Cyber Threat Intelligence Analyst
Cyber Threat Intelligence Analyst
Portugal - Lisbon Apply NowJoin our team at AMGEN Capability Center Portugal, the #1 company in Best Workplaces™ (201–500 employees' category) in Portugal in 2024 by the Great Place to Work Institute. With over 500 talented individuals from more than 40 nationalities, our Lisbon center thrives at the intersection of innovation, excellence, and inspiration. This is your opportunity to explore the future of healthcare through technology and digital innovation, supporting our mission To Serve Patients.
Cyber Threat Intelligence Analyst
At AMGEN, Technology isn’t just a support function—it’s a catalyst for discovery, transformation, and real-world impact. Here, your ideas fuel innovation that improves and saves lives of patients in dire need of our medicines. Are you ready to do meaningful work that matters?
LIVE
WHAT YOU WILL DO
The Cyber Threat Intelligence Analyst (CTI) plays a vital role in enhancing Amgen’s cyber defense posture by identifying, analyzing, and disseminating intelligence related to cyber threats. This role is responsible for gathering and correlating information from various internal and external sources to provide actionable insights that help prevent, detect, and mitigate cybersecurity risks.
The CTI analyst partners with SOC, incident response, and threat hunting teams to proactively identify indicators of compromise (IOCs), tactics, techniques, and procedures (TTPs), and emerging threat actors targeting the healthcare and biotech sectors. This role also contributes to the development of threat models, intelligence reports, and executive briefings.
Let’s do this. Let’s change the world. In this vital role you will:
Collect, analyze, and assess cyber threat intelligence from open-source intelligence (OSINT), commercial feeds, government sources, and internal telemetry.
Develop and maintain profiles of threat actors, their capabilities, infrastructure, and campaigns relevant to Amgen’s industry.
Produce actionable intelligence reports, threat advisories, and strategic briefings for technical teams and senior stakeholders.
Correlate threat intelligence with internal events to support investigations and improve detection capabilities.
Assist in the enrichment of threat hunting and incident response efforts by providing contextual intelligence and TTP mapping.
Track geopolitical and sector-specific threats to anticipate risks that could affect business operations.
Collaborate with SOC and engineering teams to improve detection rules and defense mechanisms based on threat intelligence findings.
Maintain situational awareness of the cyber threat landscape and emerging risks to healthcare, life sciences, and biotechnology sectors.
Support the configuration and maintenance of threat intelligence platforms (TIPs) and threat feed integrations.
Contribute to purple team and threat emulation exercises to validate defensive controls and response capabilities.
WIN
WHAT WE EXPECT OF YOU
We welcome people who bring unique strengths, backgrounds, and perspectives. The ideal candidate is a strong technical leader with a passion for cybersecurity, analytics, and driving continuous improvement in global-scale environments.
Basic Qualifications and Experience:
Master’s degree in Cybersecurity, Information Technology, Intelligence Studies, or related field OR
Bachelor’s degree with 1 year of experience in Cyber Threat Intelligence, Threat Hunting, or a similar security role OR
Diploma with 2 years of relevant experience in threat intelligence or related cybersecurity functions
Functional Skills:
Must-Have Skills:
Strong understanding of the cyber threat landscape, adversary tactics (MITRE ATT&CK), and threat actor methodologies.
Experience conducting intelligence analysis using OSINT, dark web monitoring, threat reports, and threat intelligence platforms.
Ability to write concise, impactful threat intelligence reports tailored to various audiences.
Familiarity with cyber kill chain, diamond model, and intelligence lifecycle.
Basic scripting knowledge (Python, PowerShell) to support enrichment and automation of threat intelligence.
Good-to-Have Skills:
Experience in healthcare, pharmaceutical, or biotech threat landscape.
Knowledge of threat intelligence standards (STIX/TAXII).
Understanding of malware families and APT group behaviors.
Experience with TIPs (e.g., MISP, Anomali, ThreatConnect).
Ability to brief senior leadership on strategic and operational threats.
Professional Certifications:
GIAC Cyber Threat Intelligence (GCTI)
Certified Threat Intelligence Analyst (CTIA)
CompTIA Cybersecurity Analyst (CySA+)
Certified Information Systems Security Professional (CISSP)
Soft Skills:
Analytical mindset and curiosity to track complex threats and trends.
Excellent communication and collaboration skills, especially in a cross-functional, global environment.
Ability to handle ambiguity and prioritize in a dynamic threat landscape.
Commitment to ongoing learning and development in the CTI field.
THRIVE
WHAT YOU CAN EXPECT OF US
As we work to develop treatments that take care of others, we also care deeply for our teammates’ well-being and growth.
Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide.
Modern Tech Stack – Cloud-first, automation-focused, AI-powered.
Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams.
Continuous Learning – Access to certifications, trainings, mentorship, and career mobility.
AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being.
Flexibility – Hybrid work model with time split between our Lisbon office and remote work.
APPLY NOW
Objects in your future are closer than they appear. Join us.
CAREERS.AMGEN.COM
EQUAL OPPORTUNITY STATEMENT
AMGEN is an Equal Opportunity employer and will consider you without regard to your race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.
We will ensure that individuals with disabilities are provided a reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.