Threat Intelligence Reporting and Strategic Insights Analyst, GTIG
- Location
- Reston, VA, USA; New York, NY, USA
- Work model
- On-Site
- Level
- Senior
- Salary
- $147k – $213k/yr
- H-1B history
- 2,460 approvals (FY2023)
- Posted
- 2h ago
Skills
About this role
Google Threat Intelligence Group (GTIG) tracks government-backed cyber operations, financially motivated cyber crime, information operations (IO) threat activity, and emerging AI threat vectors to defend Google and its global user base. The Google Defense Production (GDP) team bridges threat analysis and executive action. We synthesize complex threat research into timely, requirement-driven, actionable intelligence for Google’s internal defenders, executive leadership, product areas, and the broader security community. As a Threat Intelligence Reporting and Strategic Insights Analyst, you will support the end-to-end operationalization of GTIG’s intelligence lifecycle for key internal stakeholders. You will facilitate the production of high-visibility internal reports, drive stakeholder engagement, and integrate artificial intelligence (AI) tools into threat reporting workflows. Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. Individual pay is determined by factors including job-related skills, experience, and relevant education or training. US: $147000 - $213000 (USD) + 15% bonus target + equity + benefits Learn more about benefits at Google .
Drive operational threat intelligence reporting and assist in the identification and refinement of priority intelligence requirements held by internal stakeholders. Collect, correlate and analyze data points derived from a wide array of sources (e.g., internal telemetry, first-party GTIG mission research) to identify adversary trends. Support the end-to-end production lifecycle of multiple cornerstone intelligence deliverables leveraged by varied internal stakeholders and Google product areas. Produce ad hoc, requirement-driven intelligence assessments and forward-leaning analysis that anticipates threats to Google, its product areas and its users. Pilot and integrate AI capabilities (LLMs, NotebookLM, automated templates) to accelerate summarization, trend identification and drafting across the production workflow. Translate technical analysis into clear narratives and data visualizations tailored to both technical defenders and non-technical executive audiences. Leverage feedback mechanisms to refine investigative approaches and improve the clarity, impact and actionability.
Minimum qualifications: Bachelor's degree or equivalent practical experience 5 years of experience with finished intelligence analysis or intelligence reports. Experience with cyber threat intelligence and threat hunting. Preferred qualifications: Experience leveraging generative AI/LLM tools (i.e., prompt engineering, LLM-driven summarization) within intelligence production workflows. Experience querying and analyzing datasets using SQL. Experience in state-sponsored cyber operations, financially-motivated cyber crime, or emerging threats to AI ecosystems. Proficiency in skills associated with the principles of intelligence writing and briefing with the knowledge of structured analytic techniques for intelligence analysis. Understanding of traditional Cyber Threat Intelligence (CTI) indicators of compromise (IOCs) and threat hunting. Ability to work cross-functionally across matrixed organizations to drive risk remediation, cross-team alignment.