Skip to main content
Search Jobs

Cyber Threat Intelligence Analyst

Indianapolis, Indiana

Need Help Applying?

Accommodation Needed to Submit Resume

Eli Lilly and Company, Lilly USA, LLC and our wholly owned subsidiaries (collectively “Lilly”) are committed to help with individuals with disabilities participate in the workforce and ensure equal opportunity to compete for jobs. If you are an individual with a disability and require a reasonable accommodation to participate in the application process for positions at Lilly please email Lilly Recruiting Compliance for further assistance. Please note, this email address is intended for use only to request an accommodation as a part of the application process. Any other correspondence will not receive a response.

Apply Now Apply Later
Req ID 53035 Title Cyber Threat Intelligence Analyst City Indianapolis State / Province Indiana Country United States Region North America

Company Overview

At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our 39,000 employees around the world work to discover and bring life-changing medicines to those who need them, improve the understanding and management of disease, and give back to our communities through philanthropy and volunteerism. We give our best effort to our work, and we put people first. We’re looking for people who are determined to make life better for people around the world.


Information Security (IS) directs and demonstrates Lilly’s commitment to responsible and effective management of information assets. Our purpose is to create an environment where innovation, collaboration and security work in harmony to make life changing medicines.

Within the IS organization, Lilly’s Cyber Fusion Center is responsible for detecting potential information security incidents, responding consistently and appropriately when incidents arise, informing the organization of our findings and observations, and driving improvements in Lilly’s information security controls and capabilities. An integral component of the Cyber Fusion Center’s operations is the collection, analysis, and dissemination of finished intelligence products to assist in the identification and mitigation of cyber based threats. The Cyber Threat Intelligence Analyst is a key player in the identification, alerting, response, and mitigation of cyber based threats at Eli Lilly and Company. The Threat Intelligence Team works closely with the incident response team, and various lines of business to mitigate risk to the company.

Key responsibilities:

  • Performs daily review of cyber threat warnings, bulletins, alerts, and incident reporting documentation and databases, Threat Intelligence Communities such as H-ISAC, Threat Information Portals, and a variety of open source publications and formats.
  • Provides threat intelligence analysis in accordance with established threat intelligence requirements.
  • Conducts research on emerging security threats; provides correlation and trending of cyber incident activity.
  • Maintains knowledge of adversary activities, including intrusion tactics, attack techniques and operational procedures.
  • Maintains Situational Awareness and reports on advanced threats, including Advanced Persistent Threat (APT).
  • Coordinates with management, business partners and team members to deliver prompt and actionable intelligence; provides written reports and threat briefings.
  • Performs threat hunt operations using known adversary tactics, techniques and procedures as well as indicators of attack in order to detect adversaries with persistent access to the enterprise.
  • Maintains close coordination with Incident Response & Vulnerability Management Teams regarding emerging threats.

Basic Qualifications

  • Bachelor’s degree
  • 1+ years of work experience in Information Security, cyber threat intelligence, Information Technology or a related field

Additional Skills/Preferences

  • Motivated self-starter with strong written and verbal communications skills, and the ability to build complex technical reports on analytic findings
  • Strong research background and an understanding of analytical approaches, especially with respect to event classification, event correlation, and root cause analysis
  • Understanding of query development for SIEM solutions preferable.
  • Experience working with the output from security products, tools and SIEMs
  • Understanding of APT Tactics, Techniques, and Procedures
  • Understanding of the life cycle of network and host threats, attack vectors, and methods of exploitation
  • Hands-on experience analyzing high volumes of logs, network data (e.g. NetFlow, PCAP, Flow Log), and other artifacts in support of incident investigations.
  • Experience with malware analysis concepts and methodology

Additional Information

Lilly is an EEO/Affirmative Action Employer and does not discriminate on the basis of age, race, color, religion, gender, sexual orientation, gender identity, gender expression, national origin, protected veteran status, disability or any other legally protected status

To submit resume, visit and apply to Req ID 53035.

Lilly is an EEO/Affirmative Action Employer and does not discriminate on the basis of age, race, color, religion, gender, sexual orientation, gender identity, gender expression, national origin, protected veteran status, disability or any other legally protected status.

Apply Now Apply Later

About Science

Our scientists and researchers are developing the breakthrough medicines of tomorrow. Join us and become a creative innovator and thinker who can improve the lives of millions.

Recruiting Events

We’d love to meet you to discuss career opportunities. Check our calendar now to see when we’ll be in your area.

View All Events

Stay Connected

Job Alerts

By signing up for job alerts, you’ll be the first to learn about opportunities that could be a great fit for you via periodic email updates.

Sign Up

Join Our Talent Community

Share a bit about yourself, such as the career area you are interested in. We will then reach out to you when the perfect position is available!

Sign Up

Sign Up

Areas of InterestSearch for a category, location, or category/location pair, select a term from the suggestions, and click "Add.”