Lennar Corporation

Sr. Threat Intelligence Analyst

Lennar Corporation$100K — $130K *
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in threat intelligence or related field with experience in producing actionable intelligence.
  • 3+ years operating a Threat Intelligence Platform (TIP) at production level, including feed architecture and indicator management.
  • Proven ability to build automation pipelines with a focus on schema discipline and observability.
  • Demonstrable track record of producing intelligence that informed decisions rather than just reports.
  • Experience in financial services or real estate sectors, especially in wire fraud and transaction threats.
  • Technical proficiency in Python for pipeline building and issue resolution; familiarity with REST and Graph APIs.
  • Strong understanding of KQL for writing detection queries and analytics rules.

Responsibilities

  • Own daily TIP operations, managing feed health and indicator lifecycle across diverse security controls.
  • Develop automation for scaling the program, focusing on API-based feed collectors and enrichment workflows.
  • Implement comprehensive monitoring for all constructed systems to ensure operational integrity.
  • Collaborate with detection engineering to craft intelligence-driven analytics rules and hunting queries.
  • Integrate vulnerability management findings with threat context to produce actionable intelligence packages.
  • Craft and validate threat-informed playbooks, ensuring evidence capture and findings are genuine.
  • Prioritize and assess CVEs using blast radius context, aligning actionable insights with business operations.

Benefits

  • Comprehensive health insurance (Medical, Dental, Vision) for Associates.
  • 401(k) Retirement Plan with a $1 for $1 Company Match up to 5%.
  • Generous Paid Parental Leave and an Associate Assistance Plan for life’s critical moments.
  • Education Assistance Program and up to $30,000 in Adoption Assistance.
  • Three weeks of vacation annually, plus holidays, sick leave, and personal days.
  • New Hire Referral Bonus Program and Home Purchase Discounts.
  • Opportunities for professional growth and inclusion initiatives, like Everyone’s Included Day.
Full Job Description
Most threat intelligence programs are built around reports nobody reads, andindicator feedsthat age out before anyone acts on them. We’re building something different. At Lennar, we’re standing up a CTI program designed from the ground up to protect the business workflows that matter most — real estate transactions, wire transfers, closing processes, and the associate populations that threat actors target through wire fraud, data theft, and ransomware. Raw intelligence signals flow through engineered pipelines into controls, detections, and validated risk reduction. We have pipelines in flight and platforms taking shape, but the architecture is still yours to influence. The foundational decisions — TIP selection, feed collection design, enrichment and scoring logic, closed-loop validation — aren’t locked in. You’ll have real input into how this gets built. If you’ve wanted to own the kind of intelligence decisions that most analysts spend a decade waiting for, and you want to make them in a Fortune 100 environment with real resources and a program lead who wants a partner, this is that role. You’re an analyst who builds. You don’t wait for someone else to stand up the tooling — you write the code, operate the pipeline, and make the platform work. You translate threat context into business risk and then build the systems that act on it at scale. This role is not for you ifyou want to triage alerts and write reports. Your job is to build and operate systems that make that possible, and to make sure the intelligence those systems produceactually reachescontrols, drives detections, and closes risk. Your Responsibilities on the Team Platform Operation & Automation Own day-to-day TIP operation: feed health, indicator lifecycle, enrichment pipeline integrity, data quality controls, and distribution to controls — SIEM, XDR, EDR, NGFW, and email; maintain coverage across government, commercial, and open-source feeds. Build and maintain the automation that scales the program: feed collectors via REST and Graph APIs, enrichment chains, scoring pipelines, and indicator lifecycle workflows — production code, not one-off scripts. Instrument everything you build: structured logs, run IDs, observable outputs; if it runs in production, it’s monitored and you own it. Detection & Exposure Alignment Partner with Detection Engineering on intel-driven analytics rules and hunts; translate threat actor TTPs into detection hypotheses and contribute KQL to coverage against techniques active in your pipeline. Integrate vulnerability management and attack surface findings with active threat intel; correlatemisconfigs, identity risks, and surface exposure with real threat context; open mobilization tasks with evidence attached and owners assigned. Package threat-informed playbooks, ensure safe runs, capture evidence, and confirm findings are validated-closed — not claimed-closed. Threat-Informed Prioritization & Business Risk Translation Fuse threat intelligence with asset inventory, identity context, cloud posture, and data sensitivity to compute blast radius and generate ranked action packages with clear owners; produce crisp, evidence-backed assessments for engineering and executive audiences. Own CVE triage using EPSS, KEV, and in-the-wild evidence; route prioritized findings with blast radius context, not just severity scores. Map active TTPs to countermeasure coverage; classify what’s deployed, validated, broken, and missing — and routefindings accordingly;serve as the connective tissue between threat landscape and internal operations. Requirements 5+ years in threat intelligence, security engineering, or a related discipline — with a track record of both producing intelligence and building the tooling that operationalizes it. 3+yearsoperating a TIP at production maturity: feed collection architecture, enrichment pipelines, indicator lifecycle management, and distribution to security controls. Demonstrated ability to build automation pipelines with schema discipline, observability, and rollback — solid scripts and APIs are the floor; production services are the ceiling. Track record of producing finished intelligence that drove decisions, not just reports that got filed. Background in financial services, real estate, or industries facing wire fraud, BEC, or transaction-based threat vectors is a strong differentiator. Technical Depth Python —Production pipeline code: REST and Graph API clients, enrichment chains, JSON Schema validation, auth patterns, pagination, retries, error handling. Pipeline operation —Owns and operates automation workflows end-to-end; comfortable building, debugging, and extending pipelines via CLI and code; not a UI operator. KQL —Writes analytics rules and hunt queries from scratch; understands cloud-native SIEM table schema; can derive detection logic from a TTP description. ATT&CK —Operational fluency; used to scope coverage,write hunthypotheses, and route findings — not to decorate reports. TIP and feed engineering —Has operated a commercial or custom TIP; has built multi-source collectors and enforced source SLAs at production scale. Exposure platform integration —ASM/CAASM and vulnerability management API integration; scan data enrichment for risk weighting. Certifications (Preferred, Not Required) GIAC Cyber Threat Intelligence (GCTI). SC-200 or demonstrated cloud-native SIEM operational depth. OSCP or CRTO is a differentiator. A GitHub portfolio of production pipelines tells us more than any cert. WHAT MAKES THIS ROLE DIFFERENT This program is built to stay ahead of them, and the analyst in this seat is the one who connects what’s happening in the threat landscape to what Lennar needs to do about it.You’re not filing reports into a queue. You’re building the systems that make the program run, producing the intelligence that drives decisions, and closing risk that would otherwise stay open. Life at Lennar At Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life9s critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone9s Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar9s policies and applicable plan terms. Visit Lennartotalrewards.com to view our suite of benefits. Join the fun and follow us on social media to see what9s happening at our company, and don9t forget to connect with us on Lennar: Overview | LinkedIn for the latest job opportunities.

About Lennar Corporation

Lennar Corporation Careers

Join the dynamic team at Lennar Corporation, a leader in the home construction industry, and be part of a company that values innovation, leadership, and diversity. At Lennar, we are committed to building more than homes—we are dedicated to building futures.

Work You’ll Do

At Lennar Corporation, you will engage in meaningful work that directly contributes to the growth and success of the company. Our team is at the forefront of the construction industry, driving innovation and excellence in every project. Whether you are in design, construction, sales, or management, your contribution will lead to tangible results that you can be proud of.

Innovative Work

Lennar Corporation is not just a leader in home construction; we are also pioneers in developing cutting-edge technologies and sustainable practices that redefine what is possible in our industry. Join our team of over 9,000 dedicated professionals who are working at the intersection of technology, sustainability, and residential construction.

Be Part of a Great Team

Our team at Lennar Corporation is diverse, skilled, and driven—united by a common goal to deliver exceptional quality and service to our customers. We foster a culture of support and collaboration, which makes Lennar not just a great place to work, but a great place to grow your career.

Future-Proof Your Career

Lennar Corporation offers a wealth of job opportunities and career paths, providing you with the flexibility to pursue your interests and expand your professional experience. With robust training programs and a commitment to professional development, Lennar ensures that your career journey is as rewarding as it is successful.

Explore Job Opportunities and Internships

Whether you’re a seasoned professional looking for your next challenge or a recent graduate seeking an internship, Lennar has a variety of positions to match your skills and ambitions. From on-site construction roles to corporate leadership positions, the opportunities at Lennar are as diverse as our team.

Employment Benefits and Culture

Choosing a career at Lennar means more than just employment. It means becoming part of a community that values diversity, supports growth, and nurtures innovation. We offer competitive benefits, leadership training, and opportunities for networking and career advancement, all within a culture that celebrates achievement and teamwork.

Stay Connected

Join Our Team Search open positions that match your skills and interests. We look for passionate, curious, creative, and solution-driven team players. Ready to start your career at Lennar Corporation? Explore our job listings today and find out how your talents can contribute to our mutual success.

Keep Up to Date

Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. Learn about our latest projects, our approach to innovation and sustainability, and how we’re transforming the construction industry.

Job Alert Emails

Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Lennar Corporation. Join Lennar Corporation today and be part of a team that is building the future—one home at a time.
Learn more about Lennar Corporation
Size
10,753 employees
Market Cap
$25.7 billion
Industry
Net Income
$2.4 billion
Founded
1954
Revenue
$22.4 billion
NASDAQ

Similar Jobs

More Jobs at Lennar Corporation

  • Lennar Corporation
    Finance Manager
    $80K — $110K *
    Charlotte, NC 28269 (Mecklenburg County)
    Real Estate & Construction
    In-Person
  • Lennar Corporation
    Land Development Manager
    $75K — $95K *
    Bluffton, SC 29910 (Beaufort County)
    Real Estate & Construction
    In-Person
  • Lennar Corporation
    VP of Land Acquisition
    $120K — $150K *
    Atlanta, GA 30349 (Fulton County)
    Real Estate & Construction
    In-Person
  • Lennar Corporation
    Project Manager
    $80K — $147K *
    Irvine, CA 92620 (Orange County)
    Real Estate & Construction
    In-Person
  • Lennar Corporation
    Lead, HR Operations
    $75K — $95K *
    Miami, FL 33186 (Miami-Dade County)
    Business Services
    In-Person

More Finance & Insurance Jobs

Find similar Sr. Threat Intelligence Analyst jobs: