Manager, Threat Intelligence
Coca-Cola
- Location
- US - GA - Atlanta
- Work model
- On-Site
- Level
- Staff
- H-1B history
- 3 approvals (FY2023)
- Posted
- 14h ago
Skills
About this role
Overview
The Manager, Threat Intelligence is The Coca-Cola Company's hands-on leader for cyber threat intelligence (CTI) operations. This role is responsible for sourcing, producing, and disseminating actionable threat intelligence that informs the Company's defensive posture, supports incident investigations, and enables proactive risk decisions across the Coca-Cola System. The Manager builds and operates the intelligence pipelines, automation, and analyst workflows that keep the Company ahead of evolving adversary tradecraft. Reporting to the Senior Manager, Cyber Threat, this is an individual-contributor role that also provides day-to-day operational leadership of the managed security service provider (MSSP) threat intelligence analysts. The Manager sets priorities, maintains quality standards, and ensures the MSSP team delivers timely , relevant, and accurate intelligence products. The role partners closely with Cybersecurity Operations, Incident Response, Threat Simulation, and external intelligence-sharing communities to ensure threat intelligence is integrated into every layer of the Company's cyber defense.
Key Responsibilities
Threat Intelligence Operations Lead the end-to-end cyber threat intelligence lifecycle: requirements definition, collection, processing, analysis, production, and dissemination. Produce tactical, operational, and strategic intelligence products tailored to diverse audiences, from SOC analysts to senior leadership. Monitor the threat landscape continuously for adversary activity, campaigns, vulnerabilities, and trends relevant to The Coca-Cola Company, its subsidiaries, bottling partners, and supply chain. Support incident response investigations with real-time intelligence, adversary attribution, indicators of compromise, and contextual analysis. Maintain and curate threat intelligence platforms and feeds, ensuring data quality, relevance, and timely integration into defensive tooling. CTI Automation & Engineering Design, build, and maintain automated intelligence collection, enrichment, correlation, and dissemination pipelines. Integrate threat intelligence feeds and platforms with SIEM, SOAR, EDR, and other security tools to enable automated detection, blocking, and alerting. Develop and maintain custom tooling, scripts, and integrations that improve the speed and accuracy of intelligence operations. Evaluate and recommend new intelligence sources, tools, and technologies to enhance coverage and reduce manual effort. MSSP Analyst Leadership Provide day-to-day operational direction to MSSP threat intelligence analysts, setting priorities, reviewing deliverables, and maintaining quality standards. Define standard operating procedures, playbooks, and training materials for the MSSP team. Monitor MSSP performance against service-level expectations and drive continuous improvement. Intelligence Sharing & Partnerships Support Coca-Cola System-wide dissemination of cyber threat intelligence to subsidiaries, bottling partners, and key stakeholders. Engage with external intelligence-sharing communities, ISACs, government agencies, and industry peers to exchange threat intelligence and stay current on adversary activity. Coordinate with law enforcement and external partners on threat investigations and takedown efforts as needed. Reporting & Continuous Improvement Produce clear, executive-framed threat intelligence briefings and reports for Cyber Threat leadership, the CISO, and senior management. Track and report on intelligence program metrics, including coverage, timeliness, accuracy, and impact on defensive outcomes. Continuously improve intelligence processes, templates, and tooling based on feedback and lessons learned.
Qualifications
Minimum 6–10 years of progressive cybersecurity experience, with a significant portion in