At a Glance
- Tasks: Lead a dynamic Cyber Threat Intelligence team and develop impactful services for clients.
- Company: Join KPMG, a leader in cyber security, dedicated to innovation and growth.
- Benefits: Enjoy opportunities for professional development, mentoring, and a collaborative work environment.
- Why this job: Be at the forefront of cyber security, making a real impact while growing your career.
- Qualifications: 7-10 years in intelligence roles, with strong leadership and analytical skills required.
- Other info: Fluency in languages like Russian or Mandarin is a plus; SC or DV clearance preferred.
The predicted salary is between 48000 - 84000 £ per year.
This job is brought to you by Jobs/Redefined, the UK\’s leading over-50s age inclusive jobs board.
Job description
Cyber Threat Intelligence (CTI) Manager
Role Summary
The KPMG Cyber Response and Recovery Services (CRS) and Cyber Defence Services (CDS) teams are growing, and a requirement has been identified for a Cyber Threat Intelligence (CTI) Manager to lead our growing CTI team. The CTI manager role will report directly to the capability lead for Cyber Response and Recovery and work closely with the capability leads for both CRS and CDS. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them understand and respond to that threat.
This is a hands-on role where you will lead development of CTI service lines and pursue new business opportunities and increase revenue growth. You will lead the CTI Cell and establish KPMG\’s position as a thought leader across cyber forums, delivering impactful reporting on leading CTI provider building on our trusted relationships to deliver a range of CTI services to clients across all coverage areas. You will be responsible for business development, and leading high quality and impactful CTI services to internal and external clients. You will manage a high-performing team working closely across CDS and CRS with opportunities to grow into service line leadership. The successful candidate is expected to oversee management of the full cyber threat intelligence lifecycle, contributing to a broad range of cyber-security incident cases and oversee the management of the CTI team.
In this role we are looking for a person who can demonstrate a strong pedigree in cyber threat intelligence. You will be expected to work alongside a number of incident response case managers, penetration testers and DFIR practitioners, as well as have the opportunity to work with, and learn from, the service leadership as part of your continuous development.
When not responding to incidents, you may be helping our clients to build their in-house CTI capabilities, which could include: building and developing CTI tools, authoring and adapting runbooks/playbooks and threat hunts, assessing the CTI maturity and assisting in table-top cyber-scenario exercises. When not engaged in client work, you will be helping to develop our own delivery capability, including operational efficiency, standard operating procedures, team learning and development, tooling and platforms, lab development and orchestration.
Key Responsibilities
Management and Leadership
- As KPMG\’s CTI Lead and SME, you will lead and grow a multi-disciplinary threat intelligence team to develop and deliver CTI services to KPMG clients initially as a CDS and CRS service and enabler. With a long term focus on integrating CTI processes within KPMG Cyber offerings including Cyber Risk and Cyber Strategy services.
- Lead the design and oversee threat actor tracking programs and campaign monitoring aligned with client sectors and risk profiles.
- Build and mature CTI capabilities in line with industry frameworks (e.g., MITRE ATT&CK, Diamond Model).
- Oversee CTI processes including requirement generation, collection management, analysis and reporting.
- Oversee development of TIP to integrate existing TI feeds and identify opportunities to exploit KPMG proprietary data.
- Use existing relationships with IC to establish and maintain relationships with threat-sharing communities (e.g., FS-ISAC, NCSC, JPCERT, ENISA).
- Lead resource management including mentoring of junior analysts, support professional development, and promoting intelligence tradecraft standards.
- Lead ongoing maturing of the CTI capability based on leading CTI maturity frameworks.
- Be responsible for ethical and regulatory compliance of CTI operations.
Business development
- Conduct business development activities to promote CTI services and promote revenue growth.
- Identify and pursue opportunities to integrate CTI into other KPMG services such as CRI, Cyber Risk and Maturity Assessments, vulnerability management, TPRM.
- Lead accreditation of the team to pursue opportunities in CBEST threat-led Red Team engagements.
- Build on your existing relationships within the sector to promote KPMG\’s reputation as a thought leader and build strong working relationships with UK and EU IC.
Service Delivery
- Lead development of CTI consultancy services for CTI maturity assessments and TOM.
- Lead CTI delivery in support of KPMG marketing, and fortnightly i-4 briefings.
- Lead development of threat intelligence products and services for CRS and CDS clients.
- Brief internal stakeholders, executive boards, and external clients on threat trends and intelligence-driven defence postures.
Essential Skills and Experience
- Current or eligible for SC or DV clearance for UK government client work.
- CREST CTI Manager qualification or equivalent.
- Demonstrable leadership experience building and managing CTI teams in high risk organizations such as FS, CNI or healthcare, experience working in a large consultancy would be preferable.
- 7-10+ years in intelligence roles within government and private sector, with 3-5+ years in a CTI-focused role.
- Deep understanding of threat actors, cybercrime ecosystems, and nation-state campaigns with deep expertise of at least one of the above.
- Strong working knowledge of structured analytical techniques, strong analytical and structured thinking, with attention to detail in reporting and assessments.
- STIX/TAXII, MITRE ATT&CK, and TIP/SIEM integration.
- Excellent written and verbal communication skills-able to brief both technical and non-technical audiences.
- Proven client-facing experience, ideally in consultancy, financial services, or defence.
Preferred Skills
- Fluency in one of the following languages and regional knowledge of China, Russian, or Iranian.
- Experience in intelligence-led threat modelling and risk prioritisation.
- Familiarity with malware analysis, adversary infrastructure tracking, and TTP mapping.
- Understanding of geopolitical threat contexts and regional cyber capabilities.
- Knowledge of threat hunting methodologies and red/purple teaming concepts.
- Experience supporting incident response or crisis communications.
- Language skills (e.g., Russian, Mandarin, Arabic, Farsi) considered a strong asset.
Qualifications
Required:
- Bachelor\’s degree in Intelligence Studies, international politics or war studies or significant (10+ years) in intelligence roles.
- Certifications such as:
– GIAC Cyber Threat Intelligence (GCTI)
– CREST Certified Threat Intelligence Analyst (CCTIA)
– CISSP, GOSI, or equivalent
Desirable:
- Master\’s degree in Cybersecurity, International Security, or a related discipline.
#J-18808-Ljbffr
Cyber Threat Intelligence [CTI] - Manager employer: KPMG United Kingdom
Contact Detail:
KPMG United Kingdom Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Threat Intelligence [CTI] - Manager
✨Tip Number 1
Network with professionals in the cyber threat intelligence field. Attend industry conferences, webinars, and local meetups to connect with potential colleagues and mentors. Building relationships can lead to insider knowledge about job openings and valuable recommendations.
✨Tip Number 2
Stay updated on the latest trends and developments in cyber threat intelligence. Follow relevant blogs, podcasts, and social media accounts to demonstrate your passion and knowledge during interviews. This will help you stand out as a candidate who is genuinely engaged in the field.
✨Tip Number 3
Consider obtaining certifications that are highly regarded in the industry, such as the GIAC Cyber Threat Intelligence (GCTI) or CREST Certified Threat Intelligence Analyst (CCTIA). These credentials can enhance your profile and show your commitment to professional development.
✨Tip Number 4
Prepare for interviews by practising how to articulate your experience with threat intelligence tools and methodologies. Be ready to discuss specific projects where you've successfully identified threats or improved processes, as this will showcase your hands-on expertise.
We think you need these skills to ace Cyber Threat Intelligence [CTI] - Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in cyber threat intelligence. Focus on your leadership roles, specific projects you've managed, and any certifications that align with the job description.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cyber security and detail how your background makes you a perfect fit for the CTI Manager role. Mention specific achievements that demonstrate your ability to lead a team and develop CTI services.
Highlight Relevant Skills: Clearly outline your skills related to threat actor tracking, analytical techniques, and client-facing experience. Use examples from your past work to illustrate your expertise in these areas.
Showcase Continuous Development: Mention any ongoing training or professional development you are pursuing in the field of cyber threat intelligence. This shows your commitment to staying current in a rapidly evolving industry.
How to prepare for a job interview at KPMG United Kingdom
✨Showcase Your Leadership Skills
As a CTI Manager, you'll be leading a team, so it's crucial to demonstrate your leadership experience. Prepare examples of how you've successfully managed teams in high-pressure environments, focusing on your ability to mentor and develop junior analysts.
✨Understand the Cyber Threat Landscape
Familiarise yourself with current cyber threats, threat actors, and the latest trends in cybercrime. Be ready to discuss specific case studies or incidents you've dealt with, showcasing your analytical skills and understanding of the cyber threat ecosystem.
✨Highlight Business Development Experience
Since the role involves business development, prepare to discuss your experience in promoting services and driving revenue growth. Think of specific strategies you've implemented in the past that have led to successful client engagements or new business opportunities.
✨Communicate Effectively
You'll need to brief both technical and non-technical audiences, so practice articulating complex concepts in simple terms. Prepare to explain your previous work in a way that highlights its relevance to KPMG's clients and their needs.