Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Threat Intelligence Lead

Full-time

Canonical

The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.

This role will report to the CISO.

You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.

As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.

What you’ll do in this role

  • Build and own Canonical’s threat intelligence strategy

  • Build and maintain OSINT research environments

  • Develop OSINT tradecraft, principals, and techniques

  • Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets 

  • Collaborate across teams to inform on activity of interest

  • Coordinate adversary/campaign tracking

  • Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space

  • Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies

  • Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence

  • Identify intelligence gaps and propose new tools and research projects to fill them

  • Conduct briefings for executives, internal stakeholders and external customers

The successful Threat Intelligence Lead will be

  • An experienced threat intelligence leader (or similar)

  • Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts

  • Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)

  • Able to identify, organise, catalogue, and track adversary tradecraft trends — often with incomplete data

  • Experienced using threat intelligence data to influence enterprise architecture or product development decisions

  • An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences

  • Able to travel twice a year, for company events up to two weeks long

Desired Characteristics

  • A professional portfolio of OSINT related scripts, tools, or frameworks

  • Demonstrated involvement in the larger OSINT community (please share relevant links)

  • Degree qualified, with a bachelor's degree in computer science, information security, or a related field

  • Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)

  • Experience in a tech company or government/military signal intelligence departments

What we offer you

We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.

  • Distributed work environment with twice-yearly team sprints in person

  • Personal learning and development budget of USD 2,000 per year

  • Annual compensation review

  • Recognition rewards

  • Annual holiday leave

  • Maternity and paternity leave

  • Employee Assistance Programme

  • Opportunity to travel to new locations to meet colleagues

  • Priority Pass, and travel upgrades for long haul company events

About Canonical

Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004.​ Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.

Canonical is an equal opportunity employer

We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.

#LI-remote

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Threat Intelligence Lead in Remote vacancy
  • $240k - $280k

    Obsidian Security is the leading SaaS security platform, trusted by global enterprises like...  ...to reduce risk, detect and respond to threats, and prevent breaches at the source....  ...IPO readiness.We're looking for a Threat Intelligence Lead to join our team and build the function... 
    Intelligence
    Work from home

    Obsidian Security

    Palo Alto, CA
    1 day ago
  • A leading cybersecurity firm is seeking an experienced professional for managing Security Incident Response and Threat Hunting. The role requires over 8 years of experience in IT Security...  ...specifically in Incident Response, Threat Intelligence, and Digital Forensics.... 
    Intelligence
    Remote job

    Turtle Trax S.A.

    New York, NY
    1 day ago
  •  ...You will join the Cyber Incident Response team, detecting and responding to threats, interacting with business stakeholders, and restoring operations. The role supports Threat Hunting, Intelligence, and Monitoring with content creation, threat analysis, detection... 
    Intelligence
    Remote job

    First Citizens Bank

    Phoenix, AZ
    4 days ago
  •  ...Responsibilities Track external threat actors, campaigns, tactics, and infrastructure across open and closed sources. Build...  ...enrich threat data from internal systems, external feeds, and intelligence partnerships. Conduct on-chain analysis across blockchain activity... 
    Intelligence

    Polymarket

    Remote
    7 days ago
  •  ...The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and... 
    Intelligence
    Full time
    Local area
    Remote work
    Worldwide

    Canonical

    Remote
    13 days ago
  • An exciting remote-based opportunity has arisen for a Threat Intelligence Lead to join our Technology team, reporting to the Chief Information Security Officer. You will design and lead the company’s cyber threat intelligence (CTI), security testing and proactive threat... 
    Intelligence
    Local area
    Remote work

    Everywhen

    New York, NY
    3 days ago
  • $204k - $284k

     ...experience defining and building global security intelligence and risk mitigation strategies. 10...  ..., and delivering training. Lead a team of individuals, set and communicate...  ...performance. Drive strategic planning of Threat Intelligence Analysis in support of broader... 
    Intelligence
    Temporary work

    Google

    Washington DC
    2 days ago
  • $105.79k - $141.05k

     .... The Role Black Lotus Labs has an opening for a Lead Information Security Engineer who will support threat hunting, investigation, and discovery of evolving...  ...maintain collaborative relationships with internal intelligence teams, law enforcement, and outside groups.... 
    Intelligence
    Temporary work
    Work experience placement
    Remote work
    Work from home

    Lumen Technologies

    Fort Washington, MD
    1 day ago
  • $132.23k - $176.31k

     ...The Role Black Lotus Labs has an opening for a Senior Lead Security Engineer that will leverage Lumen’s unique visibility...  ..., and scale discovery of evolving malicious threats, provide mission‑relevant intelligence, and support mitigations on large networks. Our global... 
    Intelligence
    Temporary work
    Work experience placement
    Remote work
    Work from home

    Lumen Technologies

    Annapolis, MD
    4 days ago
  • DescriptionSAIC is seeking a Policy and Proposal Lead to support multiple customers within the...  ...Deputy Undersecretary of the Navy for Intelligence and Security (DUSN I&S) and Naval...  ...companies to identify patterns, concerns, or threats aiding in efforts to identify foreign... 
    Intelligence
    Work at office
    Remote work

    Science Applications International Corporation

    Arlington, VA
    1 day ago
  •  ...Title: Cyber Security Incident Response Lead Location: Texas (Teleworker) Clearance...  ...-functional teams, and driving rapid threat containment and eradication. Ideal...  ...response programs Knowledge of threat intelligence, threat hunting, and enterprise logging... 
    Intelligence
    For contractors
    Remote work

    Seneca

    United States
    5 days ago
  • About the Role:We are seeking a Lead, Cybersecurity Operations to play a critical role...  ...leader responsible for overseeing threat detection, incident response, and continuous...  ...end-to-end asset management, data-driven intelligence and performance benchmarking system; SmartEquip... 
    Intelligence
    Full time
    Worldwide

    RB Global

    Westchester, IL
    5 days ago
  •  ...role, the Cybersecurity Awareness Program Lead will help build and deliver critical...  ...timely microlearning aligned to current threats and business needs.Partner with teammates...  ...coordination with Communications, GRC, Threat Intelligence, and regional security partners to keep... 
    Intelligence
    Full time
    Work at office
    Local area
    Work from home
    Relocation package

    General Motors

    Warren, MI
    1 day ago
  • $40 - $80 per hour

     ...Incident Response Lead, Cyber Security $40-80/hr Remote Freelance CODING About...  ...organizations detect, respond to, and contain real threats? We're looking for a seasoned Incident...  ...systems Background in threat intelligence, purple teaming, or adversary simulation... 
    Intelligence
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours
    Night shift

    Alignerr

    United States
    5 days ago
  • $157.43k - $208.43k

     ...software development, network engineering, intelligence, surveillance, and reconnaissance (ISR),...  ...award**SOSi is seeking a Cybersecurity Lead to join our team in Fort Shafter, Hawaii...  ...analyses to identify potential threats. Develop and execute strategies to mitigate... 
    Intelligence
    Contract work
    Casual work
    Work at office
    Remote work

    SOSi

    Honolulu, HI
    5 days ago
  • $112.8k - $257k

     ...:As a Security Operations Center (SOC) Task Lead, you’re in the middle of the action, responding to and mitigating threats in real time. You’re the first line of cyber...  ...that analyze logs, forensic data, and threat intelligence. Using your deep understanding of our client... 
    Intelligence
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Huntsville, AL
    4 days ago
  • $149.21k - $197.55k

     ...software development, network engineering, intelligence, surveillance, and reconnaissance (ISR),...  ...**SOSi is seeking a Virtual Environment Lead to join our team in Fort Shafter, Hawaii...  ...and systems from vulnerabilities and threats.Plan and manage network projects, ensuring... 
    Intelligence
    Contract work
    Work at office
    Local area
    Remote work

    SOSi

    Honolulu, HI
    5 days ago
  •  ...Operations Center (CSOC) Incident Response (IR) Lead is a cybersecurity professional...  ...including incident response methodologies and threat intelligenceFamiliarity with relevant...  ...Security Service Provider.Threat Intelligence Platform (TIP) and importance of integrating... 
    Intelligence
    Contract work
    For contractors
    Local area
    Remote work

    Sherwin-Williams

    Cleveland, OH
    1 day ago
  •  ...operations center background and want to lead others while working on interesting...  ...passionate about leading incidents, performing threat hunting, and have a clear vision about...  ...playbook development, building threat intelligence informed detections, and performing detailed... 
    Intelligence
    Full time
    Work at office
    Remote work

    Crane

    Stamford, CT
    1 day ago
  • $86.8k - $198k

     ...deterrence and nuclear integration team, you’ll lead the analysis and coordination of our...  ...insights in response to dynamic global threats.Join us. The world can’t wait. You Have:...  ...advanced biometrics and artificial intelligence to ensure authenticity and protect against... 
    Intelligence
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  • $198k - $202k

    Hire, mentor, and lead a geographically dispersed team of multi-disciplinary security professionals, insider threat analysts, technical investigators, and developers.Own the end...  ...Program Operating Manual (NISPOM) and Intelligence Community Directives (ICDs).Minimum qualifications... 
    Intelligence
    For contractors
    Local area

    Google

    Reston, VA
    1 day ago
  • $108k - $138.6k

     ...Alternate Locations: Newell Brands is a leading consumer products company with a portfolio...  ...detection rules, correlation logic, and threat-based use cases aligned to MITRE ATT&CK...  ..., Tenable, Wiz, and external threat intelligence feedsDocument all playbooks with runbooks... 
    Intelligence
    Full time
    For contractors
    Remote work

    Newell Brands

    Atlanta, GA
    2 days ago
  • $220k - $292k

     ...operations.ABOUT THE JOBWe are looking for a Lead Mission Systems Software Engineer to...  ...safely, respond to obstacles or threats, and execute complex missions with limited...  ...third-party service provider provides risk-intelligence services that may include analysis of sanctions... 
    Intelligence
    Full time
    Work experience placement
    Work at office
    Immediate start
    Remote work
    Flexible hours

    Anduril Industries

    Quincy, MA
    1 day ago
  •  ...FLSA Status: ExemptJOB SUMMARYThe Security Lead is responsible for the City's...  ..., physical security systems, artificial intelligence governance, risk and vulnerability management...  ...posture and resilience against evolving cyber threats, and ensures compliance with applicable... 
    Intelligence
    Contract work
    Casual work
    Local area
    Remote work

    City of Roswell, GA

    Roswell, GA
    3 days ago
  • $120k - $130k

    DescriptionControl Risks is seeking an experienced Intelligence Analyst to support the security, integrity...  ...gaming ecosystem. This role will lead a team of intelligence analysts responsible for monitoring and assessing threats emerging risks, online narratives, and global... 
    Intelligence
    Full time

    Control Risks

    Los Angeles, CA
    4 days ago
  • $69.4k - $158k

     ...Security Officer (ISSO) on our team, you’ll lead the assessment of the Department of War'...  ..., you’ll improve the client's threat posture. You’ll work to ensure the client...  ...leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against... 
    Intelligence
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Laurel, MD
    1 day ago
  • $112.9k - $257k

     ...Architect who knows how to develop the exact network the Intelligence Community needs. As the lead network architect for our team, you’ll use your...  ...the nation’s defense and respond to evolving adversarial threats. You’ll be responsible for the design and implementation... 
    Intelligence
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    San Diego, CA
    4 days ago
  •  ...today!    We are seeking an experienced Lead Security Operations Analyst to join our...  ..., incident detection, response, and threat hunting. In this role, you will serve as...  ...behavior and emerging risks. Translate threat intelligence and attack techniques into actionable... 
    Intelligence
    Remote work
    Home office
    Flexible hours

    AGCO

    Duluth, GA
    4 days ago
  •  ...Position Name: Team Lead Reports to: Client Technology Manager Department: Support...  ...We value ownership, execution, growth, intelligence, and camaraderie. We are looking for...  ...supporting Sophos or a similar endpoint threat-management solution. Basic understanding... 
    Intelligence
    Full time
    Work at office
    Remote work

    Atlas Technica

    United States
    2 days ago
  • Recorded Future, a leader in cyber threat intelligence, is seeking an expert to own dark web ecosystem analysis. You will navigate underground...  ...actionable intelligence for product and customers. You will lead with OPSEC discipline, collaborate across teams, and shape research... 
    Intelligence
    Remote job

    Socket.dev

    Oklahoma City, OK
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Threat Intelligence Lead. Be the first to apply!