Cyber Threat Intelligence Analyst (GSOC)

London Stock Exchange Group

Greater London

On-site

GBP 75,000 - 110,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

London Stock Exchange Group (LSEG) is seeking a Senior CTI Analyst to join our Security Operations. You will research threats, track adversaries and produce actionable intelligence for cyber security and business teams.

The role covers threat hunting, detection engineering and incident response, with opportunities to influence preventative controls and work across global teams.

Qualifications

  • Experience in CTI, security operations, incident response or related cybersecurity function.
  • Experience developing intelligence-led threat hunting or detection hypotheses.
  • Knowledge of STIX/TAXII and MITRE ATT&CK framework.

Responsibilities

  • Research, analyse and assess cyber threats relevant to LSEG, its customers, people, technology and global operations.
  • Maintain awareness of threat actors and TTPs; identify changes in adversary intent.
  • Produce clear, concise intelligence for technical, operational and senior audiences.
  • Develop evidence-based assessments and communicate confidence and gaps.
  • Support cyber incidents and investigations with intelligence to understand adversary behavior.

Skills

Threat intelligence
MITRE ATT&CK
Open-source research
Threat hunting
Python
PowerShell
Structured analytical techniques
Communication
Geopolitical awareness
Adversary tracking

Tools

Python
PowerShell
STIX/TAXII

Job description

About Us

About Us: LSEG (London Stock Exchange Group) is more than a diversified global financial markets infrastructure and data business. We are dedicated, open-access partners with a dedication to excellence in delivering the services our customers expect from us. With extensive experience, deep knowledge and worldwide presence across financial markets, we enable businesses and economies around the world to fund innovation, manage risk and create jobs. It’s how we’ve contributed to supporting the financial stability and growth of communities and economies globally for more than 300 years. Through a comprehensive suite of trusted financial market infrastructure services – and our open-access model – we provide the flexibility, stability and trust that enable our customers to pursue their ambitions with confidence and clarity. LSEG is headquartered in the United Kingdom, with significant operations in 70 countries across EMEA, North America, Latin America and Asia Pacific. We employ 25,000 people globally, more than half located in Asia Pacific. LSEG’s ticker symbol is LSEG.

Our People: People are at the heart of what we do and drive the success of our business. Our culture of connecting, creating opportunity and delivering excellence shape how we think, how we do things and how we help our people fulfil their potential. We embrace diversity and actively seek to attract individuals with unique backgrounds and perspectives. We break down barriers and encourage teamwork, enabling innovation and rapid development of solutions that make a difference. Our workplace generates an enriching and rewarding experience for our people and customers alike. Our vision is to build an inclusive culture in which everyone feels encouraged to fulfil their potential. We know that real personal growth cannot be achieved by simply climbing a career ladder – which is why we encourage and enable a wealth of avenues and interesting opportunities for everyone to broaden and deepen their skills and expertise. As a global organisation spanning 70 countries and one rooted in a culture of growth, opportunity, diversity and innovation, LSEG is a place where everyone can grow, develop and fulfil your potential with meaningful careers.

Job Description Summary

Job Description Summary: LSEGSecurity Operationsis a central function employingpeople, process and technology to continuously monitor and respond to cyber-security incidents. Security Operations spans multiple domains includingcyberthreat intelligence,cyber threatdetection,data loss preventionandcyberincident response. This role sits within the Cyber Threat Intelligence (CTI) team, helping the organisation understand the cyber threats that matter most to LSEG and turn that understanding into action. As a CTI Analyst, you will research and assess cyber threats relevant to LSEG, track adversaries and their evolving tactics, techniques and procedures (TTPs), and produce timely, actionable intelligence for consumers across Cyber Security and the wider organisation. You will work across the intelligence lifecycle, combining information from internal telemetry, commercial and open-source intelligence, trusted intelligence‑sharing communities and geopolitical reporting to identify emerging threats, answer intelligence requirements and provide assessments that support security decision‑making. The role provides the opportunity to work across tactical, operational and strategic intelligence, supporting activities including adversary tracking, threat hunting, detection engineering, vulnerability management and incident response.

Key Responsibilities
  • Research, analyse and assess cyber threats relevant to LSEG, its customers, people, technology and global operations.
  • Maintain awareness of threat actors, campaigns and emerging threats, identifying changes in adversary intent, capability, targeting and TTPs.
  • Produce clear, concise and actionable intelligence products for technical, operational and senior consumers.
  • Apply structured analytical techniques and intelligence tradecraft to develop evidence‑based assessments, clearly presenting analytic confidence, assumptions and intelligence gaps.
  • Work across all stages of the intelligence lifecycle to understand consumer intelligence requirements, collect and evaluate relevant information, produce intelligence and assess its impact.
  • Identify emerging threats and changes in the threat landscape, including significant vulnerabilities, attack techniques and geopolitical developments with potential implications for LSEG.
  • Develop intelligence‑led hypotheses and work with threat hunting and detection teams to identify previously unknown or undetected malicious activity.
  • Provide intelligence support to cyber incidents and investigations, helping intelligence consumers understand adversary behaviour, likely objectives, TTPs and potential next steps.
  • Find opportunities to translate adversary intelligence into improvements to LSEG's preventative and detective security controls.
  • Develop and maintain relationships with intelligence consumers, industry peers, intelligence‑sharing communities and our partners.
  • Contribute to the continuous development of the CTI team's processes, methodologies, tooling and other capabilities.
  • Stay abreast of developments across the threat landscape and continually develop expertise in adversaries and threat areas.
Technical / Job Functional Knowledge
  • Crucial Solid understanding of the modern cyber threat landscape and adversary behaviours and TTPs.
  • Demonstrable knowledge of the MITRE ATT&CK framework and its application to CTI.
  • Understanding of attack pathways and the technologies, protocols and security controls associated with modern enterprise environments.
  • Ability to conduct effective open-source research and critically evaluate the reliability and credibility of information and sources.
  • Communicate sophisticated technical and threat information clearly to both technical and non-technical audiences.
  • Strong written analytical skills, including the ability to distinguish fact from assessment and communicate uncertainty using the appropriate intelligence lexicon.
  • A curiosity about geopolitical, technological and criminal developments and their potential influence on cyber threat activity.
Desirable Experience
  • Working within a CTI, security operations, incident response, threat hunting or related cyber-security function.
  • Experience developing intelligence‑led threat hunting or detection hypotheses.
  • Familiarity with scripting or data analysis using languages such as Python or PowerShell.
  • Knowledge of intelligence‑sharing standards and technologies such as STIX/TAXII.
  • Experience working with commercial intelligence providers, information‑sharing communities or industry partnerships.
  • Knowledge of structured analytical techniques or recognised intelligence analysis methodologies.
Personal Skills and Capabilities
  • Intellectual curiosity and an authentic interest in understanding how and why cyber adversaries operate.
  • Strong critical‑thinking skills and the ability to challenge assumptions and draw measured conclusions from partial or sometimes contradictory information.
  • Excellent written and verbal communication skills, with the ability to adapt intelligence to different audiences.
  • Ability to prioritise optimally and deliver high‑quality analysis in a fast‑paced environment.
  • Collaborative approach and the ability to build effective relationships with technical teams, intelligence consumers and partners.
  • Willingness to continually develop technical knowledge and subject‑matter expertise.
Career Stage

Career Stage: Senior Associate London Stock Exchange Group (LSEG) Information: Join us and be part of a team that values innovation, quality, and continuous improvement. If you're ready to take your career to the next level and make a significant impact, we'd love to hear from you. LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth. Our purpose is the foundation on which our culture is built. The values revolve around integrity, partnership, excellence and change. They go to the heart of who we are and guide our decision making and everyday actions. Working with us means that you will be working across 65 countries and that you benefit from diverse training. Working with in the culture here are challenges. We don't want to see thatless leverages another we share LSEG is a leading global financial markets infrastructure and data provider.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it’s used for, and how it’s obtained, your rights and how to contact us as a data subject.

If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.

LSEG’s Data & Analytics, Capital Markets and Post Trade divisions have a combined power that provides a comprehensive, integrated suite of trusted financial market infrastructure services to help our customers pursue their ambitions.

Get to know some of our people who are pushing the boundaries of technology, finance and more around the world.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Intelligence Analyst (GSOC)
Cyber Threat Intelligence Analyst (GSOC)

LSEG • Greater London

On-site
GBP 60,000 - 85,000
Healthcare
Retirement planning
Paid volunteering days
+1
Manager, Security Automation
Manager, Security Automation

London Stock Exchange Group • Greater London

Hybrid
GBP 100,000 - 140,000
Healthcare
Retirement planning
Paid volunteering days
+1
Solutions Business Director
Solutions Business Director

LSEG • Greater London

On-site
GBP 180,000 - 240,000
Risk Intelligence Service Manager
Risk Intelligence Service Manager

LSEG • Greater London

On-site
GBP 70,000 - 110,000
Software Engineer
Software Engineer

London Stock Exchange Group • Greater London

Hybrid
GBP 75,000 - 110,000
Healthcare
Retirement planning
Paid volunteering days
+1
Group Director, Security Architecture
Group Director, Security Architecture

LSEG • City Of London

On-site
GBP 120,000 - 160,000
Healthcare benefits
Retirement planning
Paid volunteering days
Business Analyst Summer Internship
Business Analyst Summer Internship

London Stock Exchange Group • Greater London

On-site
GBP 20,000 - 27,000
Wellbeing benefits
Hybrid/On-site work
Data Science Manager
Data Science Manager

LSEG • Greater London

Hybrid
GBP 110,000 - 150,000
Hybrid work model
Healthcare benefits
Senior Attack Monitoring Analyst, GSOC
Senior Attack Monitoring Analyst, GSOC

London Stock Exchange Group • Greater London

On-site
GBP 60,000 - 80,000
Healthcare benefits
Retirement planning
Paid volunteering days
Principal - Cloud Data Architect
Principal - Cloud Data Architect

LSEG • Nottingham

On-site
GBP 90,000 - 140,000