
Leonardo Belgium is supporting a major European Institution in strengthening its cyber defense, threat intelligence, and situational awareness capabilities.
You will join a high-impact cybersecurity environment where anticipation, analysis, and informed decision-making are critical. The role sits at the core of cyber defense, with direct ownership on identifying emerging threats and translating intelligence into actionable insights across a complex, multi-site and hybrid infrastructure.
This is not a purely analytical role, you will combine technical expertise with leadership and stakeholder interaction in a highly regulated, international environment to drive threat-informed decisions. This role is suited for experienced cybersecurity professionals who have operated in high-stakes environments and are comfortable taking the lead and shaping intelligence-driven security strategies.
Job Specifications
Location : Brussels (3 days on-site 2 days remote from a nearby location)
Urgent need : Early application heavily encouraged
Start date : End of April / Early May
Type of contract: Freelance / B2B preferred
As Cyber Threat Intelligence Lead, you will own and drive the full lifecycle of cyber threat intelligence, from collection and analysis to dissemination, ensuring timely and actionable insights to support proactive defense. You will coordinate efforts to collect and analyze data from multiple sources, identify threat patterns, and translate intelligence into strategic and operational value aligned with the client’s security priorities.
You will:
Lead the cyber threat intelligence lifecycle (collection, analysis, production, dissemination)
Act as SPOC for threat intelligence activities, coordinating internal teams and external stakeholders
Gather and analyze data from technical feeds, OSINT sources, and intelligence-sharing platforms (e.g. MISP)
Apply structured analytical techniques to assess the reliability and relevance of threat information
Identify and analyze adversary tactics, techniques and procedures (TTPs), leveraging frameworks such as MITRE ATT&CK
Produce and deliver tailored intelligence reports for both technical teams and executive stakeholders
Support incident response and threat hunting activities by providing contextual intelligence during security events
Contribute to the development and evolution of the organization's threat landscape and risk posture
Drive communication on threat severity, potential impact, and recommended actions to stakeholders
Provide continuous situational awareness to support decision-making and prioritization
Experience / Education / Certification Requirements
Proven experience leading or coordinating cyber threat intelligence activities within complex, large-scale environments
Experience analyzing and contextualizing cyber threats in operational environments
Previous exposure to EU institutions or regulated environments is a plus
A degree in Computer Science, Cybersecurity, or a related field is considered an asset
At least one cybersecurity-related certification
Personal Attributes
Ability to lead and coordinate under pressure
Strong communication skills with both technical and non-technical stakeholders
Structured, analytical mindset with strong problem-solving abilities
Comfortable working in a fast-paced, international environment
Strong command of English, French and/or Italian are assets
Technical Skills
Strong knowledge of threat intelligence frameworks and methodologies
Experience with OSINT techniques and intelligence platforms (e.g. MISP)
Understanding of threat actors, campaigns, and attack vectors
Ability to map threats using frameworks such as MITRE ATT&CK
Experience translating technical intelligence into business risk insights
Scripting skills (Python or similar) to process and analyze datasets are a plus
Strong reporting and presentation capabilities
What’s in it for you?
Work in a high-visibility cybersecurity environment within a major EU institution
Take ownership of critical cyber threat intelligence activities
Operate in a complex, multi-site and hybrid infrastructure
Collaborate with international stakeholders and cyber experts
Long-term assignment supporting critical cyber defense operations
Once we receive your CV, we will evaluate it carefully. Should there be a match for this or any other position at Leonardo Belgium, we will be in touch with you. In case there is no match now, we will make sure to keep your CV in consideration for future vacancies!