Director of Cyber Threat Intelligence (CTI)
AstraZeneca
August 27, 2026
Full-time
Remote friendly (Gaithersburg, MD)
Worldwide
IT
Role: Lead AstraZeneca's Cyber Threat Intelligence (CTI) function within Cybersecurity Operations, focusing on strategic, operational, and tactical risk reduction across enterprise assets including manufacturing, clinical trial platforms, and R&D environments. Responsibilities: define CTI vision and roadmap, develop adversary prioritization and attack path models, monitor dark web and closed channels for emerging threats, lead adversary attribution efforts, support vulnerability management and detection engineering, provide real-time threat context for incident response, produce intelligence reports, automate tooling workflows, engage with industry partners, and lead team development. Qualifications: 10+ years in cyber threat intelligence, detection, or incident response; 5+ years in leadership roles within global enterprises; deep expertise with MITRE ATT&CK (including ICS), attack path modeling, adversary scoring, and risk quantification; experience in pharma or healthcare sectors with familiarity of GMP/CSV and R&D data security; strong stakeholder communication skills. Preferred: experience with OT/ICS security, clinical data platforms, threat modeling, automation tools, and certifications such as GCTI, CISSP, or GREM. High-Value: extensive threat actor profiling, vulnerability and patching prioritization, detection development, and external collaboration in H-ISAC/ISAO environments. Work setup: based in Gaithersburg, Maryland, with a flexible in-office schedule (minimum 3 days/week). The role emphasizes technical excellence, leadership, cross-functional collaboration, and integration of AI tools to enhance security outcomes.