Threat Intelligence Lead
Canonical
The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.
This role will report to the CISO.
You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.
As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.
What you’ll do in this role
Build and own Canonical’s threat intelligence strategy
Build and maintain OSINT research environments
Develop OSINT tradecraft, principals, and techniques
Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets
Collaborate across teams to inform on activity of interest
Coordinate adversary/campaign tracking
Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space
Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies
Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence
Identify intelligence gaps and propose new tools and research projects to fill them
Conduct briefings for executives, internal stakeholders and external customers
The successful Threat Intelligence Lead will be
An experienced threat intelligence leader (or similar)
Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts
Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)
Able to identify, organise, catalogue, and track adversary tradecraft trends — often with incomplete data
Experienced using threat intelligence data to influence enterprise architecture or product development decisions
An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences
Able to travel twice a year, for company events up to two weeks long
Desired Characteristics
A professional portfolio of OSINT related scripts, tools, or frameworks
Demonstrated involvement in the larger OSINT community (please share relevant links)
Degree qualified, with a bachelor's degree in computer science, information security, or a related field
Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)
Experience in a tech company or government/military signal intelligence departments
What we offer you
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
Distributed work environment with twice-yearly team sprints in person
Personal learning and development budget of USD 2,000 per year
Annual compensation review
Recognition rewards
Annual holiday leave
Maternity and paternity leave
Employee Assistance Programme
Opportunity to travel to new locations to meet colleagues
Priority Pass, and travel upgrades for long haul company events
About Canonical
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer
We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
#LI-remote
$240k - $280k
Obsidian Security is the leading SaaS security platform, trusted by global enterprises like... ...to reduce risk, detect and respond to threats, and prevent breaches at the source.... ...IPO readiness.We're looking for a Threat Intelligence Lead to join our team and build the function...IntelligenceWork from home- A leading cybersecurity firm is seeking an experienced professional for managing Security Incident Response and Threat Hunting. The role requires over 8 years of experience in IT Security... ...specifically in Incident Response, Threat Intelligence, and Digital Forensics....IntelligenceRemote job
- ...You will join the Cyber Incident Response team, detecting and responding to threats, interacting with business stakeholders, and restoring operations. The role supports Threat Hunting, Intelligence, and Monitoring with content creation, threat analysis, detection...IntelligenceRemote job
- ...Responsibilities Track external threat actors, campaigns, tactics, and infrastructure across open and closed sources. Build... ...enrich threat data from internal systems, external feeds, and intelligence partnerships. Conduct on-chain analysis across blockchain activity...Intelligence
- ...The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and...IntelligenceFull timeLocal areaRemote workWorldwide
- An exciting remote-based opportunity has arisen for a Threat Intelligence Lead to join our Technology team, reporting to the Chief Information Security Officer. You will design and lead the company’s cyber threat intelligence (CTI), security testing and proactive threat...IntelligenceLocal areaRemote work
$204k - $284k
...experience defining and building global security intelligence and risk mitigation strategies. 10... ..., and delivering training. Lead a team of individuals, set and communicate... ...performance. Drive strategic planning of Threat Intelligence Analysis in support of broader...IntelligenceTemporary work$105.79k - $141.05k
.... The Role Black Lotus Labs has an opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving... ...maintain collaborative relationships with internal intelligence teams, law enforcement, and outside groups....IntelligenceTemporary workWork experience placementRemote workWork from home$132.23k - $176.31k
...The Role Black Lotus Labs has an opening for a Senior Lead Security Engineer that will leverage Lumen’s unique visibility... ..., and scale discovery of evolving malicious threats, provide mission‑relevant intelligence, and support mitigations on large networks. Our global...IntelligenceTemporary workWork experience placementRemote workWork from home- DescriptionSAIC is seeking a Policy and Proposal Lead to support multiple customers within the... ...Deputy Undersecretary of the Navy for Intelligence and Security (DUSN I&S) and Naval... ...companies to identify patterns, concerns, or threats aiding in efforts to identify foreign...IntelligenceWork at officeRemote work
- ...Title: Cyber Security Incident Response Lead Location: Texas (Teleworker) Clearance... ...-functional teams, and driving rapid threat containment and eradication. Ideal... ...response programs Knowledge of threat intelligence, threat hunting, and enterprise logging...IntelligenceFor contractorsRemote work
- About the Role:We are seeking a Lead, Cybersecurity Operations to play a critical role... ...leader responsible for overseeing threat detection, incident response, and continuous... ...end-to-end asset management, data-driven intelligence and performance benchmarking system; SmartEquip...IntelligenceFull timeWorldwide
- ...role, the Cybersecurity Awareness Program Lead will help build and deliver critical... ...timely microlearning aligned to current threats and business needs.Partner with teammates... ...coordination with Communications, GRC, Threat Intelligence, and regional security partners to keep...IntelligenceFull timeWork at officeLocal areaWork from homeRelocation package
$40 - $80 per hour
...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About... ...organizations detect, respond to, and contain real threats? We're looking for a seasoned Incident... ...systems Background in threat intelligence, purple teaming, or adversary simulation...IntelligenceHourly payOngoing contractContract workFreelanceRemote workFlexible hoursNight shift$157.43k - $208.43k
...software development, network engineering, intelligence, surveillance, and reconnaissance (ISR),... ...award**SOSi is seeking a Cybersecurity Lead to join our team in Fort Shafter, Hawaii... ...analyses to identify potential threats. Develop and execute strategies to mitigate...IntelligenceContract workCasual workWork at officeRemote work$112.8k - $257k
...:As a Security Operations Center (SOC) Task Lead, you’re in the middle of the action, responding to and mitigating threats in real time. You’re the first line of cyber... ...that analyze logs, forensic data, and threat intelligence. Using your deep understanding of our client...IntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work$149.21k - $197.55k
...software development, network engineering, intelligence, surveillance, and reconnaissance (ISR),... ...**SOSi is seeking a Virtual Environment Lead to join our team in Fort Shafter, Hawaii... ...and systems from vulnerabilities and threats.Plan and manage network projects, ensuring...IntelligenceContract workWork at officeLocal areaRemote work- ...Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional... ...including incident response methodologies and threat intelligenceFamiliarity with relevant... ...Security Service Provider.Threat Intelligence Platform (TIP) and importance of integrating...IntelligenceContract workFor contractorsLocal areaRemote work
- ...operations center background and want to lead others while working on interesting... ...passionate about leading incidents, performing threat hunting, and have a clear vision about... ...playbook development, building threat intelligence informed detections, and performing detailed...IntelligenceFull timeWork at officeRemote work
$86.8k - $198k
...deterrence and nuclear integration team, you’ll lead the analysis and coordination of our... ...insights in response to dynamic global threats.Join us. The world can’t wait. You Have:... ...advanced biometrics and artificial intelligence to ensure authenticity and protect against...IntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work$198k - $202k
Hire, mentor, and lead a geographically dispersed team of multi-disciplinary security professionals, insider threat analysts, technical investigators, and developers.Own the end... ...Program Operating Manual (NISPOM) and Intelligence Community Directives (ICDs).Minimum qualifications...IntelligenceFor contractorsLocal area$108k - $138.6k
...Alternate Locations: Newell Brands is a leading consumer products company with a portfolio... ...detection rules, correlation logic, and threat-based use cases aligned to MITRE ATT&CK... ..., Tenable, Wiz, and external threat intelligence feedsDocument all playbooks with runbooks...IntelligenceFull timeFor contractorsRemote work$220k - $292k
...operations.ABOUT THE JOBWe are looking for a Lead Mission Systems Software Engineer to... ...safely, respond to obstacles or threats, and execute complex missions with limited... ...third-party service provider provides risk-intelligence services that may include analysis of sanctions...IntelligenceFull timeWork experience placementWork at officeImmediate startRemote workFlexible hours- ...FLSA Status: ExemptJOB SUMMARYThe Security Lead is responsible for the City's... ..., physical security systems, artificial intelligence governance, risk and vulnerability management... ...posture and resilience against evolving cyber threats, and ensures compliance with applicable...IntelligenceContract workCasual workLocal areaRemote work
$120k - $130k
DescriptionControl Risks is seeking an experienced Intelligence Analyst to support the security, integrity... ...gaming ecosystem. This role will lead a team of intelligence analysts responsible for monitoring and assessing threats emerging risks, online narratives, and global...IntelligenceFull time$69.4k - $158k
...Security Officer (ISSO) on our team, you’ll lead the assessment of the Department of War'... ..., you’ll improve the client's threat posture. You’ll work to ensure the client... ...leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against...IntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work$112.9k - $257k
...Architect who knows how to develop the exact network the Intelligence Community needs. As the lead network architect for our team, you’ll use your... ...the nation’s defense and respond to evolving adversarial threats. You’ll be responsible for the design and implementation...IntelligenceFull timeContract workPart timeWork at officeLocal areaRemote work- ...today! We are seeking an experienced Lead Security Operations Analyst to join our... ..., incident detection, response, and threat hunting. In this role, you will serve as... ...behavior and emerging risks. Translate threat intelligence and attack techniques into actionable...IntelligenceRemote workHome officeFlexible hours
- ...Position Name: Team Lead Reports to: Client Technology Manager Department: Support... ...We value ownership, execution, growth, intelligence, and camaraderie. We are looking for... ...supporting Sophos or a similar endpoint threat-management solution. Basic understanding...IntelligenceFull timeWork at officeRemote work
- Recorded Future, a leader in cyber threat intelligence, is seeking an expert to own dark web ecosystem analysis. You will navigate underground... ...actionable intelligence for product and customers. You will lead with OPSEC discipline, collaborate across teams, and shape research...IntelligenceRemote job
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Threat Intelligence Lead. Be the first to apply!
- counter intelligence Remote
- artificial intelligence - machine learning intern Remote
- private intelligence Remote
- intelligence Remote
- military intelligence Remote
- intelligence specialist Remote
- signals intelligence Remote
- manager competitive intelligence Remote
- director competitive intelligence Remote
- entry level intelligence specialist


