Cyber Threat Intelligence Team Lead job opportunity at Control Risks.



Date2025-11-20T21:31:31.814Z bot
Control Risks Cyber Threat Intelligence Team Lead
Experience: 12-years
Pattern: Full-time
apply Apply Now
Salary:
Status:

Job

Copy Link Report
degreeOND
loacation San Francisco, United States Of America
loacation San Francisco....United States Of America

The Cyber Threat Intelligence Team Lead will play a pivotal role in building and leading a world-class Cyber Intelligence program for a major client of Control Risks. This role will be responsible for developing the strategy, building out capabilities, and leading a team of security professionals to proactively detect, triage, and respond to cyber threats. This position provides technical direction and administrative oversight on all cybersecurity matters, ensuring the protection of the client’s systems, networks, and data. The Manager supports a strong first line ownership model by partnering with technology and business stakeholders to embed security into planning, development, and operational activities. Working closely with client stakeholder, build, manage, and scale a Cyber Threat Intelligence Team from the ground up. Lead on Developing Standard Operating Procedures for threat intelligence activities, taking into account specific client activities and stakeholders, such as tooling, reporting lines, and out of hours incidents. Lead on managing most severe and critical cyber security incidents including supporting incident responders with reporting, updates and investigations to aid incident response and crisis management in a timely, accurate and professional manner. Train, and mentor threat intelligence analysts, engineers, and threat hunters. Establish operational processes, escalation paths, and playbooks. Oversee the triage of cyber events, ensuring rapid identification, investigation, and remediation. Manage incident response activities, coordinating across IT, Legal, Risk, and other stakeholders. Develop metrics, KPIs, and reporting to measure SOC effectiveness. Lead proactive threat hunting operations to identify potential compromises and undetected malicious activity. Integrate threat intelligence into SOC workflows and leverage intelligence to inform response and prevention strategies. Evaluate and optimize the client’s technology stack (SIEM, SOAR, EDR, threat intelligence platforms, etc.). Drive continuous improvement of detection rules, automation, and response capabilities. Recommend emerging tools and processes to enhance maturity. Conduct regular check-ins, provide coaching and feedback, manage performance reviews and improvement plans, and support career development with the members of your team.   Serve as the main liaison between team members and ECS program management team, ensuring timely program and personnel updates and controlling quality on client deliverables.   With the support of the Talent Acquisition team, participate in hiring processes ensuring team resourcing aligns with client expectations and program needs. Lead onboarding tasks (e.g., joiner tickets, scheduling, equipment, success plans), manage offboarding logistics and leaver tickets, and ensure operational continuity.   Manage team schedules, approve PTO, ensure timesheet compliance, and maintain a consistent high-quality service to the client.   Working closely with the ECS program management team, align on overall program strategy and priorities to create clear, actionable, team deliverables. 10-12 years of experience in cybersecurity, cyber threat intelligence, or cyber security operations. Leadership in an threat intelligence environment a plus Ability to distil highly technical information into more business centric, risk orientated language for presentation to senior leadership. Experience with: Splunk (or other event monitoring capability), Crowdstrike, RecordedFuture, MS sentinel, SentinelOne, OpenCTI, MISP, Proofpoint. Deep knowledge of incident response, digital forensics, malware analysis, and threat intelligence. Hands-on experience with SOC technologies such as SIEM, SOAR, EDR, IDS/IPS, and log management tools. Strong understanding of MITRE ATT&CK framework, NIST Cybersecurity Framework, and industry best practices. Excellent leadership, communication, and stakeholder management skills. Relevant certifications preferred: CISSP, CISM, GIAC (GSOM and GCTI), or equivalent.

Other Ai Matches

Junior Analyst Applicants are expected to have a solid experience in handling Job related tasks
Security Operations Center (SOC) Operator, Incident Managemet & Reporting Applicants are expected to have a solid experience in handling Incident Managemet & Reporting related tasks
Speculative Applications - Embedded Consultant - Protective Services Lead Applicants are expected to have a solid experience in handling Job related tasks
Specialist Project and Billing Coordinator Applicants are expected to have a solid experience in handling Job related tasks
Assistant Financial Accountant Applicants are expected to have a solid experience in handling Job related tasks
Associate Research Manager, Third-Party Due Diligence Applicants are expected to have a solid experience in handling Third-Party Due Diligence related tasks
GSOC Analyst Applicants are expected to have a solid experience in handling Job related tasks
Embedded Intelligence Analyst - Joint Security Operations Centre Applicants are expected to have a solid experience in handling Job related tasks
Researcher, Third-Party Due Diligence Applicants are expected to have a solid experience in handling Third-Party Due Diligence related tasks
User Experience Design Intern Applicants are expected to have a solid experience in handling Job related tasks
Associate Research Manager, Third-Party Due Diligence (Fluent Japanese) Applicants are expected to have a solid experience in handling Third-Party Due Diligence (Fluent Japanese) related tasks
Security Director Applicants are expected to have a solid experience in handling Job related tasks
Principal - Head of Crisis and Security Consulting, Latin America Applicants are expected to have a solid experience in handling Latin America related tasks
Infrastructure & Network Analyst Applicants are expected to have a solid experience in handling Job related tasks
Speculative Application-Integrated Operating Centre (IOC) Operators-Construction Applicants are expected to have a solid experience in handling Job related tasks
Researcher, Third-Party Due Diligence (fluent Japanese) Applicants are expected to have a solid experience in handling Third-Party Due Diligence (fluent Japanese) related tasks
Associate Consultant, Crisis and Risk Consulting (EMEA) Applicants are expected to have a solid experience in handling Crisis and Risk Consulting (EMEA) related tasks
Associate Director, Business Intelligence Applicants are expected to have a solid experience in handling Business Intelligence related tasks
Training Specialist Applicants are expected to have a solid experience in handling Job related tasks
Brand Designer (Mid-Level) Applicants are expected to have a solid experience in handling Job related tasks
Cyber Threat Intelligence Team Lead Applicants are expected to have a solid experience in handling Job related tasks
Embedded Corporate Regional Security Manager UK/EU- Speculative Applications Applicants are expected to have a solid experience in handling Job related tasks
Resilience - Speculative applications for our embedded consulting talent pool Applicants are expected to have a solid experience in handling Job related tasks