Cybersecurity Threat Intelligence Analyst
Shift:Hybrid - 3 days on location
Salary:$96,600 - $144,900 with 8% annual bonus
Location:Columbus, OH, Merrillville, IN, Lexington, KY, Chester,VA,Canonsburg, PA, or Washington, DC
Relocation Assistance Provided
NiSource is one of the largest fully regulated utility companies in the U.S., serving millions of customers across six states.We'remore than an energy provider-we'rea team committed to innovation, inclusion, and growth. At NiSource,you'llfind a workplace that encourages collaboration, supports professional development, and empowers employees to make an impact.
The Cybersecurity department ensures the confidentiality, integrity, and availability of NiSource assets to achieve the company mission. We excel in engineering sophisticated defenses, architecting resilient systems, and proactively defending the vital cyber infrastructure that is crucial to our business operations.At NiSource, the Cybersecurity Consultants provide the critical bridge between security theory and practice, offering insights that shape our security strategies
TheCybersecurity and Physical Threat Intelligence Teamplays a pivotal role inidentifyingand analyzingcyberand physicalthreats, emerging risks, and industry developments.Our team partners closely withCybersecurityIncidentResponse, Physical Security Operations,CyberRiskManagement,andvarious other partners todetect and mitigatepotentialthreats tothe business across our digital and physical environments.As cyber and physical threats continue to converge, our fusedintelligenceprogramdrivescohesion, a proactive approach,andstrengthensinformation-sharing practices across the Enterprise Security department.
As aCybersecurity Threat IntelligenceAnalyst,you willcollect, analyze,and interpret threat data,build strategic intelligence products based on documented trends,employ frameworks such as NIST CSF,andinform security protocolsbased on actionable intelligence.You will have the opportunity to support andfurther developinsider risk projects and insider threat investigations.You will work with a range of stakeholdersacross Enterprise Securityto deliver intelligence-led insights for incident response,threathunting,and cyber defense activities. You willalso playa key rolein improving intelligence processes, reporting,and automation capabilities while building strong relationships across the organization and with external partners.
Your responsibilities may include, but are not limited to:
Monitor, analyze, track, and report on evolving threat trends related to the company, industry, orcritical infrastructure andnational security more broadly
Conduct advanced open-source intelligence (OSINT) research and investigationsintocyberthreat actors,origins,motives,TTPs,emergingtrends,andgeopolitical developments. Assess how geopolitical and societal developments drive cyber activityover timeandimpacttheorganization
Synthesizelarge volumes of multi-source intelligenceand technical processesinto concise products and executive-level briefingsto ensure that senior leadersget a clear understanding of threat activity, related risks,business implications, and recommended mitigations or controls
Support tacticalintelligence collection and reporting, includingmonitoring forindicators likeIOCsor malicious IPs,leveragingtools fordetection, and validation within NiSource systems, and providing actionable intelligence to Incident Response
Respond and support Cybersecurityor Physical Securityteams during high-impact incidents. Compileavailableintelligence intotimely, high-confidence products
Continue to update key stakeholders throughout a security or crisis eventto provide essential information, translate technical information for a business audience, and support overall business response and recoveryefforts
Assistin developing new intelligence reporting thresholds, templates, products, and data collection mechanisms
Developandmaintainintelligence metrics,dashboards, investigative records,and KPIs to ensure that team activities aremeasurable and aligned to businessobjectives
Utilize intelligence tools and platforms such asDataminr, Recorded Future,ZeroFox, and other OSINT capabilities to support routine monitoring, investigations,and analysis
Facilitate and develop new data connections for Power BI dashboards (database development) used for insider risk detection and tracking. Perform regular updates to API connections and dashboards as the Insider Risk and Threat programsevolve
Collaborate closely with other teammembers and Cybersecurity verticals to conduct investigations,validatefindings,support incident response efforts,andenhance information sharingacross the physical and cyberdisciplines
Participate periodically in procedural audits, analytic reviews, lessons-learned sessions, or after-action reports
Continuouslyrefine sourcing strategies andhelpevaluate technology needs within the changing AI and information security environment
Contribute to updatingteammethodologiesandbuildonintelligence tradecraft through professional development opportunities
Participate in collaborative benchmarking discussions with internal and external partners, including government and law enforcement agencies
You mustpossessthe below minimum qualifications to be initially considered for this position. Preferred qualifications are in addition to theminimumrequirements and are considered a plus factor inidentifyingtop candidates.
Bachelor's degree or equivalent experience
4+ years of experience inCyber Threat Intelligence, Cyber Security Operations, Incident Response, Intelligence Analysis, or relatedfieldsin the public or private sectors
4+ years of experience applying the intelligence lifecycle, MITRE ATT&CK framework, cybercrime analysis, threat actor tactics and techniques, or cyber risk management principles
4+ years of experience producingall-sourceintelligence reports, briefings, and assessments for both technical and senior business audiences
4+ years of experience utilizing threat intelligence platforms and OSINT tools such asDataminr, Recorded Future,ZeroFox, Flashpoint,CrowdStrike,orGoogle SecOps/CTI
2+ years of experience in database and dashboard development, ideally with the Azure Databricks Lakehouse platform and PowerBI
ProficiencyinPython (PySpark)andSpark SQLfor large-scale data transformation
Advanced degreeor industry certifications such asGCTI, CTIA, CISSP, GIAC, SANS,or equivalent
5+ yearsin a strategic Cyber Threat Intelligencerole with experience developing awide array of analytic intelligence productsfor senior leaders and iterating on intelligence processes, methodologies, and program KPIs
Excellent writing, verbal, and interpersonal skills
Ability to adapt to a fast-paced and innovative work environment
Strong analytical, problem-solving, and communication skills, with the ability to translate complex cyber issues into clear and actionable insights
Experience with the utility or energy industry
Experience with AI and ML technologies in Cybersecurity
The preceding description is not designed to be a complete list of all duties and responsibilities requiredofthe position.
***Please notethere is a short open-ended questionnaire to completeregardingyour work experience towards the end of the application. This questionnaire can take up 10 - 15 minutes tocomplete.***
#Cybersecurity #CyberThreatIntel #ThreatIntelligence #ThreatHunting #IntelligenceAnalysis #ProtectiveIntelligence#WomenInTech #HybridJob#OhioMeansJobs #Columbus #Ohio #OH #NowHiring #BI #BusinessIntelligence #DataAnalysis #DataSci #DataAnalyst #PowerBI#Databricks #AzureDatabricks #SQL #Python#DataVisualization #Chicago
As a public utility, NiSource is required to provide continuous service to customers at all times. To ensure we fulfill that obligation, employees may be required to work outside their normal work hours and perform tasks outside of their normal responsibilities in support of emergency operations.
Work Authorization
Authorized to work in the United States without requiring sponsorship.
Workplace Connection
Value inclusion within your day to day responsibilities by respecting others perspectives/convictions, engaging others opinions, creating a safe environment where people, ideas, and opinions are valued within your Team/Customers and external partners.
Respect the unique lived experiences within your Team/Customers and external work partners by valuing different world views, challenges, and cultures that represents all walks of life and all backgrounds.
Treat others with respect and consideration. Actively participate in creating and contributing to a positive work environment.
Equal Employment Opportunity
NiSource is committed to providing equal employment opportunities in each of its companies to all employees and applicants for employment without regard to race, color, religion, national origin or ancestry, veteran status, disability, gender, age, marital status, sexual orientation, gender identity, sex (including pregnancy, lactation, childbirth or related medical conditions), genetic information, citizenship status, or any protected group status as defined by law. Each employee is expected to abide by this principle.
By applying, you may be considered for other job opportunities.
ADA Accommodations
If you need a reasonable accommodation to participate in any part of the hiring process or to perform the essential functions of the position, please contact OneHR at OneHR@nisource.comor 1-888-640-3320
Safety Statement
Promote a safe work environment by actively participating in all aspects of our employee safety program. Report any unsafe conditions and take actions to prevent personal injuries. Support our interdependent safety culture by ensuring the safety of your co-workers. Stay focused on the task at hand and promote productivity through good work habits.
E-Verify
NiSourceparticipates in the U.S. Department of Homeland Security's E-Verify program. As part of this process, we provide the following notices to all job applicants: These documents inform you of your rights and responsibilities under U.S. law. You can view or download them using the links below:
- E-Verify Poster(English and Spanish) E-Verify Participation Poster English and Spanish
- Right to Work Poster(English and Spanish) If you have the right to work, don't let anyone take it away
Salary Range*:
$96,600.00 - $144,900.00
*The salary offered to a candidate is based on several factors including but not limited to the candidate's skills, job-related knowledge, and relevant experience, as well as internal pay equity.
Posting Start Date:
2026-07-31
Posting End Date (if applicable):
2026-08-24
Please note that the job posting will close on the day before the posting end date.