About the job
The Cyber Threat Intelligence Team Lead is crucial in establishing and guiding a premier Cyber Intelligence program for a key client at Control Risks. This role entails crafting strategies, enhancing capabilities, and leading a dedicated team of security professionals to proactively identify, assess, and respond to cyber threats.
This position encompasses providing technical guidance and administrative oversight on all cybersecurity initiatives, ensuring the safeguarding of the client's systems, networks, and sensitive data. The Team Lead collaborates closely with technology and business stakeholders to integrate security considerations into all planning, development, and operational processes.
- Collaborate with client stakeholders to build, manage, and expand a Cyber Threat Intelligence Team from inception.
- Take charge of developing Standard Operating Procedures for threat intelligence operations, tailored to specific client activities and stakeholder needs, including tooling, reporting structures, and incident management outside regular hours.
- Oversee the management of the most severe and critical cybersecurity incidents, providing support to incident responders with timely reporting, updates, and investigations to facilitate effective incident response and crisis management.
- Mentor and train threat intelligence analysts, engineers, and threat hunters to enhance their skills and capabilities.
- Establish operational workflows, escalation protocols, and comprehensive playbooks.
- Supervise the triage of cybersecurity events, ensuring swift identification, investigation, and remediation.
- Coordinate incident response activities across IT, Legal, Risk, and other relevant stakeholders.
- Develop metrics, KPIs, and reporting frameworks to evaluate the effectiveness of the Security Operations Center (SOC).
- Lead proactive threat hunting initiatives to uncover potential compromises and undetected malicious activities.
- Integrate threat intelligence into SOC workflows and leverage insights to shape response and prevention strategies.
- Assess and optimize the client's technology stack, including SIEM, SOAR, EDR, and threat intelligence platforms.
- Drive ongoing enhancements in detection rules, automation, and response capabilities.
- Propose emerging tools and processes to elevate operational maturity.
- Conduct regular check-ins, offer coaching and feedback, manage performance reviews and improvement plans, and support career development for team members.
- Act as the primary liaison between team members and the ECS program management team, ensuring timely updates on programs and personnel, and maintaining quality control on client deliverables.
- Collaborate with the Talent Acquisition team in the hiring process to ensure team resources align with client expectations and program requirements.
- Lead onboarding efforts, manage logistics for offboarding, and ensure operational continuity during transitions.

