Threat Intelligence Lead
1 week ago
The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence.
This role will report to the CISO.
You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats.
As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure.
What you'll do in this role- Build and own Canonical's threat intelligence strategy
- Build and maintain OSINT research environments
- Develop OSINT tradecraft, principals, and techniques
- Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets
- Collaborate across teams to inform on activity of interest
- Coordinate adversary/campaign tracking
- Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space
- Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies
- Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence
- Identify intelligence gaps and propose new tools and research projects to fill them
- Conduct briefings for executives, internal stakeholders and external customers
- An experienced threat intelligence leader (or similar)
- Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts
- Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)
- Able to identify, organise, catalogue, and track adversary tradecraft trends — often with incomplete data
- Experienced using threat intelligence data to influence enterprise architecture or product development decisions
- An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences
- Able to travel twice a year, for company events up to two weeks long
- A professional portfolio of OSINT related scripts, tools, or frameworks
- Demonstrated involvement in the larger OSINT community (please share relevant links)
- Degree qualified, with a bachelor's degree in computer science, information security, or a related field
- Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)
- Experience in a tech company or government/military signal intelligence departments
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employerWe are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
#LI-remote
-
Intelligence Analyst
3 days ago
Dubai, Dubai, United Arab Emirates ZeroFox Full timeZeroFox is seeking a creative, results-driven Intelligence Analyst with strong analytical skills, regional expertise, and language capabilities. The ideal candidate excels at online investigations, connecting the dots to deliver actionable threat intelligence across cyber, physical, reputational, and compliance domains. You'll assess risks, analyze trends,...
-
Security Threat
1 week ago
Dubai, Dubai, United Arab Emirates The Emirates Group Full time 120,000 - 180,000 per yearJob PurposeJoin our Group Security team, where you will contribute to maintaining the highest standards of security across the Emirates Group. Our diverse security units include Security Training, Group Security Command Center, Airport Security Unit, Crime Prevention & Investigation Unit, Threat & Risk Assessment Unit, Aviation Security Compliance, Assurance...
-
Cyber Threat Risk Manager
20 hours ago
Dubai, Dubai, United Arab Emirates Al Tayer Group Full time $1,500,000 - $3,000,000 per yearJob RoleTo oversee the design and implementation of enterprise-wide cybersecurity architecture, with a strategic focus on securing applications, cloud environments like AWS/Azure, AI systems, and threat intelligence capabilities.This role ensures that cybersecurity architecture aligns with business objectives, regulatory requirements, and the evolving threat...
-
Security Intelligence
7 days ago
Dubai, Dubai, United Arab Emirates REACH Employment Services Full time 90,000 - 120,000 per yearRole DescriptionThis is a full-time on-site role located in Dubai, United Arab Emirates for a Security Intelligence & Analytics – SOC L3. The role involves A Senior Engineer (SOC 5G) Security Analyst proficient in creating 5G security use cases on SOC tools, crafting playbooks, perform root cause analysis and implement security improvements and preventive
-
Senior Threat Emulation Engineer
3 days ago
Dubai, Dubai, United Arab Emirates Glow Beauty on Demand Full time 100,000 - 120,000 per yearA leading aviation company in Dubai seeks a Senior Threat Emulation Engineer to strengthen cybersecurity initiatives. This role involves conducting adversary emulations, maintaining BAS platforms, and collaborating with multiple cybersecurity teams. Candidates should have a degree in IT or related fields and relevant experience, including proficiency in...
-
Lead Operational Engineer
3 days ago
Dubai, Dubai, United Arab Emirates The Emirates Group Full time 120,000 - 180,000 per yearJob PurposeAt Emirates, we believe in connecting the world, to and through, our global hub in Dubai; and in constantly innovating to ensure our customers 'Fly Better'. Emirates Group IT thrives on the dynamic nature of technology. Being pioneers in aviation innovation, we're always at the forefront, pushing boundaries. We're on the lookout for exceptional IT...
-
Business Intelligence Lead
1 week ago
Dubai, Dubai, United Arab Emirates Digital Zone Full time 120,000 - 250,000 per yearRole:Business Intelligence Lead.Location:Hybrid (Dubai, UAE/ Baghdad, Iraq)Reports To:CEO.Employment Type:Full-time (Hybrid)About RahalRahal is the travel mini-app inside Iraq'sSuper Qi ecosystem, a Rocketship redefining how millions of travelers search, book, and manage journeys across flights, hotels, and digital services.We make travel simple, safe, and...
-
Business Intelligence Lead
1 week ago
Dubai, Dubai, United Arab Emirates Rahal Full time 120,000 - 240,000 per yearRole:Business Intelligence Lead, Rahal Location:Hybrid (Baghdad, Iraq / Dubai, UAE)Reports To:CEOEmployment Type:Full-time (Hybrid)About RahalRahal is the travel mini-app inside Iraq's Super Qi ecosystem, a Rocketship redefining how millions of travelers search, book, and manage journeys across flights, hotels, and digital services.We make travel simple,...
-
Security Consultant
3 days ago
Dubai, Dubai, United Arab Emirates CloudSEK Full time $80,000 - $120,000 per yearWHO ARE WE?We are a bunch of super enthusiastic, passionate, and highly driven people, working to achieve a common goal We believe that work and the workplace should be joyful and always buzzing with energyCloudSEK,one of India's most trusted Cyber security product companies, is on a mission to build the world's fastest and most reliable AI technology that...
-
Dubai, Dubai, United Arab Emirates Anonymous Full time 150,000 - 250,000 per yearWe are establishing the scientific foundation for enterprise AI at planetary scale. This is notapplied research — it is the pursuit of intelligence itself as a governed substrate.We seek a Chief Scientist to lead the exploration of frontier sciences where theory meetsplatform, and platform becomes market.The Mandate• Pioneer methodologies that allow...