NiSource

Cybersecurity Threat Intelligence Analyst

NiSource$96K — $144K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree or equivalent experience
  • 4+ years in Cyber Threat Intelligence, Cyber Security Operations, Incident Response, or Intelligence Analysis
  • 4+ years applying the intelligence lifecycle, MITRE ATT&CK framework, or cyber risk management principles
  • 4+ years producing all-source intelligence reports and briefings
  • 4+ years using threat intelligence platforms and OSINT tools like Dataminr and Recorded Future
  • 2+ years in database and dashboard development, especially with Azure Databricks and PowerBI
  • Proficiency in Python (PySpark) and Spark SQL for data transformation

Responsibilities

  • Monitor, analyze, and report on evolving cyber threat trends
  • Conduct advanced open-source intelligence (OSINT) research on cyber threat actors
  • Synthesize multi-source intelligence into concise products for senior leaders
  • Support tactical intelligence collection and incident response
  • Compile intelligence reports during high-impact incidents
  • Develop new intelligence reporting templates and metrics
  • Facilitate data connections for Power BI dashboards on insider risk

Benefits

  • Relocation assistance provided
  • Hybrid work model with 3 days on location
  • Opportunities for professional development
  • Collaborative work environment with external partners
  • Involvement in high-impact security incidents and responses
Full Job Description

Cybersecurity Threat Intelligence Analyst

Full TimePerm

Shift:Hybrid - 3 days on location

Salary: $96,600 - $144,900 with 8% annual bonus

Location:Columbus, OH, Merrillville, IN, Lexington, KY, Chester, VA, Canonsburg, PA, or Washington, DC

Relocation Assistance Provided

The Cybersecurity department ensures the confidentiality, integrity, and availability of NiSource assets to achieve the company mission. We excel in engineering sophisticated defenses, architecting resilient systems, and proactively defending the vital cyber infrastructure that is crucial to our business operations.At NiSource, the Cybersecurity Consultants provide the critical bridge between security theory and practice, offering insights that shape our security strategies

TheCybersecurity and Physical Threat Intelligence Teamplays a pivotal role in identifyingand analyzing cyber and physical threats, emerging risks, and industry developments. Our team partners closely with Cybersecurity Incident Response, Physical Security Operations, Cyber Risk Management, and various other partners to detect and mitigate potential threats to the business across our digital and physical environments. As cyber and physical threats continue to converge, our fused intelligence program drives cohesion, a proactive approach, and strengthens information-sharing practices across the Enterprise Security department. 

As aCybersecurity Threat IntelligenceAnalyst,you willcollect, analyze,and interpret threat data,build strategic intelligence products based on documented trends,employ frameworks such as NIST CSF,andinform security protocols based on actionable intelligence. You will have the opportunity to support and further develop insider risk projects and insider threat investigations. You will work with a range of stakeholdersacross Enterprise Securityto deliver intelligence-led insights for incident response,threathunting,and cyber defense activities. You will also playa key rolein improving intelligence processes, reporting,and automation capabilities while building strong relationships across the organization and with external partners.

Your responsibilities may include, but are not limited to:

  • Monitor, analyze, track, and report on evolving threat trends related to the company, industry, orcritical infrastructure andnational security more broadly

  • Conduct advanced open-source intelligence (OSINT) research and investigationsintocyberthreat actors,origins, motives,TTPs,emergingtrends,and geopolitical developments. Assess how geopolitical and societal developments drive cyber activity over time and impact the organization

  • Synthesizelarge volumes of multi-source intelligenceand technical processesinto concise products and executive-level briefings to ensure that senior leadersget a clear understanding of threat activity, related risks,business implications, and recommended mitigations or controls

  • Support tacticalintelligence collection and reporting, including monitoring forindicators likeIOCsor malicious IPs,leveraging tools for detection, and validation within NiSource systems, and providing actionable intelligence to Incident Response

  • Respond and support Cybersecurityor Physical Securityteams during high-impact incidents. Compileavailableintelligence intotimely, high-confidence products

  • Continue to update key stakeholders throughout a security or crisis eventto provide essential information, translate technical information for a business audience, and support overall business response and recoveryefforts

  • Assistin developing new intelligence reporting thresholds, templates, products, and data collection mechanisms

  • Developand maintain intelligence metrics, dashboards, investigative records, and KPIs to ensure that team activities are measurable and aligned to businessobjectives

  • Utilize intelligence tools and platforms such asDataminr, Recorded Future,ZeroFox, and other OSINT capabilities to support routine monitoring, investigations,and analysis

  • Facilitate and develop new data connections for Power BI dashboards (database development) used for insider risk detection and tracking. Perform regular updates to API connections and dashboards as the Insider Risk and Threat programsevolve

  • Collaborate closely with other teammembers and Cybersecurity verticals to conduct investigations, validatefindings,support incident response efforts,and enhance information sharingacross the physical and cyberdisciplines

  • Participate periodically in procedural audits, analytic reviews, lessons-learned sessions, or after-action reports

  • Continuouslyrefine sourcing strategies and helpevaluate technology needs within the changing AI and information security environment

  • Contribute to updatingteammethodologiesand buildon intelligence tradecraft through professional development opportunities

  • Participate in collaborative benchmarking discussions with internal and external partners, including government and law enforcement agencies 

You mustpossessthe below minimum qualifications to be initially considered for this position. Preferred qualifications are in addition to the minimumrequirements and are considered a plus factor in identifyingtop candidates.

Minimum Qualifications 

  • Bachelor’s degree or equivalent experience

  • 4+ years of experience inCyber Threat Intelligence, Cyber Security Operations, Incident Response, Intelligence Analysis, or relatedfieldsin the public or private sectors

  • 4+ years of experience applying the intelligence lifecycle, MITRE ATT&CK framework, cybercrime analysis, threat actor tactics and techniques, or cyber risk management principles

  • 4+ years of experience producingall-source intelligence reports, briefings, and assessments for both technical and senior business audiences

  • 4+ years of experience utilizing threat intelligence platforms and OSINT tools such asDataminr, Recorded Future,ZeroFox, Flashpoint,CrowdStrike,or Google SecOps/CTI

  • 2+ years of experience in database and dashboard development, ideally with the Azure Databricks Lakehouse platform and PowerBI

  • Proficiencyin Python (PySpark)andSpark SQLfor large-scale data transformation

Preferred Qualifications

  • Advanced degreeor industry certifications such as GCTI, CTIA, CISSP, GIAC, SANS, or equivalent

  • 5+ yearsin a strategic Cyber Threat Intelligencerole with experience developing a wide array of analytic intelligence products for senior leaders and iterating on intelligence processes, methodologies, and program KPIs

  • Excellent writing, verbal, and interpersonal skills

  • Ability to adapt to a fast-paced and innovative work environment

  • Strong analytical, problem-solving, and communication skills, with the ability to translate complex cyber issues into clear and actionable insights

  • Experience with the utility or energy industry

  • Experience with AI and ML technologies in Cybersecurity

Disclaimer  

The preceding description is not designed to be a complete list of all duties and responsibilities required of the position.  

 ***Please note there is a short open-ended questionnaire to complete regarding your work experience towards the end of the application. This questionnaire can take up 10 -

About NiSource

NiSource is a Fortune 500 company engaged in natural gas transmission, storage and distribution, as well as electric generation, transmission and distribution. NiSource is dedicated to providing customers with safe, reliable and affordable energy. Headquartered in Merrillville, Indiana, NiSource operates in seven states.
Learn more about NiSource
Size
7,272 employees
Market Cap
$11.2 billion
Industry
Net Income
-$17.6 million
Founded
1912
5 Year Trend
+0.1%
Revenue
$4.6 billion
NASDAQ

Similar Jobs

More Jobs at NiSource

More Information Technology Jobs

Find similar Cybersecurity Threat Intelligence Analyst jobs: