Threat Intelligence Lead

Threat Intelligence Lead

Full-Time 72000 - 88000 £ / year (est.) Home office (partial)
Anaplan

At a Glance

  • Tasks: Lead and shape Anaplan's Threat Intelligence function, driving strategy and threat hunting.
  • Company: Join a leading tech company focused on innovation and customer success.
  • Benefits: Inclusive culture, competitive salary, and opportunities for professional growth.
  • Other info: Diverse and inclusive workplace that values your unique contributions.
  • Why this job: Make a real impact in cybersecurity while working with top-tier clients.
  • Qualifications: Experience in threat intelligence, threat hunting, and incident response.

The predicted salary is between 72000 - 88000 £ per year.

At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market. Our customers rank among the who’s who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best-in-class platform.

Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebrating our wins - big and small. Supported by operating principles of being strategy-led, values-based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together!

Role Summary

As Anaplan's Threat Intelligence Lead, you will own and shape the company's Threat Intelligence function from the ground up. This is a senior, hands-on role at the heart of Anaplan's security organisation — you will set the TI strategy and lifecycle, build and mature the threat hunting programme, and act as the primary intelligence partner to the SOC, Product Security, and Incident Response teams. You'll be both a practitioner and a programme owner: conducting deep research, running hunts, building integrations, and presenting findings to CISO-level stakeholders.

Your Impact

  • Own and lead Anaplan's Threat Intelligence function - defining the TI strategy, lifecycle (planning, collection, processing, analysis, dissemination, and feedback), and operational cadence across the security organisation.
  • Manage and administer TI platforms and tooling, and drive their integration with the SOC, Product Security, and other security teams' existing solutions.
  • Own and mature Anaplan's threat hunting programme — designing and developing hunt methodologies, playbooks, and hypotheses for use across Security Operations and the broader security organisation, and executing hunts end-to-end.
  • Serve as the primary TI partner during active incidents — providing timely, actionable intelligence to the incident response team by researching adversary TTPs, campaigns, IOCs, and attribution to support triage and containment decisions.
  • Conduct structured threat intelligence research into threat actors, campaigns, and emerging risks relevant to Anaplan's threat landscape, producing intelligence products pitched appropriately for both technical teams and executive audiences.
  • Build and maintain integrations between TI platforms and existing security tooling (SIEM, SOAR, EDR/XDR), leveraging scripting and engineering skills to automate intelligence collection, enrichment, and dissemination workflows.
  • Author, contribute to, and validate detection content — including SIEM queries, hunt logic, and custom detection rules — informed by current threat intelligence and aligned to the MITRE ATT&CK framework.
  • Communicate threat intelligence findings, programme maturity updates, and emerging risk briefings clearly and confidently to senior and executive stakeholders, up to and including CISO level.

Your Qualifications

  • Deep understanding of what an effective Threat Intelligence function requires — including the intelligence lifecycle, operational cadence, and how TI integrates and delivers value across a security organisation.
  • Hands-on experience with commercial and open-source TI platforms and tooling, spanning threat intelligence aggregation, enrichment, and sharing.
  • Strong threat hunting experience — designing and executing structured, hypothesis-driven hunts using frameworks such as MITRE ATT&CK, and translating hunt findings into actionable detections.
  • Practical experience supporting incident response with threat intelligence — comfortable researching adversary tradecraft, attribution, and IOCs under time pressure alongside an IR team.
  • Engineering and scripting proficiency to build integrations, automate TI workflows, and develop or enhance hunt tooling.
  • Experience authoring detection content — including SIEM query languages and custom detection rule formats.
  • Solid working knowledge of SIEM, SOAR, and EDR/XDR platforms and how threat intelligence enriches their capabilities.
  • Ability to communicate complex intelligence clearly and confidently to senior and executive audiences, including CISO-level stakeholders, adapting technical detail to the audience's context.
  • Strong understanding of adversary tradecraft, threat actor groups, and the evolving threat landscape relevant to SaaS and enterprise environments.

Our Commitment to Diversity, Equity, Inclusion and Belonging (DEIB)

We believe attracting and retaining the best talent and fostering an inclusive culture strengthens our business. DEIB improves our workforce, enhances trust with our partners and customers, and drives business success. Build your career in a place where diversity, equity, inclusion and belonging aren’t just words on paper – this is what drives our innovation, it’s how we connect, and it contributes to what makes us a market leader.

We believe in a hiring and working environment where all people are respected and valued, regardless of gender identity or expression, sexual orientation, religion, ethnicity, age, neurodiversity, disability status, citizenship, or any other aspect which makes people unique. We hire you for who you are, and we want you to bring your authentic self to work every day! We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive equitable benefits and all privileges of employment. Please contact us to request accommodation.

Threat Intelligence Lead employer: Anaplan

Anaplan in Manchester is an exceptional employer that prioritises diversity, equity, and inclusion, fostering a collaborative work culture where every voice is valued. Employees benefit from continuous growth opportunities through professional development and access to cutting-edge BI tools, making it an ideal environment for those looking to make a meaningful impact in the field of data analytics.

Anaplan

Contact Details:

Anaplan Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Threat Intelligence Lead

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Anaplan, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Anaplan

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Anaplan. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Threat Intelligence Lead

Threat Intelligence Strategy
Threat Hunting Methodologies
Incident Response Support
Researching Adversary TTPs
Threat Intelligence Platforms
Scripting and Engineering Skills
Detection Content Authoring

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Anaplan insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Anaplan that you’re committed to staying ahead in the game.

How to prepare for a job interview at Anaplan

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Anaplan to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Anaplan.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.