Threat Intelligence Engineer

Take-Two Interactive

Toronto

On-site

CAD 71,000 - 106,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare benefits
Employee stock purchase plan
Commuter benefits
Wellness program
Learning & development

Job summary

Take-Two Interactive Software, Inc. in Ontario is seeking a Threat Intelligence Engineer to join our security team. You will help operationalize intelligence, ingest threat data into our security stack, and strengthen defenses across labs and production environments.

Collaborate with GSOC, Detection Engineering, and Incident Response to deploy and tune TIPs, SIEMs, and EDRs. Experience with APIs, JSON/XML, and MITRE ATT&CK is ideal; strong communication and problem-solving are essential.

Qualifications

  • 2–4 years in cybersecurity with 1–2 years in threat intelligence or security operations.
  • Solid understanding of networks, OS internals, and common attack vectors.
  • Experience with APIs, data formats (JSON, XML, STIX/TAXII), and systems integration.

Responsibilities

  • Support day-to-day CTI program operations, manage threat feeds and IOCs.
  • Analyze threats and TTPs to strengthen detection and prevention.
  • Collaborate with GSOC, Detection Eng, and IR to ingest intel into SIEM/EDR/firewalls.
  • Build and maintain API integrations and playbooks to automate ingestion and dissemination.
  • Assist in deploying and tuning Threat Intelligence Platforms (TIPs) and related tools.
  • Produce timely intelligence alerts, briefs, and tactical reports for technical teams.

Skills

Threat intelligence
SIEM
EDR
APIs
Data analysis
TTPs

Tools

SIEM
EDR
TIPs

Job description

WHO WE ARE

Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. The Company develops and publishes products principally through Rockstar Games, 2K, Private Division, and Zynga. Our products are currently designed for console gaming systems, PC, and Mobile, including smartphones and tablets, and are delivered through physical retail, digital download, online platforms, and cloud streaming services. The Company’s common stock is publicly traded on NASDAQ under the symbol TTWO.

While our offices (physical and virtual) are casual and inviting, we are deeply committed to our core tenets of creativity, innovation and efficiency, and individual and team development opportunities. Our industry and business are continually evolving and fast-paced, providing numerous opportunities to learn and hone your skills. We work hard, but we also like to have fun and believe that we provide a great place to come to work each day to pursue your passions.

THE CHALLENGE

We are looking for a Threat Intelligence Engineer. In this role, you will be on the front lines of our defense, helping to operationalize intelligence and build engineering solutions to counter emerging security threats. You’ll work closely with various security and technology teams to integrate threat data into our security infrastructure, strengthening our defenses and protecting our organization. Your hands‑on expertise will directly contribute to safeguarding Take‑Two and its labels’ systems, networks, and data. You will work with Take‑Two’s Information Security teams, reporting to the Director of Threat Intelligence.

WHAT YOU’LL TAKE ON
  • Threat Intelligence Operations: Support the day‑to‑day operations of the cyber threat intelligence (CTI) program by managing threat feeds, parsing indicators of compromise (IOCs), and ensuring data quality across our platforms.
  • Threat Analysis & Engineering: Analyze emerging threats and adversary tactics, techniques, and procedures (TTPs) to help engineer robust detection and prevention mechanisms.
  • Enhance Our Security Posture: Collaborate with our Global Security Operations Center (GSOC), Detection Engineering, and Incident Response teams to ingest and operationalize threat intelligence into our SIEM, EDR, and firewalls.
  • Automation & Integration: Build and maintain API integrations, scripts, and playbooks to automate indicator ingestion, correlation, and dissemination across security platforms.
  • Security Infrastructure Support: Assist in the deployment, configuration, maintenance, and tuning of our Threat Intelligence Platforms (TIP) and related security engineering tools.
  • Produce Actionable Reporting: Assist in generating timely intelligence alerts, briefs, and tactical reports for technical teams to provide context around active threats.
WHAT YOU BRING
  • Experience: 2-4 years of experience in cybersecurity, with at least 1-2 years focused on threat intelligence, security engineering, or security operations (SOC).
  • Technical Expertise: A solid understanding of network fundamentals, operating system internals, common attack vectors, and the general cyber threat landscape.
  • Engineering Mindset: Experience working with APIs, data formats (JSON, XML, STIX/TAXII), and systems integration to streamline security workflows.
  • Analytical Skills: The ability to analyze data from various sources (e.g., open-source intelligence, technical reports, internal logs) to draw technical conclusions and identify malicious activity.
  • Intelligence Framework Knowledge: Familiarity with common threat intelligence and security frameworks like MITRE ATT&CK and the Cyber Kill Chain.
  • Communication Skills: Strong written and verbal communication skills, with the ability to document engineering processes and communicate threat findings clearly.
  • Tool Proficiency: Hands‑on experience with security information and event management (SIEM) systems, threat intelligence platforms (TIPs), or EDR solutions.

Great to Have

  • Scripting Skills: Proficiency in scripting languages (e.g., Python, PowerShell, or Bash) to automate data collection, API interactions, and analysis tasks.
  • Certifications: Relevant industry certifications such as CompTIA Security+/CySA+, GIAC (GSEC, GCTI), or similar intermediate credentials.
  • Cloud Experience: Familiarity with securing and monitoring cloud environments (AWS, Azure, or GCP).
  • Malware Familiarity: Basic understanding of malware analysis or reverse engineering concepts.
WHAT WE OFFER YOU
  • Great Company Culture. Ranked as one of the most creative and innovative places to work, creativity, innovation, efficiency, diversity and philanthropy are among the core tenets of our organization and are integral drivers of our continued success.
  • Growth. As a global entertainment company, we pride ourselves on creating environments where employees are encouraged to be themselves, inquisitive, collaborative and to grow within and around the company.
  • Work Hard, Play Hard. Our employees bond, blow‑off steam, and flex some creative muscles – through corporate boot camp classes, company parties, game release events, monthly socials, and team challenges.
  • Benefits. Medical, dental, vision, pension plan, employee stock purchase plan, commuter benefits, in‑house wellness program, broad learning & development opportunities, a charitable giving platform with company match and more!
  • Perks. Fitness allowance, employee discount programs, free games & events, stocked pantries and the ability to earn up to $500+ per year for taking care of yourself and more.

The pay range for this position in Ontario at the start of employment is expected to be between $71,400 and $105,660 per year. However, base pay offered is based on market location, and may vary further depending on individualized factors for job candidates, such as job‑related knowledge, skills, experience, and other objective business considerations.

Subject to those same considerations, the total compensation package for this position may also include other elements, including a bonus and/or equity awards and eligibility to participate in our 401(K) plan and Employee Stock Purchase Program.

Regular, full‑time employees are also eligible for a range of benefits at the Company, including: medical, dental, vision, and basic life insurance coverage; 14 paid holidays per calendar year; paid vacation time per calendar year (ranging from 15 to 25 days) or eligibility to participate in the Company’s discretionary time off program; up to 10 paid sick days per calendar year; paid parental and compassionate leave; wellbeing programs for mental health and other wellness support; family planning support through Maven; commuter benefits; and reimbursements for fitness‑related expenses. The use of Artificial Intelligence is not being used to screen candidates. The position is for an existing vacancy.

As an equal opportunity employer, Take‑Two Interactive Software, Inc. (“Take‑Two”) is committed to fostering and celebrating the diverse thoughts, cultures, and backgrounds of its talent, partners, and communities throughout its organization. Consistent with this commitment, Take‑Two does not discriminate or retaliate against any employee or job applicant because of their race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, and genetic information (including family medical history), or on the basis of any other trait protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Engineer
Threat Intelligence Engineer

Take-Two Interactive Software, Inc. • Toronto

On-site
CAD 71,000 - 106,000
Medical, dental, vision benefits
Pension plan
Employee stock purchase plan
+2
Threat Intelligence Engineer
Threat Intelligence Engineer

taketwo • Toronto

On-site
CAD 90,000 - 130,000
Security Operations Engineer New Toronto, Ontario, Canada
Security Operations Engineer New Toronto, Ontario, Canada

Take-Two Interactive • Toronto

Hybrid
CAD 71,000 - 106,000
Great Company Culture
Growth opportunities
Work Hard, Play Hard
+1
Security Operations Engineer
Security Operations Engineer

Take--two-Interactive-Software,-Inc • Toronto

On-site
CAD 71,000 - 106,000
Great Company Culture
Growth opportunities
Wellness program
+2
Data Engineer (Python/Spark)
Data Engineer (Python/Spark)

Take-Two Interactive • Toronto

On-site
CAD 85,000 - 115,000
Company culture
Growth opportunities
Work hard play hard
+2
Senior Research Engineer, Threat Intelligence
Senior Research Engineer, Threat Intelligence

Limelight Health • Canada

On-site
CAD 127,000 - 163,000
Health benefits
Unlimited PTO
Parental leave
+1
Senior JD Edwards ERP Analyst
Senior JD Edwards ERP Analyst

Take-Two Interactive • Toronto

On-site
CAD 96,000 - 143,000
Fitness allowance
Employee discount programs
Free games & events
+2
AI Engineering Lead, Product Analytics
AI Engineering Lead, Product Analytics

Thomson Reuters • Toronto

On-site
CAD 140,000 - 175,000
Technical Test Analyst II
Technical Test Analyst II

2K • Montreal (administrative region)

Hybrid
CAD 70,000 - 110,000
Expert Threat Intelligence Analyst - Central Technology
Expert Threat Intelligence Analyst - Central Technology

Activision Blizzard, Inc. • Vancouver

Hybrid
CAD 138,000 - 255,000
Medical benefits
401(k) with match
Paid holidays and vacation
+1