Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Strategic Threat Intel Analyst

AT Merrill
Merrill

Strategic Threat Intel Analyst

Washington, DC

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Want more jobs like this?

Get jobs delivered to your inbox every week.

Select a location
By signing up, you agree to our Terms of Service & Privacy Policy.


The Cyber Threat Intelligence team works with partners, both internal and external, in order to reduce risk to the Bank and to the financial sector at large. The team provides timely situational awareness, conducts deep analysis of threats, and translates indicators of threat into actionable information to reduce impact to the bank. Stakeholders include cyber-security response teams, internal lines of business, senior leadership, and external organizations such as law enforcement, industry peers and intelligence sharing partners.

The Cyber Threat Intelligence Analyst position is responsible for conducting in-depth research, documentation, and intelligence analysis of key cyber threats to develop a comprehensive picture of the cyber threat landscape. This includes research via the use of various sources; development of historical, trend, and link analysis; and written and oral reporting to provide actionable intelligence and insights. The analyst will also work to proactively research new threats and establish trends and patterns among existing attacks to help predict future risks.

Minimum Years of Experience - 3

Responsibilities include, but are not limited to:
• Working in a tactical/strategic role cultivating intelligence sources, analyzing information, creating intelligence, and hunting for exposures or related incidents
• Researching current and emerging threats, malware analysis, campaign assessment, data collection and analysis
• Researching threat actors and cultivating and assessing new sources of threat information and intelligence
• Collecting, assessing, and cataloguing threat indicators and responsibility for adding context to threat indicators to convey urgency, severity, and credibility.
• Risk management.
• Maintaining knowledge of threat landscape by monitoring OSINT and related sources
• Tracking cyber threat actors and their infrastructure with a view to disrupting their activity
• Collaborating with appropriate business partners and lines of business to analyze threats.
• Escalating issues to management in a timely manner with appropriate information regarding risk and impact
• Exercising independent judgment in methods, techniques, and evaluation criteria for obtaining results
• Working with incident response teams to assist with contextualizing the threat and facilitating the identification, mitigation, and containment of cyber-security incidents.
• Drafting well-written analytical assessments and providing briefings to response teams, enterprise counterparts, and senior leadership on key issues

Required Skills:
• Former experience as a cyber threat intelligence analyst is necessary reporting on the nation-state or cyber-criminal threats.
• Foreign language fluency (Chinese/Russian/Arabic/Korean) is desired.
• Technical or information security certifications are also strong plus.
• Strong analytical and problem-solving abilities to identify patterns and correlations in threat data.
• Ability to communicate (verbal and written) with executives and other stakeholders in non-technical terms while accurately encompassing risk, impact, likelihood, containment and remediation activities, and threat actor techniques, tactics, and procedures.
• Proficiency in cybersecurity tools and techniques, as well as knowledge of common cyber threats and attack vectors.
• Understanding of current cybersecurity trends, threats, and concepts.
• Familiarity with cyber threat intelligence frameworks such as MITRE ATT&CK and the Diamond Model.

Desired Skills:
• Bachelor's degree or higher-level degree.

Shift:
1st shift (United States of America)

Hours Per Week:
40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)

Pay and benefits information

Pay range

$100,000.00 - $141,900.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.

Client-provided location(s): Washington, DC, USA; Denver, CO, USA; Chicago, IL, USA
Job ID: Merrill-JR-25026147
Employment Type: Full Time