609,983open jobs
32,963companies
86,576added this week
Browse all
Salary
$120k – $246k per year (Estimated)
Location
In office (Austin)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
NXP Semiconductors is a Dutch chipmaker established in 2006 when Philips spun out its semiconductor division, and it concentrates on embedded processing rather than general purpose computing. Its largest market is automotive, where it supplies radar sensors, vehicle networking, battery management and the secure processors behind keyless entry and digital car keys, alongside industrial and internet of things microcontrollers, mobile secure elements and communications infrastructure silicon. Headquartered in Eindhoven and listed on Nasdaq, it is one of the leading suppliers of near field communication and automotive processing chips in the world.

Role Summary

The Cyber Threat Intelligence & Exposure Management Analyst is responsible for identifying, analyzing, and communicating cyber threats and organizational exposures that present risk to the enterprise. This role combines cyber threat intelligence, attack surface visibility, digital risk monitoring, vulnerability intelligence, and exposure management to deliver actionable insights that improve security posture and reduce business risk.

The analyst continuously monitors the threat landscape, tracks adversary activity, evaluates internal and external exposures, and provides threat-informed prioritization of vulnerabilities, misconfigurations, internet-facing assets, and emerging cyber risks. By correlating intelligence with organizational asset context and business criticality, this role enables Security Operations, Vulnerability Management, Incident Response, Engineering, and Risk teams to focus remediation efforts on the risks that matter most.

Success in this role requires a strong understanding of adversary tradecraft, attack surface management, cyber risk assessment, threat intelligence methodologies, and the ability to translate technical findings into actionable recommendations for both technical and executive audiences.

Job Responsibilities

  • Monitor emerging cyber threats, adversary activity, malware campaigns, vulnerability exploitation trends, and relevant geopolitical developments.
  • Track threat actors and analyze their capabilities, infrastructure, targeting patterns, and tactics, techniques, and procedures (TTPs).
  • Conduct intelligence-driven investigations using internal telemetry, threat intelligence platforms, OSINT, and digital footprint analysis.
  • Discover, inventory, and assess internet-facing assets, cloud resources, domains, certificates, and external attack surfaces that may increase organizational risk.
  • Identify, validate, and prioritize security exposures including vulnerabilities, misconfigurations, exposed services, shadow IT, credential exposures, and third-party risks.
  • Correlate threat intelligence with vulnerability, asset, business criticality, and exposure data to provide risk-based remediation recommendations.
  • Analyze exploitability, adversary activity, KEV intelligence, and emerging attack trends to prioritize remediation efforts.
  • Develop threat-informed exposure assessments and risk reports for security, engineering, and business stakeholders.
  • Lead IOC collection, enrichment, validation, and lifecycle management activities.
  • Maintain intelligence records, exposure findings, indicators, and threat artifacts within intelligence and exposure management platforms.
  • Support continuous attack surface monitoring and identify newly discovered assets, services, and externally exposed technologies.
  • Produce tactical, operational, and strategic intelligence products on threats, exposures, and cyber risks.
  • Deliver intelligence and exposure management briefings to leadership, security teams, and business stakeholders.
  • Support incident response activities through adversary analysis, attribution support, infrastructure investigations, and threat hunting.
  • Partner with Security Operations, Vulnerability Management, Cloud Security, Product Security, and Risk Management teams to drive threat-informed risk reduction.
  • Develop metrics and reporting that measure exposure reduction, remediation effectiveness, vulnerability prioritization, and attack surface risk.
  • Identify intelligence gaps, emerging risks, and opportunities to improve organizational resilience and defensive capabilities.

Professional Experience

  • 5+ years of experience in Cyber Threat Intelligence, Exposure Management, Attack Surface Management, Vulnerability Management, Security Operations, Incident Response, or related cybersecurity disciplines.
  • Experience tracking threat actors, cyber campaigns, exploited vulnerabilities, and emerging threat trends.
  • Demonstrated experience identifying and assessing attack surface risks and external exposures.
  • Experience producing tactical, operational, and strategic intelligence products for technical and executive audiences.
  • Proven ability to correlate threat intelligence, business context, asset criticality, and vulnerability data to support risk-based decision making.
  • Experience conducting investigations involving internet-facing assets, cloud environments, exposed technologies, and digital footprint analysis.
  • Experience supporting vulnerability prioritization, remediation strategies, and threat-informed risk reduction initiatives.

Technical Skills

  • Strong understanding of Cyber Threat Intelligence tradecraft, Exposure Management, Attack Surface Management (ASM), and Risk-Based Vulnerability Management (RBVM).
  • Knowledge of MITRE ATT&CK, ATT&CK Navigator, Cyber Kill Chain, Diamond Model, STIX/TAXII, Intelligence Lifecycle, Structured Analytic Techniques, and Exposure Assessment methodologies.
  • Experience with Exposure Management and ASM platforms such as Cortex Xpanse, CrowdStrike Exposure Management, Rapid7 Exposure Command, Tenable, Wiz, Microsoft Defender EASM, Bitsight, SecurityScorecard, or similar technologies.
  • Experience with Threat Intelligence Platforms such as Anomali, ThreatConnect, ThreatQ, OpenCTI, MISP, or equivalent solutions.
  • Proficiency with intelligence and investigative platforms including Maltego, VirusTotal, Shodan, Censys, GreyNoise, DomainTools, SecurityTrails, URLScan, PassiveTotal, and similar tools.
  • Experience conducting infrastructure analysis involving domains, DNS, passive DNS, IP addresses, ASNs, certificates, cloud services, hosting providers, and internet-facing assets.
  • Understanding of CVSS, EPSS, KEV, vulnerability exploitation trends, threat-informed vulnerability management, and cyber risk quantification concepts.
  • Experience with cloud security concepts, SaaS security, external attack surface discovery, shadow IT identification, and exposure validation.
  • Knowledge of Sigma, YARA, Suricata, Snort, malware analysis principles, and intelligence automation techniques.
  • Experience with Python, automation, APIs, large-scale data analysis, ELK Stack, Databricks, Power BI, and security data correlation workflows.

More information about NXP in the United States...

NXP is an Equal Opportunity/AffirmativeAction Employer regardless of age, color, national origin, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, marital status, status as a disabled veteran and/or veteran of the Vietnam Era or any other characteristic protected by federal, state or local law. In addition, NXP will provide reasonable accommodations for otherwise qualified disabled individuals.

#LI-97b2
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
609,983 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Austin
$56k – $147k per year (Estimated) • Remote/Hybrid • Internship • Master's Degree • Ireland
Python
JavaScript
SQL
C#
Analytics
Power BI
Apply
$37k – $61k per year (Estimated) • Remote/Hybrid • Internship • Bachelor's Degree • Dublin
Python
MATLAB
Analytics
Power BI
Apply
$140k – $170k per year • Remote/Hybrid • Full-Time • 10+ years exp • New York
Python
JavaScript
Java
SQL
Scala
AI/ML
Hadoop
Spark
Frontend
JQuery
DevOps
Ansible
CI/CD
Jenkins
AWS
AWS Lambda
Amazon EC2
Amazon S3
QA
Selenium
Cucumber
Apply
In office • Internship • Dublin
Analytics
Power BI
Management
ServiceNow
Apply
$35k – $57k per year (Estimated) • In office • Internship • Ireland
Robotics
Digital Twin
Analytics
Power BI
Apply
$92k – $186k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Austin • Chandler
AI/ML
NLP
Semantic Search
Management
Jira
Agile
Apply
$116k – $238k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Austin
DevOps
GCP
Azure
AWS
Cybersecurity
MITRE ATT&CK
Cyber Kill Chain
Apply
$126k – $257k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Austin
AI/ML
Model Context Protocol
AI Agents
LLM
LLM Guardrails
NIST AI RMF
DevOps
Azure
AWS
Platform Engineering
IAM
Cybersecurity
OWASP Top 10
Apply
$147k – $282k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Austin
AI/ML
Model Context Protocol
Embeddings
AI Agents
LLM
RAG
Anomaly Detection
LLM Guardrails
NIST AI RMF
Agentic Workflows
DevOps
Azure
AWS
Platform Engineering
Vector
IAM
Cybersecurity
OWASP Top 10
Threat Modeling
Apply
$123k – $252k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Austin
AI/ML
LLM
RAG
NIST AI RMF
DevOps
Azure
AWS
IAM
Cybersecurity
OWASP Top 10
OWASP ASVS
Apply
$149k – $271k per year (Estimated) • In office • Full-Time • 12+ years exp • Bachelor's Degree • Austin
Apply
$90k – $150k per year • Remote • Full-Time • 5+ years exp • Austin
Management
Outlook
Apply
$78k – $164k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Austin
Management
SharePoint
Apply
EHS Director 1 day ago
$144k – $264k per year (Estimated) • In office • Full-Time • 15+ years exp • Bachelor's Degree • Austin
Apply
$168k – $282k per year • Equity • Remote • Full-Time • 7+ years exp • Bachelor's Degree • Denver • Austin • Boulder • Chicago
Python
JavaScript
C++
AI/ML
AI Agents
DevOps
Splunk
GCP
AWS
Apply
See all jobs
This is one of many
609,983 more open roles from verified company boards, updated every day.