
Senior Threat Intelligence Architect
ASSA ABLOY Opening Solutions
full-time
Posted on:
Location Type: Hybrid
Location: Malmö • Sweden
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Own and evolve the global threat management architecture, integrating SIEM, EDR/XDR, SOAR, TIPs, and cloud-native security controls into a cohesive detection ecosystem.
- Design intelligence-driven data pipelines (IOC ingestion, TTP mapping, telemetry requirements, enrichment, automation) that increase detection fidelity and reduce noise.
- Architect detection and threat hunting strategies based on attacker TTPs, leveraging MITRE ATT&CK, kill chain analysis, and advanced threat modelling.
- Provide intelligence-driven architecture guidance for Zero Trust, cloud security (AWS, Azure, GCP), and identity security (Entra ID/IAM).
- Act as technical authority during major incidents — delivering deep threat context and driving post-incident architectural improvements.
- Drive innovation and maturity uplift through automation, AI-driven detection, measurable KPIs, and continuous architectural improvement.
Requirements
- Extensive experience architecting threat detection and intelligence capabilities in complex, global enterprises — not only operating them, but designing them.
- Deep expertise in attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK, intelligence lifecycle, and threat modelling methodologies.
- Strong hands-on knowledge of SIEM, SOAR, EDR/XDR, TIPs, telemetry engineering, and detection logic design — including cloud-native integrations.
- Ability to translate intelligence into architecture : defining data flows, telemetry requirements, automation workflows, and defensive controls.
- Experience aligning security architecture with governance frameworks such as ISO 27001, NIST CSF, GDPR, and DORA.
- Senior-level communication skills with the credibility to influence architects, engineers, SOC teams, and executive stakeholders.
Benefits
- Enterprise impact : Shape global threat detection architecture across a complex international organisation operating in over 70 countries.
- Real architectural ownership : Define standards, blueprints, and long-term roadmaps — not just implementations.
- Strategic influence : Play a key role in shaping enterprise-wide cloud, identity, and Zero Trust architecture through intelligence-driven design.
- Stability with ambition : Join a global market leader investing long-term in cyber maturity and innovation.
- Scandanavian leadership culture : High trust, low ego, flexible work, and sustainable performance.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
threat detection architectureintelligence-driven data pipelinesTTP mappingtelemetry engineeringdetection logic designcloud-native security controlsautomation workflowsadvanced threat modellingZero Trust architectureAI-driven detection
Soft Skills
senior-level communicationinfluencing stakeholderstechnical authoritypost-incident analysisinnovation drivematurity uplift
Certifications
ISO 27001NIST CSFGDPRDORA