Threat Intelligence Analyst
Norsk Hydro
What you will be doing
Role Purpose
The Threat Intelligence Analyst identifies, assesses, and communicates cyber threats relevant to the organization. The role supports proactive defense by collecting and analyzing threat information, producing actionable intelligence, and helping security teams prioritize risks, improve detections, and respond effectively to emerging threats.
Responsibilities
- Collect, analyze, and assess threat intelligence from internal and external sources.
- Identify emerging threats, threat actors, campaigns, vulnerabilities, and attack techniques relevant to the organization.
- Produce timely, clear, and actionable intelligence reports for technical and business stakeholders.
- Develop and maintain threat intelligence requirements, profiles, and priority intelligence requirements.
- Support SOC, Incident Response, Threat Hunting, Vulnerability Management, and Detection Engineering activities with relevant intelligence.
- Enrich security alerts and incidents with indicators of compromise, threat actor context, and TTP analysis.
- Map observed threats and attacker behavior to frameworks such as MITRE ATT&CK.
- Maintain and improve threat intelligence platforms, repositories, watchlists, and intelligence workflows.
- Support proactive threat hunting and detection development based on identified threats.
- Communicate significant threats, trends, and recommended actions to relevant stakeholders.
- Collaborate with internal teams, external partners, vendors, and industry peers on threat intelligence matters.
- Track the effectiveness and operational use of threat intelligence and contribute to continuous service improvement.
- 3 year of relevant work experience
- Strong understanding of cyber threat intelligence concepts, methodologies, and intelligence lifecycle.
- Knowledge of threat actors, attack campaigns, malware, vulnerabilities, indicators of compromise, and adversary tactics, techniques, and procedures.
- Practical experience with threat intelligence platforms, SIEM, EDR/XDR, vulnerability management, and security monitoring tools.
- Ability to analyze and correlate information from internal telemetry, open-source intelligence, commercial feeds, and trusted communities.
- Experience with MITRE ATT&CK and other relevant cybersecurity frameworks.
- Fluent in English is mandatory. Any other language is a plus
- Working at the world’s only fully integrated aluminum and leading renewable energy company
- Diverse, global teams
- Flexible work environment/home office
- We provide you the freedom to be creative and to learn from experts
- Possibility to grow with the company, gain new certificates
- Attractive benefit package
At Hydro, we believe diversity makes us stronger. We welcome diverse experiences and perspectives, and invite all qualified candidates to apply. We review every application fairly and strive to provide equal opportunities for everyone to grow and succeed.
Apply before: 09/15/2026