DescriptionStantec is looking to expand our Threat Intelligence team! The IT Threat Intelligence Risk Analyst is a key role within the cybersecurity division responsible for identifying assessing and mitigating threats that could potentially compromise the integrity confidentiality and availability of information systems. This position requires a proactive approach to threat intelligence enabling the organization to stay ahead of emerging threats and vulnerabilities. The ideal candidate will demonstrate a strong analytical mindset an aptitude for ingesting and assessing information about the current threat landscape and the ability to effectively communicate findings to both technical and non-technical stakeholders.
Other attributes that can bring positive value to the role include experience working with different IT teams a strong technical reading comprehension an eagerness to learn and an international perspective.
Your Opportunity
- Conduct open-source intelligence (OSINT) gathering and analysis to monitor emerging cyber threats and adversarial tactics.
- Analyze threat data from internal and external sources to identify patterns trends and indicators of compromise (IOCs).
- Collaborate with Security Operations Center (SOC) team to provide real-time threat intelligence support during incidents.
- Create concise actionable intelligence reports and briefings for technical and non-technical stakeholders
- Write clear focused intel reports the SOC team can act on fast.
- Develop and maintain threat profiles and assessments for advanced persistent threats (APTs) cybercriminal groups and hacktivist campaigns.
- Utilize Commercial and ISAC threat intelligence platforms (TIPs) to enrich and automate intelligence workflows.
- Identify and provide presentations on emerging threats to prepare internal stakeholder for appropriate mitigations
- Participate in threat-hunting exercises and proactively identify potential security gaps within organizational systems.
- Monitor dark web sources underground forums and encrypted channels for relevant threats and potential data leaks.
- Contribute to the development of detection rules SIEM content and threat modeling based on intelligence findings.
- Stay up to date with global cyber threat landscape regulatory requirements and evolving industry best practices.
- Filter out alert and industry noise to spotlight whats relevant and real.
- Track threat actors and their evolving tactics with purpose.
- Transform raw data into meaningful insight to be shared internally and with external partners
- Work hand-in-hand with incident responders to provide relevant actionable intel when
- Feed threat intelligence directly into detection tools and workflows.
- Build threat profiles with depthwho what why and how.
- Keep learning and evolving just like the threats we face.
QualificationsYour Capabilities and Credentials
- Minimum 3 years experience working in an IT-related field
- Basic knowledge of cybersecurity policies and procedures including the compliance standards like ISO 27001
- General knowledge of Stantecs organizational structure along with its business processes and workflows
- Excellent oral and written communication skills
- Highly organized and efficient
- Team player with strong interpersonal skills who can manage multiple workflows concurrently
- Remote opportunity
Stantec Global internal candidates are encouraged to apply. For applicants outside North America and India please email your application to .
Required Experience:
IC