IT et développement
Threat Intelligence Lead - poste à distance
Canonical Ltd.
Le lien mène à l'annonce d'origine. Donator ne reçoit aucune candidature.
Threat Intelligence Lead - IT et développement, à distance
L'entreprise Canonical Ltd. recrute : Threat Intelligence Lead. C'est un poste d'encadrement, donc la responsabilité d'une équipe ou de tout un périmètre. Le poste relève de la catégorie IT et développement et se fait entièrement à distance. Aucune restriction n'est posée sur le lieu de résidence du candidat, vous pouvez donc postuler de partout.
L'entreprise n'a publié aucun chiffre, cela se règle en entretien. L'annonce ne pose aucune condition d'horaires.
Cette offre a passé un contrôle automatique : les annonces qui exigent un permis de travail étranger, un parrainage de visa, une nationalité précise ou une résidence dans un pays nommé n'entrent pas dans la liste.
En bref
- Entreprise
- Canonical Ltd.
- Catégorie
- IT et développement
- Qui peut postuler
- De n'importe quel pays du monde
- Mode de travail
- Entièrement à distance
- Niveau
- Encadrement
- Type de contrat
- Temps plein
- Publiée
- 22 août 2026 (hier)
- Validité
- jusqu'au 1er octobre 2026
- Origine
- Jobicy
Nouvelles offres par e-mail : IT et développement
Le tableau est actualisé plusieurs fois par jour. Nous n'écrivons que lorsqu'une nouvelle offre vérifiée paraît. Pas de spam, aucun compte à créer.
Déjà abonné ? Gérer vos préférences
La description de l'entreprise
The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well as with the wider cybersecurity community, making sure that Canonical is recognised as a thought leader on open source threat intelligence. This role will report to the CISO. You will lead intelligence gathering and development activities on threat actors targeting software supply chains. You'll study attack trends across the wider open source software landscape, report findings to internal security teams, and advise the wider engineering community on the best course of action to detect and mitigate possible threats. As the publisher of Ubuntu, Canonical products are directly or indirectly present in almost every organisation and household in the world, making them a prime target for threat actors. This team's mission is to help Canonical, and by extension countless community members and companies around the world, secure their software infrastructure. What you’ll do in this role
* Build and own Canonical’s threat intelligence strategy
* Build and maintain OSINT research environments
* Develop OSINT tradecraft, principals, and techniques
* Identify and track targeted intrusion cyber threats, trends, and new developments by cyber threat actors through analysis of proprietary and open source datasets
* Collaborate across teams to inform on activity of interest
* Coordinate adversary/campaign tracking
* Contribute to the wider threat intelligence community, establishing Canonical as a key contributor and thought leader in the space
* Work with product and engineering teams to explain cybersecurity threats and advise on mitigation strategies
* Work with the OPSEC and IS team to help implement/update security controls prioritising cyber defence
* Identify intelligence gaps and propose new tools and research projects to fill them
* Conduct briefings for executives, internal stakeholders and external customers
The successful Threat Intelligence Lead will be
* An experienced threat intelligence leader (or similar)
* Knowledgeable about the current open source threat landscape and computer networking/infrastructure concepts
* Highly competent with OSINT tools (e.g., Buscador, Trace Labs OSINT VM, OSINT Framework, Maltego, Shodan, social media scraping tools, etc.)
* Able to identify, organise, catalogue, and track adversary tradecraft trends - often with incomplete data
* Experienced using threat intelligence data to influence enterprise architecture or product development decisions
* An excellent communicator with the ability to clearly articulate and tailor technical content to a variety of audiences
* Able to travel twice a year, for company events up to two weeks long
Desired Characteristics
* A professional portfolio of OSINT related scripts, tools, or frameworks
* Demonstrated involvement in the larger OSINT community (please share relevant links)
* Degree qualified, with a bachelor's degree in computer science, information security, or a related field
* Certifications in related areas (e.g. GOSI, SANS SEC487 & SEC587, IntelTechniques OSIP, etc)
* Experience in a tech company or government/military signal intelligence departments
What we offer you We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
* Distributed work environment with twice-yearly team sprints in person
* Personal learning and development budget of USD 2,000 per year
* Annual compensation review
* Recognition rewards
* Annual holiday leave
* Maternity and paternity leave
* Employee Assistance Programme
* Opportunity to travel to new locations to meet colleagues
* Priority Pass, and travel upgrades for long haul company events
About Canonical Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game. Canonical is an equal opportunity employer We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration. #LI-remote
Le texte est conservé dans la langue d'origine de l'entreprise, car c'est dans cette langue que vous postulerez.
Questions fréquentes sur cette offre
Puis-je postuler au poste de Threat Intelligence Lead depuis là où je vis ?
Oui. Pour cette offre, Canonical Ltd. accepte des candidats de n'importe quel pays du monde, vous n'avez donc besoin d'aucun permis de travail pour un autre pays. L'annonce a passé un contrôle automatique : si l'entreprise avait exigé un permis de travail, un parrainage de visa ou une résidence dans un pays précis, elle ne figurerait pas sur ce tableau.
Quelle rémunération est indiquée ?
Pour cette offre, Canonical Ltd. n'a publié aucune rémunération. La plupart des annonces à distance ne donnent aucun chiffre, cela se règle en entretien.
Comment postuler ?
Vous postulez directement auprès de l'entreprise, via l'annonce d'origine publiée sur Jobicy. Donator ne reçoit aucune candidature, ne prend aucune commission et ne conserve aucun CV.
De quel type d'offre s'agit-il ?
Un poste entièrement à distance dans la catégorie IT et développement. Les annonces hybrides et tout ce qui impose une présence au bureau ne sont pas publiés sur ce tableau.
Certificats gratuits pour cette offre
Les certificats gratuits qui pèsent le plus dans ce domaine. Chacun est vérifié sur la page du fournisseur lui-même.
Applied Skills (scenario-based credentials)
exam is free tooMicrosoft · ~1 h
Microsoft's only free verifiable credential: a lab task in 30-45 minutes, with no proctor, no ID check and no card. Retakes are allowed.
It has to be finished in one session; there is no save and resume.
strong brandOCI Foundations Associate
exam is free tooOracle · ~12 h
A rare case where the certification exam itself is free and needs no Pearson VUE: you sit it inside MyLearn. Take the 2026 track, not the 2025 one.
Oracle's pages load via JS; confirm the $0 on the final step of registration.
strong brandValid: 18-24 monthsCS50x: Introduction to Computer Science
certificateHarvard CS50 · ~100 h
Harvard's own branded certificate is free once you pass every problem set and the final project. The edX verified certificate is a separate paid product and is not needed.
strong brandCS50P: Programming with Python
certificateHarvard CS50 · ~60 h
Same mechanism as CS50x: at least 70% on every assignment plus a final project. The certificate does not expire.
strong brand
Offres similaires
DevOps Engineer
Newel Health · aujourd'hui
NouveauDepuis l'EuropePythonAWSSenior Software Engineer
$170k - $220k par anMedallion · aujourd'hui
NouveauDepuis partoutSalesforceSenior Site Reliability Engineer
Canonical Ltd. · hier
NouveauDepuis partoutPythonKubernetesEngineering Manager - Solutions Engineering
Canonical Ltd. · hier
NouveauDepuis partoutPythonKubernetes
