CATALOGUEconvergedThreat Intelligence Analyst
    Converged CSO
    [ Security Operations (Blue Team) ]
    [ Intelligence & Investigation ]

    CAREER_NODE_PROFILE

    "The Threat Intelligence Analyst is a critical strategic and tactical role responsible for identifying, analyzing, and tracking advanced persistent threats (APTs), cybercriminal syndicates, and hacktivist groups. This role leverages the intelligence cycle to collect telemetry from open-source intelligence (OSINT), dark web forums, and proprietary threat feeds. Daily operations involve mapping adversary tactics, techniques, and procedures (TTPs) against the MITRE ATT&CK framework, producing actionable intelligence reports, and disseminating findings to security operations centers (SOC), incident response teams, and executive leadership. By profiling threat actors and providing geopolitical risk context, the analyst bridges the gap between technical telemetry and strategic business risk, enabling proactive defense engineering, accelerating incident triage, and fortifying the organization's overall cybersecurity posture."

    Excel in the high-demand role of a Threat Intelligence Analyst by mastering its core dependencies. Our structured Career DNA system maps the critical skills like Threat Intelligence (CTI), Threat Actor Profiling, Tactical Threat Intel (feeds) alongside verified certification pipelines to give you an industrial-grade, audit-ready training pathway tailored specifically for converged physical-cyber audits, insider threat mitigation, and unified risk response.

    [01] What core skills are required for a Threat Intelligence Analyst?

    To succeed as a Threat Intelligence Analyst, security operators must master several technical skills. The chart below lists the critical competencies, their recommended baseline level, and their relative criticality weighting for this specific career profile:

    [02] What certification pathways are recommended for a Threat Intelligence Analyst?

    No linked courses in DNA stream

    [03] What converged risk orchestration and command simulations verify Threat Intelligence Analyst capabilities?

    Verify your real-world capability under fire. The following active emulations and sandbox scenarios are mapped directly to the technical requirements of a Threat Intelligence Analyst:

    Verification Required

    VECTOR-LOCK: Trading Floor Compromise

    ID: SECM-8402Deploy
    Verification Required

    Operation Helix-Chain: Ransomware Triage

    ID: SECM-4205Deploy
    Verification Required

    Active Threat Hunt: SPECTER-STORM

    ID: SECM-4633Deploy