Threat Intelligence Lead

Anaplan

Greater London

On-site

GBP 120,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Anaplan is seeking a senior Threat Intelligence Lead to build and shape our TI function from the ground up. You will set the TI strategy, develop a threat hunting program, and serve as the primary intel partner to SOC, product security, and incident response teams.

This role blends hands-on research with programme ownership and direct collaboration with CISO-level stakeholders. You will conduct deep research, run hunts end-to-end, build integrations, and present actionable intelligence to guide

Qualifications

  • Understanding of TI lifecycle, cadence and value delivery
  • Hands-on with TI platforms and tooling
  • Threat hunting experience using frameworks like MITRE ATT&CK
  • Experience supporting IR with TI under time pressure
  • Engineering/scripting to automate TI workflows
  • Authoring detection content and queries
  • Knowledge of SIEM/SOAR/EDR/XDR integrations
  • Ability to communicate complex intel to executives

Responsibilities

  • Define TI strategy and lifecycle for the security org.
  • Lead and mature threat hunting program with playbooks and hypotheses.
  • Integrate TI platforms with SOC and product security.
  • Support incident response with actionable intelligence.
  • Conduct research on threat actors, campaigns and emerging risks.
  • BuildTI integrations with existing security tooling.
  • Author and validate SIEM queries and detection rules.
  • Present findings to senior and CISO-level stakeholders.

Skills

Threat intelligence lifecycle
Threat hunting
MITRE ATT&CK
Threat intelligence platforms
Incident response support
Scripting/engineering
Detections content authoring
Communication with executives

Tools

SIEM
SOAR
EDR/XDR
MITRE ATT&CK framework

Job description

At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market.

What unites Anaplanners across teams and geographies is our collective commitment to our customers’ success and to our Winning Culture.

Our customers rank among the who’s who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best-in-class platform.

Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebratingour wins - big and small.

Supported by operating principles of being strategy-led, values -based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together!

Role Summary

As Anaplan's Threat Intelligence Lead, you will own and shape the company's Threat Intelligence function from the ground up. This is a senior, hands‑on role at the heart of Anaplan's security organisation — you will set the TI strategy and lifecycle, build and mature the threat hunting programme, and act as the primary intelligence partner to the SOC, Product Security, and Incident Response teams. You'll be both a practitioner and a programme owner: conducting deep research, running hunts, building integrations, and presenting findings to CISO‑level stakeholders.

Your Impact
  • Own and lead Anaplan's Threat Intelligence function - defining the TI strategy, lifecycle (planning, collection, processing, analysis, dissemination, and feedback), and operational cadence across the security organisation
  • Manage and administer TI platforms and tooling, and drive their integration with the SOC, Product Security, and other security teams' existing solutions
  • Own and mature Anaplan's threat hunting programme — designing and developing hunt methodologies, playbooks, and hypotheses for use across Security Operations and the broader security organisation, and executing hunts end‑to‑end
  • Serve as the primary TI partner during active incidents — providing timely, actionable intelligence to the incident response team by researching adversary TTPs, campaigns, IOCs, and attribution to support triage and containment decisions
  • Conduct structured threat intelligence research into threat actors, campaigns, and emerging risks relevant to Anaplan's threat landscape, producing intelligence products pitched appropriately for both technical teams and executive audiences
  • Build and maintain integrations between TI platforms and existing security tooling (SIEM, SOAR, EDR/XDR), leveraging scripting and engineering skills to automate intelligence collection, enrichment, and dissemination workflows
  • Author, contribute to, and validate detection content — including SIEM queries, hunt logic, and custom detection rules — informed by current threat intelligence and aligned to the MITRE ATT&CK framework
  • Communicate threat intelligence findings, programme maturity updates, and emerging risk briefings clearly and confidently to senior and executive stakeholders, up to and including CISO level
Your Qualifications
  • Deep understanding of what an effective Threat Intelligence function requires — including the intelligence lifecycle, operational cadence, and how TI integrates and delivers value across a security organisation
  • Hands‑on experience with commercial and open‑source TI platforms and tooling, spanning threat intelligence aggregation, enrichment, and sharing
  • Strong threat hunting experience — designing and executing structured, hypothesis‑driven hunts using frameworks such as MITRE ATT&CK, and translating hunt findings into actionable detections
  • Practical experience supporting incident response with threat intelligence — comfortable researching adversary tradecraft, attribution, and IOCs under time pressure alongside an IR team
  • Engineering and scripting proficiency to build integrations, automate TI workflows, and develop or enhance hunt tooling
  • Experience authoring detection content — including SIEM query languages and custom detection rule formats
  • Solid working knowledge of SIEM, SOAR, and EDR/XDR platforms and how threat intelligence enriches their capabilities
  • Ability to communicate complex intelligence clearly and confidently to senior and executive audiences, including CISO‑level stakeholders, adapting technical detail to the audience's context
  • Strong understanding of adversary tradecraft, threat actor groups, and the evolving threat landscape relevant to SaaS and enterprise environments
Our Commitment to Diversity, Equity, Inclusionand Belonging (DEIB)

We believe attracting and retaining the best talent and fostering an inclusive culture strengthens our business. DEIB improves our workforce, enhances trust with our partners and customers, and drives business success. Build your career in a place where diversity, equity, inclusion and belonging aren’t just words on paper – this is what drives our innovation, it’s how we connect, and it contributes to what makes us a market leader. We believe in a hiring and working environment where all people are respected and valued, regardless of gender identity or expression, sexual orientation, religion, ethnicity, age, neurodiversity, disability status, citizenship, or any other aspect which makes people unique. We hire you for who you are, and we want you to bring your authentic self to work every day!

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive equitable benefits and all privileges of employment. Please contact us to request accommodation.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AVP, Data, Analytics & AI Engineering
AVP, Data, Analytics & AI Engineering

Anaplan • York and North Yorkshire

On-site
GBP 150,000 - 230,000
Senior Manager, Security Architecture
Senior Manager, Security Architecture

Anaplan • Manchester

On-site
GBP 120,000 - 160,000
Senior Business Intelligence Developer/Analyst
Senior Business Intelligence Developer/Analyst

Anaplan • Salford

On-site
GBP 60,000 - 90,000
AI Technical Lead
AI Technical Lead

Anaplan • Manchester

On-site
GBP 90,000 - 130,000
Senior Manager, Security Architecture
Senior Manager, Security Architecture

Anaplan Inc • Greater London

On-site
GBP 140,000 - 190,000
Senior Manager, Security Architecture
Senior Manager, Security Architecture

Anaplan Inc • Manchester

On-site
GBP 120,000 - 165,000
Senior Manager, Security Architecture
Senior Manager, Security Architecture

Anaplan • Greater London

On-site
GBP 110,000 - 150,000
Data Scientist
Data Scientist

Anaplan Inc • Greater London

On-site
GBP 90,000 - 150,000
Senior Engineering Manager - AI
Senior Engineering Manager - AI

Anaplan Inc • Greater London

On-site
GBP 120,000 - 160,000
Senior Solution Consultant
Senior Solution Consultant

Anaplan • Greater London

On-site
GBP 95,000 - 130,000