Logo for Allot

Cyber Threat Intelligence Analyst (Threat Research & Classification)

Role overview

Qualifications

  • 3–5+ years of experience in Cyber Threat Intelligence, Threat Analysis, Cyber Intelligence, Threat Research, or closely related cybersecurity roles.
  • Strong experience investigating phishing campaigns, malicious domains, URLs, malware, digital fraud, or threat infrastructure using large-scale intelligence datasets.
  • Strong analytical skills, including the ability to identify patterns, interpret distributions, recognize anomalies, and derive meaningful conclusions from large datasets.
  • Good understanding of cyber threats, threat actors, attack techniques, and infrastructure design patterns.

Responsibilities

  • Analyze malicious domains, URLs, phishing campaigns, malware infrastructure, and other cyber threats.
  • Identify relationships, patterns, and behaviors across large-scale intelligence datasets.
  • Investigate emerging threats and contribute to threat intelligence research.
  • Define and maintain threat taxonomies, analytical methodologies, and classification frameworks.

Key facts

Other skills

  • Analytical Skills
  • Communication
  • Curiosity
  • Adaptability

About the company

Allot logo

Allot

Cybersecurity

Allot Ltd. (NASDAQ: ALLT, TASE: ALLT) is a provider of leading innovative network intelligence and converged security solutions for service providers and enterprises worldwide, enhancing value to their customers. Our solutions are deployed globally for network and application analytics, traffic control and shaping, network-native security services, and more. Allot’s multi-service platforms are deployed by over 500 mobile, fixed and cloud service providers and over 1000 enterprises. Our industry-leading network-native security-as-a-service solution is already used by many millions of subscribers globally.

Company details

Company typeSME
IndustryCybersecurity
Company size501 - 1000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Description

  • Location: Spain
  • Work model: Remote, with occasional on-site presence in Madrid.

We are looking for a Cyber Threat Intelligence Analyst to help build the next generation of threat intelligence capabilities.

This is not a traditional SOC, monitoring, or incident-response role. We are looking for someone who enjoys understanding how threats are designed, operated, and interconnected across the broader threat landscape.

You will work with malicious domains, URLs, phishing infrastructure, malware activity, and enriched threat intelligence data to uncover relationships between threats, identify recurring patterns, and help define how threat activity should be classified and understood at scale.

The role involves working with a multilayered intelligence model that contains thousands of attributes across infrastructure, behavioral signals, and enrichment sources. The challenge is not collecting data but extracting meaning from complexity, connecting seemingly unrelated indicators, identifying what groups them together, and understanding what they reveal about attacker tactics and operations.

As part of a small and highly specialized team, you will work closely with a data engineer and a data scientist to transform analytical knowledge into scalable intelligence frameworks. Your expertise will help shape future automation, AI-assisted analysis, machine learning models, and real-time detection capabilities.

Because the team is still growing, the role comes with a high level of ownership and visibility. There are no large hierarchical structures or multiple management layers. The person joining will have the opportunity to become a key cyber intelligence reference inside the company and help shape the direction of the capability from an early stage.

We believe the best cyber analysts create the most value when they have the time and autonomy to think deeply about challenges. Our focus is on analytical depth, innovation, and long-term impact rather than operational overload, excessive bureaucracy, or ticket-driven work.

Responsibilities

  • Analyze malicious domains, URLs, phishing campaigns, malware infrastructure, and other cyber threats.
  • Identify relationships, patterns, and behaviors across large-scale intelligence datasets.
  • Investigate emerging threats and contribute to threat intelligence research.
  • Correlate indicators, infrastructure, and campaigns to improve threat understanding and classification.
  • Define and maintain threat taxonomies, analytical methodologies, and classification frameworks.
  • Produce structured intelligence outputs and actionable insights.
  • Collaborate with data scientists and engineers to improve automation and intelligence workflows.
  • Contribute to the development of AI-assisted analysis, machine learning models, and future detection capabilities.
  • Support initiatives related to threat enrichment, classification, and threat identification.


Requirements


  • 3–5+ years of experience in Cyber Threat Intelligence, Threat Analysis, Cyber Intelligence, Threat Research, or closely related cybersecurity roles.
  • Strong experience investigating phishing campaigns, malicious domains, URLs, malware, digital fraud, or threat infrastructure using large-scale intelligence datasetsβ€”not only individual IOC investigations or incident-driven analysis.
  • Experience identifying relationships between indicators, campaigns, infrastructure, or threat activity beyond individual observables.
  • Strong analytical skills, including the ability to identify patterns, interpret distributions, recognize anomalies, and derive meaningful conclusions from large datasets.
  • Experience using threat intelligence platforms and tools such as VirusTotal, MISP, OpenCTI, Recorded Future, or similar.
  • Good understanding of cyber threats, threat actors, attack techniques, and infrastructure design patterns, with the ability to recognize how they manifest in real-world data.
  • Comfortable working with structured datasets and multi-attribute analytical environments.
  • Basic understanding of data structures and analytical models (e.g., how multiple attributes are combined, clustering logic at a high level).
  • Ability to communicate findings clearly through structured analysis and reporting.
  • Proactive, curious, and adaptable mindset, with a strong interest in improving methodologies and exploring new approaches to threat analysis.
  • Experience working in CERTs, telecom cybersecurity, cybersecurity vendors, threat intelligence teams, or similar environments.

Why Join Us

  • Work on real-world cyber threats at scale.
  • Help build and shape a growing cyber intelligence capability from an early stage.
  • Collaborate directly with engineering specialists and data science while supporting services for security product owners worldwide.
  • Influence how future automation, AI-assisted analysis, and machine learning capabilities are developed.
  • Opportunity to contribute to next-generation threat detection and enrichment initiatives.
  • High ownership, visibility, and impact from day one.
  • Opportunity to become a key cyber intelligence reference within the organization.
  • Environment focused on analytical depth, innovation, collaboration, and sustainable growth.


Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Cyber Threat Intelligence Analyst Related jobs

Other jobs at Allot

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.