CSIS Intelligence Lead Analyst - Advanced Analytics and Cyber OSINT
$117.44k - $176.16kCiti Group
Job ID: 99795538880Posted: 2026-08-27Location: Charlotte, North Carolina, United StatesSalary: $117,440.00 - $176,160.00Category: Technology, Information Security, ProfessionalCompany: CitiWe're looking for a sharp, driven Intelligence Lead Analyst to join a team that doesn't just analyze intelligence — it builds the tools that collect it.In this senior-level role, you'll take ownership of maintaining and enhancing our link analysis frameworks while engineering in-house solutions to automate intelligence collection at scale. Your work will directly shape how we identify, pursue, and neutralize threats across one of the world's largest financial institutions.This role is fundamentally about two things: Cyber OSINT mastery and technical innovation. If you thrive at the intersection of intelligence analysis and software development, this is your opportunity.CSIS Intelligence Advanced Analytics and Cyber OSINT — Program DescriptionCiti Security and Investigative Services (CSIS) is a full-service security and investigative team that protects the assets, integrity, and reputation of Citi and its clients as the industry-leading provider of security, investigations, and intelligence. The CSIS Advanced Analytics and Cyber OSINT program delivers timely, actionable intelligence to Citi stakeholders through collection and analysis using both open-source and internal data sources, supporting complex financial crime investigations, cyber-enabled fraud matters, and high-risk security events. The program drives efficiencies through the creation, integration, and deployment of custom analytical tools and intelligence capabilities into the hands of analysts and investigators across the enterprise.Job Description: The Intelligence Senior Analyst is an senior-level position responsible for collection/analysis of IoCs and TTPs, maintaining and updating existing link analysis frameworks while also developing in-house solutions to automate intelligence collection. The primary objective of this role is to leverage Open Source Intelligence (OSINT) and development skills to build and operate advanced intelligence capabilities. While familiarity with the cyber domain is welcome, the core focus is on OSINT analysis and the creation of automated collection tools.Responsibilities:Fulfill cyber OSINT requests by applying advanced analysis tools and techniques to surface timely, actionable intelligence.Proactively anticipate gaps in our intelligence posture and develop innovative solutions, collaborating with internal and external stakeholders on open-source methodologies and tooling.Design (develop), implement, and maintain in-house solutions for collecting, processing, and analyzing open source data. Automate intelligence collection capabilities, leveraging existing link analysis frameworks and actively identifying and evaluating alternative solution providers. Apply in-depth disciplinary knowledge to triage, process, and analyze intelligence alerts, reports, and briefings. Engage in liaison activities with developers, intelligence communities, law enforcement, industry partners, peer financial institutions, and information sharing communities. Manage multiple projects simultaneously with a proactive, self-motivated approach, ensuring timely delivery of high-quality results while collaborating effectively with global teams. Complete the daily operational components of the intelligence mission. Assume an informal/formal mentor role within teams and assist with the coaching and training of new team members. Qualifications:6-10 years of relevant experienceShould have a working knowledge in one or more of the following areas: Advanced Persistent Threat, Third Party Risks/Threats, Cybercrime, Extremist Groups and Cyber Terrorists, Hacktivism, Distributed Denial of Service attacks, Fraud, Malware, Mobile ThreatsProven track record of operationalizing cyber threat intelligence — translating raw intelligence into detections, hunt packages, and risk-relevant reporting.Consistently demonstrates clear and concise written and verbal communicationProven influencing and relationship management skillsProven analytical skillsEducation:Bachelor’s degree/University degree or equivalent experienceMaster’s degree preferred (Advanced degree preferred, ideally in Computer Science, Cybersecurity, Information Security, or a related STEM discipline)Additional valued certifications include: CREST CCTIM, Recorded Future Certified Analyst, CISSP, CEH, or OSCP.Required Skills:Proficiency in the MITRE ATT&CK framework — mapping adversary TTPs, building hunt hypotheses, and driving detection coverage analysis.Hands-on experience with Threat Intelligence Platforms including Recorded Future, Mandiant Advantage, ThreatConnect, MISP, or OpenCTI.Experience with scripting and automation languages including Python, PowerShell, and Bash for intelligence collection, enrichment pipelines, and hunt tooling development.Advanced OSINT tradecraft including dark web monitoring, social media intelligence, infrastructure pivoting, and digital footprint analysis.Experience with link analysis platforms such as Palantir, Maltego, and i2 Analyst's Notebook, including building custom extractors, web scrapers, and automation workflows to support investigative and analytical tasks.Solid understanding of network forensics, log analysis, and reverse engineering in support of hunt operations.Working knowledge of malware analysis (static and dynamic) and adversary infrastructure analysis.Exceptional written and verbal communication skills with the ability to produce intelligence products for both technical and executive audiences, consistently demonstrating clarity, conciseness, and attention to detail.Proven influencing, relationship management, and analytical skills with a track record of driving outcomes across cross-functional teams.This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required.#LI-EL1------------------------------------------------------Job Family Group: Technology------------------------------------------------------Job Family:Information Security------------------------------------------------------Time Type:Full time------------------------------------------------------Primary Location:NC-CHARLOTTE (BALLANTYNE)------------------------------------------------------Primary Location Full Time Salary Range:$117,440.00 - $176,160.00In addition to salary, Citi’s offerings may also include, for eligible employees, discretionary and formulaic incentive and retention awards. Citi offers competitive employee benefits, including: medical, dental & vision coverage; 401(k); life, accident, and disability insurance; and wellness programs. Citi also offers paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays. For additional information regarding Citi employee benefits, please visit citibenefits.com. Available offerings may vary by jurisdiction, job level, and date of hire.------------------------------------------------------Most Relevant Skills Please see the requirements listed above.------------------------------------------------------Other Relevant Skills For complementary skills, please see above and/or contact the recruiter.------------------------------------------------------Anticipated Posting Close Date:Sep 02, 2026------------------------------------------------------Automated Processing and AIWe use automated processing, including artificial intelligence, for our legitimate business interests (or our reasonable and appropriate business purposes) to identify and align the candidate's skills and abilities with a specific job opening. Additionally, if you so choose, or consent, we can match your skills and abilities to other suitable roles at Citi.Importantly, all our hiring processes and decisions, including determining your suitability for a role, are conducted, checked, and decided by individuals. Our automated processing and AI do not involve relying on automatic or autonomous decision-making. Please refer to any Jurisdictional Considerations, with specific provisions for your country (where relevant) for further details.Illinois residents – AI Notice and Right------------------------------------------------------Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.View Citi’s EEO Policy Statement and the Know Your Rights poster.
$117.44k - $176.16k
...'re looking for a sharp, driven Intelligence Lead Analyst to join a team that doesn't just... ...fundamentally about two things: Cyber OSINT mastery and technical innovation... ...development, this is your opportunity.CSIS Intelligence Advanced Analytics and Cyber OSINT — Program...CyberFull time$114.08k - $218.03k
...currently seeking a talented Competitive Intelligence Analyst Lead to serve as a key business partner in... ...expert competitive intelligence analytical methodologies to address industry issues... ..., and data driven recommendations. Advanced skills in researching and analyzing market...SuggestedFull timeH1bWork at officeRemote workHome officeRelocation packageFlexible hours- ...seeking an experienced Principal Intelligence Analyst to join our advanced cyber intelligence capability.Accenture... ...deep industry expertise, advanced analytics, and threat intelligence capabilities... ...,300About AccentureAccenture is a leading global professional services...CyberFull timeWork experience placementLive inWork at officeLocal areaFlexible hoursShift work
$132.23k - $176.31k
...opening for a Senior Lead Security... ...mission-relevant intelligence, and support... ...computing cluster and analytic platforms,... ...Black Lotus Labs advanced security... .... Work with cyber operators, when... ...workflows that combine analyst expertise,... ...Experience using OSINT methods for investigation...CyberFull timeTemporary workWork experience placementWork at officeRemote work- ...benefits.Job SummaryThe Lead Cybersecurity... ...and Vulnerability Analyst serves as the... ...operation of Artificial Intelligence technologies... ...Security, Data & Analytics, AI Governance, Technology... ...AI Governance, Cyber Architecture, Enterprise... ...enhancement of advanced security...CyberFull timeWork experience placementWork at officeRemote workVisa sponsorship
$125k - $138k
...billing platforms. The role will focus on leading the management and expansion of systems... ...eBilling software.Legal Spend & Data Analytics•Leading a team who provide claim Law firm... ...Excellent team building, and coaching skills.•Advanced in MS Excel, MS Word, PowerPoint, and MS...Full timeWork at office$100k - $163k
...business group to develop and maintain a strong control environment leading to the early identification and sustainable mitigation of... ..., Identity and Access Management domain experienceStrong analytical and problem-solving skills with experience in data interpretation...CyberFull timeWork experience placementSecond job- About this role:Wells Fargo is seeking a Lead Risk Analytics Consultant (Lead Mortgage Valuation and Cash Flow Analytic) to join the Consumer... ...monitoring, forecasting, and executive decision-making.Advanced proficiency in SQL, Python, SAS, Power BI, and Tableau to extract...Full timeWork experience placement
- About this role:Wells Fargo is seeking a Lead Digital Product Manager to drive strategy... ....Partner with Engineering, Architecture, Cyber Security, Infrastructure, Risk, and Operations... ...engineering organizations.Leverage usage analytics, productivity insights, and developer...CyberFull timeWork experience placement
$114.1k - $268.18k
...excellent opportunities for individuals to advance their careers and expertise with KPMG.... ...opportunities, a world-class training facility, and leading market tools, we help our people continue... ...management coordination and oversight of Cyber Managed Services delivery of contracted...CyberH1bLocal area$100k - $196k
...About this role:Wells Fargo is seeking a Lead Technology Control Officer to support execution... ...Control. This role provides testing, advanced control assessment expertise, conducts... ...platforms, and partners with Technology, Cyber Security, Architecture, and Control Management...CyberFull timeWork experience placementSecond jobRelocation package$114.1k - $268.18k
...excellent opportunities for individuals to advance their careers and expertise with KPMG.... ...opportunities, a world-class training facility, and leading market tools, we help our people continue... ...management coordination and oversight of Cyber Managed Services delivery across multiple...CyberH1bLocal area- Wells Fargo is seeking a Lead Information Security Analyst to join the BISO organization.We are back in the... ...this type of work, understands cyber risk, and can quickly establish credibility... ...in this role requires strong analytical thinking, executive-level communication...CyberFull timeWork experience placementWork at officeRemote workVisa sponsorship3 days per week
- ...Intelligence Analyst (IA) - Analyst | Counterintelligence and Insider Threat... ...based on industry-leading practices. ProSidian services... ...communications, interpersonal, analytical, and coordination skills, and... ...the Contracting Officer in advance, is allowed, in accordance...Full timeWork at office
- ...clients shift to the New using leading-edge technologies on some of... ....You Are:As a Snowflake Advanced AI Solution Lead, you will design... ...and operationalize artificial intelligence and machine learning... ...Cortex AI - Cortex Agents, Cortex Analyst, Cortex SearchMinimum of 5 years...Full timeWork experience placementLive inWork at officeLocal areaShift work
$128.4k - $192.6k
...Incident Response, Threat Intelligence, Malware Analysis,... ...investigative efficiency and analytical effectiveness while... ..., Incident Response, Cyber Threat Hunting,... ...investigative reports.Leading investigations from evidence... ...professional with advanced, interdisciplinary knowledge...CyberTemporary workLocal area$82.6k - $162.8k
...protective measures, and advancing mission assurance... ...Security Consultant on the Cyber Defense & Resilience... ...to lead projects or workstreamsAbility... ...international relations, intelligence studies, engineering,... ...dependencies, resilience analytics, facial recognition or...CyberLocal areaVisa sponsorship$107.95k - $183.52k
...Process Automation Team Lead to join our HR Resource... ...from manual data entry to advanced automated processes.... ...Partnering with technology and analytics teams to monitor... ...land, maritime, space, and cyber, including advanced electronics, intelligence solutions, and dedicated...CyberFull timePart timeWork at officeLocal areaWorldwide3 days per week- ...are currently seeking a Cyber Security Threat Analyst (Onsite Hybrid) to join... ...role requires strong analytical skills, threat intelligence expertise, and the ability... ...sources, including OSINT, commercial threat intelligence... ...are one of the world's leading AI and digital...CyberWork experience placementWork at officeRemote workFlexible hours
- ...Job Description Senior eDiscovery Analytics Lead Employment Type: Full-Time, Experienced... ...notice of deficiencies. -Performs advanced analytics in Relativity. -Creates, troubleshoots... ....com #CJ We may use artificial intelligence (AI) tools to support parts of the...Full timeFlexible hours
$128.4k - $192.6k
...maintain SIEM detections, analytics, risk-based detections... ...mentor L1 and L2 SOC analysts on: Cloud attack... ...validation and triageProvide advanced escalation support to... ..., MITRE ATT&CK, cyber kill chain, and threat... ...GCIH)GIAC Cyber Threat Intelligence (GCTI)Splunk Certified...CyberFull timeTemporary workWork at office3 days per week$170k - $300k
...l Casualty, D&O, Fidelity Bond, Marine, Cyber, etc.) and management of captive insurance... ...-------------------Most Relevant Skills Analytical Thinking, Credible Challenge, Financial... ...processing, including artificial intelligence, for our legitimate business interests (...CyberFull timeLocal area- ...one of the fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR) practice is at the... ...capability, maturing the offering, and growing the practice.The Work:Lead enterprise recovery engagements during active cyber incidents,...CyberFull timeLive inWork at officeLocal areaShift work
- ...seeking a highly experienced and strategic Lead IT Enterprise Architect - Security to... ...system and Honeywell Technologies Forge intelligence layer. By combining the deep domain expertise... ....Support incident response architecture, cyber resilience planning, and business...CyberTemporary workMonday to FridayFlexible hours
$82.4k - $119.45k
...risk assessment, we’re advancing AI to move from insight to action—enabling intelligence that not only... ...in every relationship, lead with curiosity, champion... ...controlsExperience using data analytics tools (e.g., Excel,... ...with stakeholders across Cyber, Technology, Data, and...CyberFull time$134.5k - $265.1k
Position Summary Cyber Cloud Security - DevSecOps ManagerPosition... ...Security Manager, you will lead client engagements focused on... ...and developer workflows.Advance software supply chain security... ...preferred.Experience with at least 1 analytics/reporting platform, such as...CyberLocal areaWorldwideVisa sponsorship- A growing cyber-focused team is hiring multiple Data Modelers to help design and evolve... ...who combines strong coding ability with advanced quantitative thinking. You will work... ...distributed data processing and scalable analytics workflowsBackground in AI/ML, data science...Cyber
$105.4k - $207.8k
...Join Deloitte’s Cyber practice as a Cyber... ...Security Standard (PCI DSS)Leading deployment of log... ...security operations center analysts and threat detection... ...defend against advanced threats by... ...monitoring technology, data analytics, and threat intelligence capabilities. The team...CyberLocal areaVisa sponsorship$134.5k - $265.1k
...Summary Deloitte’s Cyber team helps clients... ...by applying advanced SOC engineering experience... ...be responsible for:Leading the design and... ...operations center (SOC) analysts and threat detection... ...technologies, data analytics, and threat intelligence capabilities. The team...CyberLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary As a Cyber Forward Deployed Engineer (FDE... ...professional relationshipsAbility to lead projects or workstreamsAbility... ...lifecycle.Exposure to search/analytics platforms (Elasticsearch/... ...of Kubernetes, GitOps, or advanced cloud-native patterns.Cloud certifications...CyberLocal areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CSIS Intelligence Lead Analyst - Advanced Analytics and Cyber OSINT. Be the first to apply!
- director competitive intelligence Charlotte, NC
- private intelligence Charlotte, NC
- signals intelligence Charlotte, NC
- military intelligence Charlotte, NC
- intelligence Charlotte, NC
- artificial intelligence - machine learning intern Charlotte, NC
- manager competitive intelligence Charlotte, NC
- intelligence specialist Charlotte, NC
- cyber insurance Charlotte, NC
- cyber sales Charlotte, NC



