The Cyber Threat Intelligence & Exposure Management Analyst
Opens nxp.wd3.myworkdayjobs.com in a new tab
What You'll Do
- Monitor emerging cyber threats, adversary activity, malware campaigns, vulnerability exploitation trends, and relevant geopolitical developments.
- Track threat actors and analyze their capabilities, infrastructure, targeting patterns, and tactics, techniques, and procedures (TTPs).
- Conduct intelligence-driven investigations using internal telemetry, threat intelligence platforms, OSINT, and digital footprint analysis.
- Discover, inventory, and assess internet-facing assets, cloud resources, domains, certificates, and external attack surfaces that may increase organizational risk.
- Identify, validate, and prioritize security exposures including vulnerabilities, misconfigurations, exposed services, shadow IT, credential exposures, and third-party risks.
- Correlate threat intelligence with vulnerability, asset, business criticality, and exposure data to provide risk-based remediation recommendations.
- Analyze exploitability, adversary activity, KEV intelligence, and emerging attack trends to prioritize remediation efforts.
- Develop threat-informed exposure assessments and risk reports for security, engineering, and business stakeholders.
- Lead IOC collection, enrichment, validation, and lifecycle management activities.
- Maintain intelligence records, exposure findings, indicators, and threat artifacts within intelligence and exposure management platforms.
- Support continuous attack surface monitoring and identify newly discovered assets, services, and externally exposed technologies.
- Produce tactical, operational, and strategic intelligence products on threats, exposures, and cyber risks.
- Deliver intelligence and exposure management briefings to leadership, security teams, and business stakeholders.
- Support incident response activities through adversary analysis, attribution support, infrastructure investigations, and threat hunting.
- Partner with Security Operations, Vulnerability Management, Cloud Security, Product Security, and Risk Management teams to drive threat-informed risk reduction.
- Develop metrics and reporting that measure exposure reduction, remediation effectiveness, vulnerability prioritization, and attack surface risk.
- Identify intelligence gaps, emerging risks, and opportunities to improve organizational resilience and defensive capabilities.
- Professional Experience 5+ years of experience in Cyber Threat Intelligence, Exposure Management, Attack Surface Management, Vulnerability Management, Security Operations, Incident Response, or related cybersecurity disciplines.
- Experience tracking threat actors, cyber campaigns, exploited vulnerabilities, and emerging threat trends.
- Demonstrated experience identifying and assessing attack surface risks and external exposures.
- Experience producing tactical, operational, and strategic intelligence products for technical and executive audiences.
- Proven ability to correlate threat intelligence, business context, asset criticality, and vulnerability data to support risk-based decision making.
- Experience conducting investigations involving internet-facing assets, cloud environments, exposed technologies, and digital footprint analysis.
- Experience supporting vulnerability prioritization, remediation strategies, and threat-informed risk reduction initiatives.
- Technical Skills Strong understanding of Cyber Threat Intelligence tradecraft, Exposure Management, Attack Surface Management (ASM), and Risk-Based Vulnerability Management (RBVM).
- Knowledge of MITRE ATT&CK, ATT&CK Navigator, Cyber Kill Chain, Diamond Model, STIX/TAXII, Intelligence Lifecycle, Structured Analytic Techniques, and Exposure Assessment methodologies.
- Experience with Exposure Management and ASM platforms such as Cortex Xpanse, CrowdStrike Exposure Management, Rapid7 Exposure Command, Tenable, Wiz, Microsoft Defender EASM, Bitsight, SecurityScorecard, or similar technologies.
- Experience with Threat Intelligence Platforms such as Anomali, ThreatConnect, ThreatQ, OpenCTI, MISP, or equivalent solutions.
- Proficiency with intelligence and investigative platforms including Maltego, VirusTotal, Shodan, Censys, GreyNoise, DomainTools, SecurityTrails, URLScan, PassiveTotal, and similar tools.
- Experience conducting infrastructure analysis involving domains, DNS, passive DNS, IP addresses, ASNs, certificates, cloud services, hosting providers, and internet-facing assets.
- Understanding of CVSS, EPSS, KEV, vulnerability exploitation trends, threat-informed vulnerability management, and cyber risk quantification concepts.
- Experience with cloud security concepts, SaaS security, external attack surface discovery, shadow IT identification, and exposure validation.
- Knowledge of Sigma, YARA, Suricata, Snort, malware analysis principles, and intelligence automation techniques.
- Experience with Python, automation, APIs, large-scale data analysis, ELK Stack, Databricks, Power BI, and security data correlation workflows.
- More information about NXP in the United States...
- NXP is an Equal Opportunity/Affirmative Action Employer regardless of age, color, national origin, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, marital status, status as a disabled veteran and/or veteran of the Vietnam Era or any other characteristic protected by federal, state or local law.
- In addition, NXP will provide reasonable accommodations for otherwise qualified disabled individuals. #LI-97b2
Sourced directly from NXP Semiconductors’s career page
Your application goes straight to NXP Semiconductors.
More from NXP Semiconductors (775 roles)
Opens nxp.wd3.myworkdayjobs.com in a new tab
Specialisation
Open roles at NXP Semiconductors
775 positions
Job ID
/job/Austin-Oakhill-Office/InfoSec-Operations-Support-Analyst_R-10066604-1
Get matched to roles like this
Upload your resume once. We’ll notify you when matching roles open up.
Join talent pool — freeSimilar Other roles
Samsung Semiconductor
Technical Director, Large-Scale AI Model Inferencing
San Jose, California, United States|Other
Samsung Semiconductor
Technical Account Manager, DRAM Business Enablement
San Jose, California, United States|Other
Samsung Semiconductor
Staff Engineer, Storage Product Planning
San Jose, California, United States|Other
Samsung Semiconductor
Staff Engineer, Storage Business Enablement
San Jose, California, United States|Other