NXP Semiconductors Logo

NXP Semiconductors

The Cyber Threat Intelligence & Exposure Management Analyst

Posted 18 Days Ago
Be an Early Applicant
In-Office
Oak Hill, Austin, TX, USA
Senior level
In-Office
Oak Hill, Austin, TX, USA
Senior level
Analyzes cyber threats, adversary activity, vulnerabilities, attack surfaces, and organizational exposures. Correlates threat intelligence with asset context and business criticality to prioritize remediation and reduce risk. Conducts investigations, infrastructure analysis, IOC management, and exposure assessments; develops intelligence products, metrics, and executive briefings; and partners with security, engineering, vulnerability management, incident response, cloud security, and risk teams.
The summary above was generated by AI

Role Summary

The Cyber Threat Intelligence & Exposure Management Analyst is responsible for identifying, analyzing, and communicating cyber threats and organizational exposures that present risk to the enterprise. This role combines cyber threat intelligence, attack surface visibility, digital risk monitoring, vulnerability intelligence, and exposure management to deliver actionable insights that improve security posture and reduce business risk.

The analyst continuously monitors the threat landscape, tracks adversary activity, evaluates internal and external exposures, and provides threat-informed prioritization of vulnerabilities, misconfigurations, internet-facing assets, and emerging cyber risks. By correlating intelligence with organizational asset context and business criticality, this role enables Security Operations, Vulnerability Management, Incident Response, Engineering, and Risk teams to focus remediation efforts on the risks that matter most.

Success in this role requires a strong understanding of adversary tradecraft, attack surface management, cyber risk assessment, threat intelligence methodologies, and the ability to translate technical findings into actionable recommendations for both technical and executive audiences.

Job Responsibilities

  • Monitor emerging cyber threats, adversary activity, malware campaigns, vulnerability exploitation trends, and relevant geopolitical developments.
  • Track threat actors and analyze their capabilities, infrastructure, targeting patterns, and tactics, techniques, and procedures (TTPs).
  • Conduct intelligence-driven investigations using internal telemetry, threat intelligence platforms, OSINT, and digital footprint analysis.
  • Discover, inventory, and assess internet-facing assets, cloud resources, domains, certificates, and external attack surfaces that may increase organizational risk.
  • Identify, validate, and prioritize security exposures including vulnerabilities, misconfigurations, exposed services, shadow IT, credential exposures, and third-party risks.
  • Correlate threat intelligence with vulnerability, asset, business criticality, and exposure data to provide risk-based remediation recommendations.
  • Analyze exploitability, adversary activity, KEV intelligence, and emerging attack trends to prioritize remediation efforts.
  • Develop threat-informed exposure assessments and risk reports for security, engineering, and business stakeholders.
  • Lead IOC collection, enrichment, validation, and lifecycle management activities.
  • Maintain intelligence records, exposure findings, indicators, and threat artifacts within intelligence and exposure management platforms.
  • Support continuous attack surface monitoring and identify newly discovered assets, services, and externally exposed technologies.
  • Produce tactical, operational, and strategic intelligence products on threats, exposures, and cyber risks.
  • Deliver intelligence and exposure management briefings to leadership, security teams, and business stakeholders.
  • Support incident response activities through adversary analysis, attribution support, infrastructure investigations, and threat hunting.
  • Partner with Security Operations, Vulnerability Management, Cloud Security, Product Security, and Risk Management teams to drive threat-informed risk reduction.
  • Develop metrics and reporting that measure exposure reduction, remediation effectiveness, vulnerability prioritization, and attack surface risk.
  • Identify intelligence gaps, emerging risks, and opportunities to improve organizational resilience and defensive capabilities.

Professional Experience

  • 5+ years of experience in Cyber Threat Intelligence, Exposure Management, Attack Surface Management, Vulnerability Management, Security Operations, Incident Response, or related cybersecurity disciplines.
  • Experience tracking threat actors, cyber campaigns, exploited vulnerabilities, and emerging threat trends.
  • Demonstrated experience identifying and assessing attack surface risks and external exposures.
  • Experience producing tactical, operational, and strategic intelligence products for technical and executive audiences.
  • Proven ability to correlate threat intelligence, business context, asset criticality, and vulnerability data to support risk-based decision making.
  • Experience conducting investigations involving internet-facing assets, cloud environments, exposed technologies, and digital footprint analysis.
  • Experience supporting vulnerability prioritization, remediation strategies, and threat-informed risk reduction initiatives.

Technical Skills

  • Strong understanding of Cyber Threat Intelligence tradecraft, Exposure Management, Attack Surface Management (ASM), and Risk-Based Vulnerability Management (RBVM).
  • Knowledge of MITRE ATT&CK, ATT&CK Navigator, Cyber Kill Chain, Diamond Model, STIX/TAXII, Intelligence Lifecycle, Structured Analytic Techniques, and Exposure Assessment methodologies.
  • Experience with Exposure Management and ASM platforms such as Cortex Xpanse, CrowdStrike Exposure Management, Rapid7 Exposure Command, Tenable, Wiz, Microsoft Defender EASM, Bitsight, SecurityScorecard, or similar technologies.
  • Experience with Threat Intelligence Platforms such as Anomali, ThreatConnect, ThreatQ, OpenCTI, MISP, or equivalent solutions.
  • Proficiency with intelligence and investigative platforms including Maltego, VirusTotal, Shodan, Censys, GreyNoise, DomainTools, SecurityTrails, URLScan, PassiveTotal, and similar tools.
  • Experience conducting infrastructure analysis involving domains, DNS, passive DNS, IP addresses, ASNs, certificates, cloud services, hosting providers, and internet-facing assets.
  • Understanding of CVSS, EPSS, KEV, vulnerability exploitation trends, threat-informed vulnerability management, and cyber risk quantification concepts.
  • Experience with cloud security concepts, SaaS security, external attack surface discovery, shadow IT identification, and exposure validation.
  • Knowledge of Sigma, YARA, Suricata, Snort, malware analysis principles, and intelligence automation techniques.
  • Experience with Python, automation, APIs, large-scale data analysis, ELK Stack, Databricks, Power BI, and security data correlation workflows.

More information about NXP in the United States...

NXP is an Equal Opportunity/Affirmative Action Employer regardless of age, color, national origin, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, marital status, status as a disabled veteran and/or veteran of the Vietnam Era or any other characteristic protected by federal, state or local law. In addition, NXP will provide reasonable accommodations for otherwise qualified disabled individuals.

#LI-97b2

NXP Semiconductors Austin, Texas, USA Office

Austin, United States, 0

Similar Jobs

61K-113K Annually
Junior
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Manages Personal Injury Protection and Medical Payment claims from investigation through resolution. Evaluates coverage, eligibility, damages, reserves, and medical bills; medically manages claims; negotiates settlements; communicates with claimants, policyholders, providers, attorneys, and other parties; and refers appropriate cases to subrogation or special investigations.
An Hour Ago
Hybrid
77K-202K Annually
Senior level
77K-202K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Advises pharmaceutical and life sciences clients on R&D operations, clinical trial design, organizational design, process optimization, regulatory compliance, analytics, and portfolio management. Develops actionable strategies, executive presentations, and decision-support insights while coordinating projects and client workshops. Guides junior team members, supports change management, and helps clients improve R&D productivity, operational effectiveness, growth, and innovation across the drug development lifecycle.
Top Skills: AnalyticsArtificial Intelligence
An Hour Ago
Hybrid
155K-410K Annually
Senior level
155K-410K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Leads strategic data analytics initiatives, advanced analysis, visualization, and statistical modeling for client engagements. Oversees multiple projects, develops data-driven solutions, ensures data integrity and security, drives innovation and thought leadership, identifies business opportunities, maintains executive client relationships, and mentors analytics teams. The role also sets strategic direction, supports business development, and promotes emerging technologies across the practice.
Top Skills: AdobeAWSAzureDatabricksGoogle Cloud PlatformMicrosoft Sql ServerPower BIPythonSASTableau

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account