Threat Intelligence Lead

Motion Recruitment

Irving (TX)

On-site

USD 160,000 - 230,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Motion Recruitment in Irving, TX is seeking a Threat Intelligence Lead for a 12+ month, fully onsite contract. You will own the TI program and drive maturity, tooling, staffing, and processes.

You will lead the analyst team, set goals, review performance, and oversee end-to-end intelligence cycles. The role includes executive briefings, incident support, and collaboration with security functions across the organization.

Qualifications

  • Deep knowledge of the MITRE ATT&CK framework and the intelligence cycle.
  • Proven ability to deliver intelligence to executive/board level audiences.
  • Experience directing TI platform and vendor strategy, including feed evaluation.

Responsibilities

  • Lead the threat intelligence program, including priorities, roadmap, and KPIs.
  • Hire, coach, and manage threat intelligence analysts and review their work.
  • Author high-stakes intelligence products and brief executives/board.
  • Oversee end-to-end intelligence cycle: tasking, collection, analysis, production, dissemination.
  • Partner with detection engineering to enable TI-driven detection and hunting.
  • Represent TI in leadership forums and coordinate with Security Architecture, IR, and Vulnerability Management.

Skills

Threat intelligence
Leadership
MITRE ATT&CK
Structured analytic techniques
Executive briefings

Education

Bachelor's degree in Cybersecurity/CS/Intelligence

Tools

Threat intel platform (TIP)
Vendor management

Job description

Our Irving, TX Client is seeking a Threat Intelligence Lead for a 12+ Month fully onsite contract opportunity.

Job Location: Rd Irving TX 75063

Lead the threat intelligence program
  • Set intelligence collection priorities and requirements based on organizational risk, industry targeting, and stakeholder needs
  • Own the threat intelligence roadmap, including program maturity, tooling, staffing, and process improvements
  • Establish and enforce standards for finished intelligence products, source reliability, and confidence-level reporting
  • Define and track program KPIs, such as report timeliness, actionability, detection coverage, and stakeholder satisfaction
Manage and develop the analyst team
  • Hire, coach, and manage threat intelligence analysts, including workload prioritization and quality review of their work
  • Set individual and team goals, conduct performance reviews, and build career development plans for analysts
  • Run the team's intelligence cycle end to end: tasking, collection, analysis, production, and dissemination
  • Build team proficiency in structured analytic techniques, adversary tracking, and the MITRE ATT&CK framework
Deliver strategic and operational intelligence
  • Personally author and quality-check high-stakes intelligence products, including executive and board-level briefings
  • Lead intelligence support during major incidents, providing attribution, actor intent, and containment guidance to IR leadership
  • Direct the organization’s threat landscape assessment, including sector-specific and geopolitical risk
  • Prioritize vulnerability remediation guidance in partnership with Vulnerability Management using exploitation and actor-interest data
Own detection enablement and adversary emulation
  • Partner with detection engineering to convert intelligence into SIEM/EDR detection logic and hunting programs
  • Direct threat-informed red team, purple team, and adversary emulation exercises using current TTPs
  • Review and approve detection and hunting priorities to ensure they reflect the current threat landscape
Vendor, platform, and cross-functional leadership
  • Own the threat intelligence platform (TIP) strategy, feed and vendor selection, licensing, and renewal decisions
  • Build and maintain relationships with industry ISACs/ISAOs, law enforcement, and peer intelligence leads for information sharing
  • Represent threat intelligence in leadership, risk, and governance forums, including budget and staffing discussions
  • Partner with Security Architecture, IR, Vulnerability Management, and Product Security leads to align intelligence with broader security strategy
  • Set the team's quarterly collection priorities based on a shift in the organization's threat landscape or business footprint
  • Lead intelligence support for a major incident, briefing executive leadership on likely actor, objectives, and containment status
  • Negotiate and onboard a new commercial threat intelligence feed, defining success metrics before renewal
  • Review and elevate an analyst's actor profile before it goes to the CISO and board
  • Direct a purple team exercise built around a threat actor actively targeting the organization's sector
Years of Experience

6+ years of experience in threat intelligence, security operations, or incident response, including prior experience mentoring or leading analysts

Required Qualifications (Non-Negotiable)
  • Deep working knowledge of MITRE ATT&CK, the intelligence cycle, and structured analytic techniques
  • Demonstrated experience producing and delivering intelligence to executive and board-level audiences
  • Experience directing threat intelligence platform and vendor strategy, including feed evaluation and management
  • Experience partnering with detection engineering, incident response, and vulnerability management on intelligence-driven prioritization
  • Strong people-leadership skills, including hiring, coaching, and performance management of analysts
  • Excellent written and verbal communication skills, with the ability to translate technical findings into business risk
  • Sound analytic judgment, including the ability to state and defend confidence levels under scrutiny
Education & Certification Requirements
  • Bachelor's degree in Cybersecurity, Computer Science, Intelligence Studies, or related field, or equivalent experience
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Analyst
Threat Intelligence Analyst

Motion Recruitment • Irving (TX)

On-site
USD 90,000 - 150,000
Sr Cyber Defense - Threat Intelligence Lead(only W2, onsite)
Sr Cyber Defense - Threat Intelligence Lead(only W2, onsite)

CBTS • Irving (TX)

On-site
USD 125,000 - 135,000
Threat Intelligence Analyst
Threat Intelligence Analyst

Resolve Tech Solutions • Irving (TX)

On-site
USD 120,000 - 180,000
Security Threat Intelligence Lead (W2 Contract only/ No 3rd Parties)
Security Threat Intelligence Lead (W2 Contract only/ No 3rd Parties)

CBTS • Irving (TX)

On-site
USD 120,000 - 170,000
Threat Intelligence Lead — Executive Briefings & Detection
Threat Intelligence Lead — Executive Briefings & Detection

CBTS • Irving (TX)

On-site
USD 120,000 - 170,000
Threat Intelligence Strategist: IOCs, MITRE, & Threat Hunting
Threat Intelligence Strategist: IOCs, MITRE, & Threat Hunting

Motion Recruitment • Irving (TX)

On-site
USD 90,000 - 150,000
Strategic Threat Intelligence Lead — Onsite (Irving, TX)
Strategic Threat Intelligence Lead — Onsite (Irving, TX)

Motion Recruitment • Irving (TX)

On-site
USD 160,000 - 230,000
Cyber Threat Intelligence Analyst-1
Cyber Threat Intelligence Analyst-1

Vanguard • Malvern

On-site
USD 110,000 - 150,000
Cyber Threat Intelligence Analyst Subject Matter Expert - Must have an active TS / SCI Clearanc[...]
Cyber Threat Intelligence Analyst Subject Matter Expert - Must have an active TS / SCI Clearanc[...]

Synertex LLC • Arlington (VA)

On-site
USD 140,000 - 190,000
Competitive PTO
11 Paid Government Holidays
401k with 6% match
+1
Cybersecurity Threat Intelligence Analyst
Cybersecurity Threat Intelligence Analyst

Jobtailor • Washington

On-site
USD 90,000 - 130,000