Cyber Risk Management Team Job... ...Cyber Risk and Resilience Directorate, enables organizations to achieve... ...challenges and emerging threats. The technical manager is responsible... ...• foundational artificial intelligence concepts and techniques •...CyberIntelligenceFull time
- ...controls, and defenses against emerging Fraud threats. Anticipate new Fraud vectors and... ...Partner closely with Risk, Compliance, Cyber, Legal, Operations, and Product teams to... ...hub of Fraud engineering expertise, intelligence, and best practices, enabling consistent...CyberIntelligence
- ...resilience of software systems and responding to sophisticated cyber threats. As AI becomes central to critical infrastructure, advancing... ...runs and tests, incident tickets, and more. Artificial Intelligence Security Software Engineers at the SEI use software and...CyberIntelligenceFull timePart timeRelocation packageFlexible hours
- ...bring to our solutions in the areas of cyber, cloud and enterprise security. Be a... ...This requires highly complex, cyberspace threat expertise to support increased demands for... ...support is communication between cyber, intelligence agencies, civil engineer, logistics,...CyberIntelligenceFull timeLocal areaImmediate start
$123.2k - $193.6k
...and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and... ...safeguard their data, and make their users more resilient against cyber-attacks. Leading organizations of all sizes, including more than...CyberFlexible hours- ...Security Operations Centers (SOCs), National Cyber Centers, and Computer Security Incident... ...analytical studies involving risk, threat, and security data. Work independently... ...evolving threats facing network security and intelligence organizations. Apply project planning...CyberIntelligenceFull timePart timeRelocation package
$175k - $210k
...and strengthen the company ’ s global cyber defense posture. The Deputy CISO acts... ...global Security Operations Center (SOC), threat intelligence, incident response, and digital... ...Experience reporting to the Board of Directors Strategic thinking and enterprise‑level...CyberIntelligenceFor contractorsWork at officeRelocationRelocation package- ...resilience of software systems and responding to sophisticated cyber threats. As AI becomes central to critical infrastructure, advancing... ...runs and tests, incident tickets, and more. Artificial Intelligence Security Software Engineers at the SEI use software and...CyberIntelligenceFull timePart timeWork experience placementRelocation packageFlexible hours
- ...an organization's computer systems, networks, and data from cyber threats. They monitor systems for security breaches, investigate violations... ...and decision-making abilities. ~ Familiarity with threat intelligence platforms and incident response. ~ Excellent communication...CyberIntelligenceLocal area
- ...join our team. KPMG is currently seeking an Associate Director, Presales Solution Architect - Cyber to join our KPMG Delivery Network organization.... ...core cyber capabilities such as incident management, threat detection, vulnerability management, and operational resilience...CyberH1bLocal area
$166.5k - $244.2k
...and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people... ...databases backing applications and services used by the Threat Intelligence team, including schema design, query optimization, migrations,...IntelligenceFlexible hours$146.2k - $261.4k
...Research Lead - AI Cyber Testing & Evaluation RAND's Center on AI, Security, and Technology... ...technologies—including artificial intelligence and biotechnology—to shape policies that... ...to develop rigorous and comprehensive threat models and identify potential system vulnerabilities...CyberIntelligenceWork experience placementRemote workWork from home- ...experience to continually cultivate a culture of intelligent risk taking. We want to hire versatile... ...business impact and strengthening cyber resilience. The PISE/IRC leads in the... .... Collaborate with SOC analysts, threat hunters, and system owners to analyze, contain...CyberIntelligencePermanent employmentFull timePart timeWork experience placementWork at office
$90.4k - $134.4k
...impact technologies-including artificial intelligence and biotechnology-to shape policies that... ...AI systems, understanding their cyber capabilities, and examining their policy... ...might lead projects to develop AI-specific threat models, build software tools for AI cyber...CyberIntelligenceFixed term contractWork experience placementRemote workWork from homeVisa sponsorship- ...and Detection is responsible for the dual mission of advanced threat detection capabilities and leading the charge during high-stakes... ...s global infrastructure. Framework Mapping: Utilize threat intelligence and the MITRE ATT&CK framework to identify gaps in visibility...Intelligence
$142.6k - $261.5k
...crises, widespread economic changes, regulatory reforms, and cyber threats. Organizations are increasingly seeking to establish, mature... ..., automate compliance, and deliver forward‑looking risk intelligence. As a member of our Risk Technology practice, you will...CyberIntelligenceWork experience placementSummer holidayWork at officeFlexible hours$132.5k - $338.3k
...privacy, responsible use of artificial intelligence, sustainability and ethics and compliance... ...RAG). Security Operations (SecOps) & Cyber Defense: Design and build solutions that... ...automated response workflows and leverage threat intelligence by using tools such as...CyberIntelligenceWork experience placementLive inWork at officeLocal area$100.22k - $111.18k
...software systems that support some of our nation’s core defense/intelligence services and systems. General Dynamics Mission Systems... ...Terraform, Terragrunt, or Packer Experience or familiarity with cyber security practices such as encryption, certificate/key management...CyberIntelligenceFor subcontractorWork at officeFlexible hours- ...structure, supply continuity, and innovation pipeline. The Director will play a critical role in shaping procurement strategy,... ...balancing cost, service, risk, and innovation Build deep market intelligence across feedstocks, supply-demand dynamics, and geopolitical...IntelligenceFor contractors
$90.4k - $168.2k
...disparate categories of risk, such as stability, operations, cyber, information handling, physical security, resiliency Build... ...Information Security and Privacy) and/or ISO42001 (Artificial Intelligence) evaluation of control, mitigating controls, identification of...CyberIntelligenceH1bLocal areaRemote work$127.01k - $158.76k
...ready for you. The Wounded Warrior Project (WWP) Alumni Director leads national strategy and operations for the Alumni program,... ...wounded warriors and their families. Demonstrated emotional intelligence with the ability to handle sensitive matters with diplomacy...IntelligenceTemporary workWork at officeWork from homeFlexible hoursAfternoon shift- ...arts business engineering science humanities computer science public policy information systems artificial intelligence ai and health About the Role The Company is seeking a Chief Advancement Officer (CAO) to lead its fundraising and...Intelligence
$104.8k - $149.3k
...technology advancements in software architecture and design, including embedded software architecture, containerization, cyber security, artificial intelligence and automation. Plan and chair formal design reviews to validate solutions, enforce quality standards, drive...CyberIntelligenceWork experience placementWorldwideRelocation package- ...Director/Managing Director High Yield Sales & Trading Citizens Capital Markets is seeking an experienced Director/Managing Director... ...real‑time market color, liquidity insight, and pricing intelligence to sales, syndicate, research, and banking teams. Evaluate...IntelligenceLocal areaMonday to Friday
- ...Job Title Security Specialist - Threat Intelligence Analyst Location PA-ARL - Pittsburgh, PA 15122 US (Primary) Job Description Fibertek is seeking a Security Specialist/Threat Intelligence Analyst to support our AI2C division in Pittsburgh, PA. The Analyst...IntelligenceFor contractorsLocal area
- ...Supply Chain, Medical Education, and Sales Training to enable strong commercial execution • Providing market insights, competitive intelligence, and business updates through regular business reviews • Supporting industry education programs, customer meetings and labs,...IntelligenceFlexible hours
- ...just creating software; we're pioneering a new era of warehouse intelligence. We've developed a groundbreaking, vision-powered platform... ...the Machine Learning and FPT teams, working closely with the Director of Cloud Engineering and Director of Autonomy. Cross-departmentally...Intelligence
- ...any time by replying STOP. To learn more, please visit Privacy Policy and Terms and Conditions. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These...IntelligenceFull timeWork at officeLocal areaRemote workFlexible hours
- ...Consulting – IT Strategy & CTO Advisory, Technology Delivery, Data & Artificial Intelligence, Software & Application: Development & Integration, SAP Consulting. Cybersecurity – Cyber Transformation Remediation, Cyber Defense & Recovery, Digital Identity, Audit & Incident...CyberIntelligenceFull timeWork at officeLocal areaWorldwideWork visa
- ...Electronics Technician 3 M.C. Dean is Building Intelligence. We design, build, operate, and maintain cyber-physical solutions for the nation's most mission-critical facilities, secure environments, complex infrastructure, and global enterprises. With over 7,000 employees...CyberIntelligenceApprenticeshipWork at officeLocal areaRelocation
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Cyber Threat Intelligence (CTI). Be the first to apply!
- director of culinary Pittsburgh, PA
- children's ministry director Pittsburgh, PA
- director of community outreach Pittsburgh, PA
- pathology director Pittsburgh, PA
- director of revenue integrity Pittsburgh, PA
- industrial director Pittsburgh, PA
- director of aviation Pittsburgh, PA
- director continuous improvement Pittsburgh, PA
- director estimating Pittsburgh, PA
- director of benefits Pittsburgh, PA


