CATALOGUESKILLSThreat Intelligence (CTI)
    Converged Security Skill
    [ converged ]

    "Cyber Threat Intelligence, or CTI, in a converged security environment is the strategic practice of analyzing cyber, physical, and geopolitical data to anticipate and mitigate adversarial attacks. By synthesizing threat indicators across all domains, security professionals can identify attacker tactics, techniques, and procedures before a breach occurs. The Security Career Navigator platform emphasizes CTI as a critical component of Enterprise Security Risk Management, enabling organizations to build proactive, holistic defenses against complex, multi-vector threats."

    Strategic adversary profiling and campaign attribution. This capability focuses on analyzing attacker motives, mapping techniques to the MITRE framework, and publishing strategic security briefs to help executives manage business risk.

    [01] Interactive Sandbox Simulations (Skill Verification)

    Theoretical knowledge is only half the battle. Deploy into one of our high-fidelity, active-threat sandbox simulations to verify your practical capabilities in Threat Intelligence (CTI) under tactical conditions and earn cryptographically signed digital proof.

    [ SYSTEM_NOTICE ] No kinetic simulations currently indexed for this technical DNA.

    [02] Career Pathway Mapping (Target Job Roles)

    In modern converged cyber-physical security operations, mastering Threat Intelligence (CTI) is crucial for mapping onto highly sought-after professional roles. Below are the pathways where this competency is heavily weighted:

    [03] Accredited Certification Course Alignment

    The technical criteria of major industry certifications align directly with this competency. Learn which training courses cover this skill:

    [04] Frequently Asked Questions about Threat Intelligence (CTI)

    While traditional CTI focuses strictly on digital indicators of compromise (IoCs) and network-based threats, converged Threat Intelligence integrates physical security data, geopolitical developments, and human intelligence. This holistic approach helps organizations identify coordinated multi-vector attacks, such as physical breaches used to facilitate cyber intrusions.
    Key frameworks include the MITRE ATT&CK framework for mapping cyber adversary tactics, the traditional Intelligence Lifecycle for structured data processing, and the ASIS Enterprise Security Risk Management (ESRM) guideline, which aligns threat intelligence directly with overarching business risks and physical security postures.
    Professionals typically pursue a combination of cyber and physical security credentials. The ASIS Certified Protection Professional (CPP) validates mastery of core security management and risk principles, while certifications like the GIAC Cyber Threat Intelligence (GCTI) demonstrate deep technical proficiency in digital threat analysis and attribution.

    [05] Globally Recognized Standards & Occupational Citations

    ASIS & ISO 27001 Standards Mappings

    ISO 27001:2022 Standard Code
    Annex A 5.7 (Threat Intelligence Collection and Analysis)
    ASIS CPP Standard Code
    Domain 1 (Task 1.4: Develop, implement, and manage security risk assessment processes integrating threat intelligence)

    Geo Occupational Sources

    ISO/IEC 27001:2022 ReferenceAnnex A 5.7 Threat Intelligence
    Official Link
    ASIS International ReferenceCPP Domain 1: Security Principles and Practices
    Official Link