Skip to content

Open nowPosted 12 days ago

Cybersecurity Threat Intelligence Analyst

NiSource37 open roles

Where
Columbus OH Arena District
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCybersecurity Threat Intelligence AnalystNiSource · Columbus OH Arena District
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on NiSource's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. NiSource postings stay open a median of 3 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.6%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.0%30 days
This job: posted 12 days ago

NiSource median: 3 days open

The posting

Cybersecurity Threat Intelligence Analyst

Full Time Perm

Shift: Hybrid - 3 days on location

Salary: $96,600 - $144,900 with 8% annual bonus

Location: Columbus, OH or Merrillville, IN

Relocation Assistance Provided

NiSource is one of the largest fully regulated utility companies in the U.S., serving millions of customers across six states. We’re more than an energy provider—we’re a team committed to innovation, inclusion, and growth. At NiSource, you’ll find a workplace that encourages collaboration, supports professional development, and empowers employees to make an impact.

The Cybersecurity department ensures the confidentiality, integrity, and availability of NiSource assets to achieve the company mission. We excel in engineering sophisticated defenses, architecting resilient systems, and proactively defending the vital cyber infrastructure that is crucial to our business operations. At NiSource, the Cybersecurity Consultants provide the critical bridge between security theory and practice, offering insights that shape our security strategies

The Cybersecurity and Physical Threat Intelligence Team plays a pivotal role in identifying and analyzing cyber and physical threats, emerging risks, and industry developments. Our team partners closely with Cybersecurity Incident Response, Physical Security Operations, Cyber Risk Management, and various other partners to detect and mitigate potential threats to the business across our digital and physical environments. As cyber and physical threats continue to converge, our fused intelligence program drives cohesion, a proactive approach, and strengthens information-sharing practices across the Enterprise Security department.

As a Cybersecurity Threat Intelligence Analyst, you will collect, analyze, and interpret threat data, build strategic intelligence products based on documented trends, employ frameworks such as NIST CSF, and inform security protocols based on actionable intelligence. You will have the opportunity to support and further develop insider risk projects and insider threat investigations. You will work with a range of stakeholders across Enterprise Security to deliver intelligence-led insights for incident response, threat hunting, and cyber defense activities. You will also play a key role in improving intelligence processes, reporting, and automation capabilities while building strong relationships across the organization and with external partners.

Your responsibilities may include, but are not limited to:

  • Monitor, analyze, track, and report on evolving threat trends related to the company, industry, or critical infrastructure and national security more broadly
  • Conduct advanced open-source intelligence (OSINT) research and investigations into cyber threat actors, origins, motives, TTPs, emerging trends, and geopolitical developments. Assess how geopolitical and societal developments drive cyber activity over time and impact the organization
  • Synthesize large volumes of multi-source intelligence and technical processes into concise products and executive-level briefings to ensure that senior leaders get a clear understanding of threat activity, related risks, business implications, and recommended mitigations or controls
  • Support tactical intelligence collection and reporting, including monitoring for indicators like IOCs or malicious IPs, leveraging tools for detection, and validation within NiSource systems, and providing actionable intelligence to Incident Response
  • Respond and support Cybersecurity or Physical Security teams during high-impact incidents. Compile available intelligence into timely, high-confidence products
  • Continue to update key stakeholders throughout a security or crisis event to provide essential information, translate technical information for a business audience, and support overall business response and recovery efforts
  • Assist in developing new intelligence reporting thresholds, templates, products, and data collection mechanisms
  • Develop and maintain intelligence metrics, dashboards, investigative records, and KPIs to ensure that team activities are measurable and aligned to business objectives
  • Utilize intelligence tools and platforms such as Dataminr, Recorded Future, ZeroFox, and other OSINT capabilities to support routine monitoring, investigations, and analysis
  • Facilitate and develop new data connections for Power BI dashboards (database development) used for insider risk detection and tracking. Perform regular updates to API connections and dashboards as the Insider Risk and Threat programs evolve
  • Collaborate closely with other team members and Cybersecurity verticals to conduct investigations, validate findings, support incident response efforts, and enhance information sharing across the physical and cyber disciplines
  • Participate periodically in procedural audits, analytic reviews, lessons-learned sessions, or after-action reports
  • Continuously refine sourcing strategies and help evaluate technology needs within the changing AI and information security environment
  • Contribute to updating team methodologies and build on intelligence tradecraft through professional development opportunities
  • Participate in collaborative benchmarking discussions with internal and external partners, including government and law enforcement agencies

You must possess the below minimum qualifications to be initially considered for this position. Preferred qualifications are in addition to the minimum requirements and are considered a plus factor in identifying top candidates.

Minimum Qualifications

  • Bachelor’s degree or equivalent experience
  • 4+ years of experience in Cyber Threat Intelligence, Cyber Security Operations, Incident Response, Intelligence Analysis, or related fields in the public or private sectors
  • 4+ years of experience applying the intelligence lifecycle, MITRE ATT&CK framework, cybercrime analysis, threat actor tactics and techniques, or cyber risk management principles
  • 4+ years of experience producing all-source intelligence reports, briefings, and assessments for both technical and senior business audiences
  • 4+ years of experience utilizing threat intelligence platforms and OSINT tools such as Dataminr, Recorded Future, ZeroFox, Flashpoint, CrowdStrike, or Google SecOps/CTI
  • 2+ years of experience in database and dashboard development, ideally with the Azure Databricks Lakehouse platform and Power BI
  • Proficiency in Python (PySpark) and Spark SQL for large-scale data transformation

Preferred Qualifications

  • Advanced degree or industry certifications such as GCTI, CTIA, CISSP, GIAC, SANS, or equivalent
  • 5+ years in a strategic Cyber Threat Intelligence role with experience developing a wide array of analytic intelligence products for senior leaders and iterating on intelligence processes, methodologies, and program KPIs
  • Excellent writing, verbal, and interpersonal skills
  • Ability to adapt to a fast-paced and innovative work environment
  • Strong analytical, problem-solving, and communication skills, with the ability to translate complex cyber issues into clear and actionable insights
  • Experience with the utility or energy industry
  • Experience with AI and ML technologies in Cybersecurity

Disclaimer

The preceding description is not designed to be a complete list of all duties and responsibilities required of the position.

***Please note there is a short open-ended questionnaire to complete regarding your work experience towards the end of the application. This questionnaire can take up 10 - 15 minutes to complete.***

#Cybersecurity #CyberThreatIntel #ThreatIntelligence #ThreatHunting #IntelligenceAnalysis #ProtectiveIntelligence #WomenInTech #HybridJob #OhioMeansJobs #Columbus #Ohio #OH #NowHiring #BI #BusinessIntelligence #DataAnalysis #DataSci #DataAnalyst #PowerBI #Databricks #AzureDatabricks #SQL #Python #DataVisualization #Chicago

As a public utility, NiSource provides essential services to customers 24/7. Emergency needs can arise at various times throughout the year, including during storm season. Employees may be required to support emergency response efforts, which could include working outside normal hours or assisting with tasks outside of typical responsibilities.

Work Authorization

Candidates must be legally authorized to work in the United States and must not require employer sponsorship now or in the future.

Workplace Connection We value a workplace where everyone feels respected, included, and able to do their best work. We encourage open dialogue, value different perspectives, and work collaboratively with employees, customers, and partners.

We recognize and respect the unique experiences people bring, including different backgrounds, cultures, and viewpoints. We treat others with professionalism and care, and we each play a part in creating a positive work environment.

Veteran Hiring & Inclusion

NiSource is proud to support veterans, transitioning service members, and military spouses. We value the leadership, teamwork, and mission-focused experience the military community brings, and we are committed to providing an inclusive workplace with opportunities for professional growth and development.

Equal Employment Opportunity NiSource is committed to providing equal employment opportunities in each of its companies to all employees and applicants for employment without regard to race, color, religion, national origin or ancestry, veteran status, disability, gender, age, marital status, sexual orientation, gender identity, sex (including pregnancy, lactation, childbirth or related medical conditions), genetic information, citizenship status, or any protected group status as defined by law. Each employee is expected to abide by this principle.

By applying, you may also be considered for other roles that match your skills and experience.

ADA Accommodations

If you need a reasonable accommodation to participate in any stage of the hiring process or to perform the essential functions of the position, please contact OneHR at [email protected] or 1-888-640-3320

Safety Statement Safety is a core value at NiSource. Employees are expected to follow safety requirements, report hazards, and help maintain a safe environment for themselves and their coworkers.

E-Verify

NiSource participates in the U.S. Department of Homeland Security's E-Verify program. Please review the following notices regarding your rights and responsibilities under U.S. law.

  • E-Verify Poster (English and Spanish)
  • Right to Work Poster (English and Spanish)

Salary Range*:

$96,600.00 - $144,900.00

*The salary offered to a candidate is based on several factors including but not limited to the candidate’s skills, job-related knowledge, and relevant experience, as well as internal pay equity.

Posting Start Date:

2026-09-25

Posting End Date (if applicable):

Please note that the job posting will close on the day before the posting end date.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against NiSource's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on NiSource's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    NiSource's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.