At a Glance
- Tasks: Lead and enhance our cyber threat intelligence capabilities to protect our business.
- Company: Join Hiscox, a leading international insurance group with a strong brand.
- Benefits: Enjoy hybrid working, competitive salary, and a commitment to diversity.
- Other info: Opportunity for career growth and mentoring junior analysts in a supportive culture.
- Why this job: Make a real impact by defending against cyber threats in a dynamic environment.
- Qualifications: Experience in cyber threat intelligence and excellent communication skills required.
The predicted salary is between 63000 - 77000 £ per year.
Build a brilliant future with Hiscox. Hiscox is a diversified international insurance group with a powerful brand, strong balance sheet and plenty of room to grow. Listed on the London Stock Exchange and headquartered in Bermuda, Hiscox has over 3,000 staff across 14 countries and 34 offices.
The Cyber Threat Intelligence Lead is responsible for leading and maturing the organisation’s threat intelligence capability and ensuring intelligence drives security strategy, investment decisions and operational priorities across the business. Acting as the senior subject matter expert for cyber threats, the role holder will deliver strategic, operational and tactical intelligence products, provide leadership across the Cyber Fusion Centre and influence senior stakeholders across Technology and the wider business.
The role holder will contribute directly to the development and maintenance of the cyber security strategy, ensuring it remains aligned to the evolving threat landscape. They will work closely with the Head of Cyber Fusion and Chief Resilience and Security Officer to identify emerging threats, assess organisational exposure and recommend strategic improvements.
You will play a pivotal role in defending our business from cyber threats. By continuously monitoring, analysing and actioning intelligence, you will be on the front line of protecting our business assets and interests from harm. The role is based in either York (UK) or Lisbon (Portugal) and is a permanent position. Travel to other team locations will be required as necessary.
Key Responsibilities
- Lead the end-to-end threat intelligence lifecycle and maintain intelligence requirements aligned to business objectives.
- Develop and maintain strategic, operational and tactical threat intelligence products.
- Provide regular threat briefings and intelligence updates to senior leadership and executive stakeholders.
- Contribute directly to the development and evolution of the Cyber Security Strategy.
- Act as the principal cyber threat intelligence advisor to the Head of Cyber Fusion and Chief Resilience and Security Officer.
- Develop threat-led action plans and influence remediation priorities across Technology and business functions.
- Embed a threat-led approach across vulnerability management, detection engineering, threat hunting, security architecture and incident response activities.
- Assess emerging threats, adversary activity, geopolitical developments and industry trends relevant to Hiscox.
- Develop and maintain intelligence sources, including OSINT, commercial intelligence feeds, industry partnerships and government engagement.
- Support major incident response activities through threat analysis, attribution assessments and remediation guidance.
- Build relationships with external intelligence sharing communities, government agencies and industry bodies.
- Present complex intelligence findings clearly to both technical and non-technical audiences.
- Drive understanding of the threat landscape across Technology Leadership and key business stakeholders.
- Coach and develop junior threat intelligence analysts and support future team growth.
- Establish threat intelligence methodologies, standards and quality controls.
Candidate Profile
- Experienced in cyber threat intelligence, cyber security operations, government intelligence, military intelligence or law enforcement environments.
- Strong understanding of the intelligence lifecycle and threat intelligence frameworks.
- Experience producing strategic intelligence assessments and executive-level briefings.
- Experience influencing senior stakeholders and driving security improvements through intelligence-led recommendations.
- Excellent analytical, research and critical thinking skills.
- Strong knowledge of threat actor tactics, techniques and procedures (TTPs).
- Experience mentoring or developing junior analysts.
- Excellent communication, presentation and stakeholder management skills.
- Experience within financial services or other regulated industries is desirable.
- Industry recognised certifications such as GCTI, CCTIM, GCFA, GREM, GPEN or equivalent are desirable.
Desirable experience
- Threat-intelligence-led detection and IOC operationalisation.
Diversity and flexible working at Hiscox
At Hiscox we care about our people. We hire the best people for the job, and we are committed to diversity and creating a truly inclusive culture, which we believe drives success. Working life does not always have to be in the office so we have introduced hybrid working to encourage a healthy work life balance. This hybrid working model is set by the team rather than the business to enable you to manage your own personal work-life balance.
Cyber Threat Intelligence Lead in York employer: Hiscox
Hiscox SA is an excellent employer, offering a dynamic work environment that fosters innovation and collaboration in the field of cyber security. With a hybrid work model, employees enjoy flexibility while benefiting from a comprehensive package that supports their professional growth and well-being. The company prioritises employee development and engagement, making it a rewarding place for those looking to make a meaningful impact in the realm of AI and risk protection.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Threat Intelligence Lead in York
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Hiscox, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Hiscox
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Hiscox. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Cyber Threat Intelligence Lead in York
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Hiscox insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Hiscox that you’re committed to staying ahead in the game.
How to prepare for a job interview at Hiscox
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Hiscox to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Hiscox.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.