Cybersecurity Threat Intelligence Manager
Job Description
From a security operations hub to strategic defense planning, this role anchors a robust threat intelligence program at CGI Group. In a hybrid arrangement based in Knoxville, TN or Fairfax, VA, the manager directs enterprise-level intelligence gathering, correlation, analysis, and dissemination to enable proactive detection and threat-informed defense. This position leads threat intelligence efforts, aligns outputs with the SOC and engineering teams, and leverages SIEM and TIP technologies to turn complex data into actionable insights for leadership and operations.
Responsibilities
- Oversee all enterprise threat intelligence activities, including PIR and CIR management
- Direct the operation of intelligence repositories, covering indicators, feeds, reports, and correlation artifacts
- Lead threat hunting operations and monitor the tracking and analysis of emerging threats
- Ensure intelligence outputs align with the operational needs of the SOC and engineering teams
- Utilize SIEM and Threat Intelligence Platform (TIP) tools to aggregate, enrich, and disseminate intelligence
- Identify threats and vulnerabilities with mission or business impact
- Provide strategic threat assessments for senior leadership
Requirements
- Bachelor's degree or CISSP/CISM
- 7+ years of experience in threat intelligence, cyber intelligence, or counter-intelligence roles
- Experience managing PIR/CIR requirements and structured intelligence functions
- Familiarity with intelligence repositories, threat-data management, and correlation workflows
- Experience with SIEM and TIP technologies
- Strong analytical and communication skills
Technologies
- SIEM
- Threat Intelligence Platform (TIP)
- SOAR
Benefits
- Competitive compensation
- Comprehensive insurance options
- Matching contributions through the 401(k) plan and the share purchase plan
- Paid time off for vacation, holidays, and sick time
- Paid parental leave
- Learning opportunities and tuition assistance
- Wellness and Well-being programs
Desired Qualifications / Non-Essential Skills
- Formal threat-intel training (SANS, GIAC, FBI/Cyber/Intel programs)
- Experience supporting federal mission partners
- Experience integrating threat intelligence with SOAR or automation platforms
- Experience leading threat hunting teams