Senior Cyber Threat Intelligence (CTI) Engineer (f/m)
Offer summary

(Summary generated by AI based on the full job description)

The project focuses on Cyber Threat Intelligence (CTI) using OSINT, Python, REST APIs, Git, Docker. Responsibilities include monitoring the global threat landscape, hunting for IoCs, analyzing attacker tactics with MITRE ATT&CK, and developing automation tools. Work centers on translating intelligence into actionable defense and delivering reports to technical teams and leadership. Offered benefits include flexible working hours, private medical care, and various employee perks.

new

Senior Cyber Threat Intelligence (CTI) Engineer (f/m)

Company: Robert Bosch Sp. z o.o.

from: 20 July 2026
to: 19 August 2026
salary not specifiedcontract of employment (full-time)
Offer parameters
level:senior
working mode:hybrid
Warszawa, Włochy
Warszawa, WłochyJutrzenki 105View on map

Requirements

Expected technologies

Python
Git
Docker
REST API

Our requirements

  • Experience: Proven experience in Cyber Threat Intelligence (CTI), digital forensics, or a highly analytical security role.
  • CTI Knowledge: Deep understanding of the threat landscape, networking protocols, and modern cyberattack vectors.
  • Tools & OSINT: Hands-on experience with OSINT tools, threat intelligence platforms (TIPs), and navigating darknet marketplaces safely.
  • Technical & Automation Skills: Strong scripting and tool development experience (Python, APIs, Git, Docker) to automate threat intelligence workflows.
  • Mindset: An analytical, "detective" mindset with the ability to connect fragmented data points into a coherent threat picture.
  • Communication: Excellent communication skills to translate complex technical threats into clear business risks for diverse stakeholders (from technical teams to executive leadership).
  • Languages: Fluent in English.

Optional

  • German is a plus.

Your responsibilities

  • Monitoring the external landscape: Actively monitoring the global threat landscape using Open Source Intelligence (OSINT), commercial threat feeds, Dark Web forums, and underground communities to identify emerging threat actors and trends.
  • Tracking targeted threats: Hunting for indicators of compromise (IoCs), leaked credentials, exposed infrastructure, or brand impersonation campaigns specifically targeting our organization, supply chain, or industry.
  • Preparing proactive defenses: Translating external threat data into actionable defense strategies by working closely with our SOC and engineering teams to update firewall rules, prioritize vulnerability patching, and fine-tune detection mechanisms before an attack occurs.
  • Profiling adversaries: Analyzing and mapping threat actor tactics, techniques, and procedures (TTPs) using frameworks like MITRE ATT&CK to understand who wants to target us and how.
  • Delivering early warnings and reporting: Providing timely, high-fidelity threat briefings and alerts to both technical teams and executive leadership to drive informed, risk-based decisions.
  • Developing and automating tools: Building and improving internal tools for threat analysis, collection, and monitoring (using Python, REST APIs, Git, Docker).

About the project

Our team is distributed across Germany and Poland, with the Polish hub steadily growing. We are a diverse mix of experts—from CTI analysts to tech-dedicated specialists and versatile "one-man armies". We leverage various sources of intelligence, including OSINT and other specialized feeds, and we are currently in an exciting phase of onboarding more AI solutions into our daily operations.
What makes this role stand out?
Intelligence into Action: You won't just write reports. Your core focus is bringing threat intelligence into real, defensive actions. You will have a direct hand in developing tools, automating workflows, and directly contributing to the safety of our entire global organization.
Meaningful Business Impact: Your work has a tangible, visible impact. By delivering precise intelligence, you help ensure a safe digital environment for Bosch colleagues worldwide, allowing you and them to thrive together.
Structured, Non-Reactive Workflow: Unlike many highly exposed, purely reactive security roles, our work is regular, structured, and easy to manage within your standard working hours. This provides a sustainable environment where you can build deep expertise and take pride in the results.

This is how we organize our work

This is how we work

in house
Company

What we offer

Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
Work #LikeABosch:
Employment Contract
Competitive salary + annual bonus
Copyright costs for IT employees (Koszty Uzyskania Przychodu)
Hybrid work with flexible working hours
Grow #LikeABosch:
Complex environment of working, professional support and possibility to share knowledge and best practices
Ongoing development opportunities in a multinational environment
Broad access to professional trainings, conferences and webinars
Live #LikeABosch:
Private medical care and life insurance
Cafeteria System with multiple benefits (incl. MultiSport, shopping vouchers, cinema tickets, etc.)
Prepaid Lunch Card
Number of benefits for families (for instance summer camps for kids)
Non-working day on the 31st of December

Benefits

  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of professional training & courses
  • life insurance
  • remote work opportunities
  • flexible working time
  • corporate products and services at discounted prices
  • saving & investment scheme
  • coffee / tea
  • parking space for employees
  • leisure zone
  • pre-paid cards
  • employee referral program
  • Massage services at the office
  • Summer and winter activities for children
  • kafeteria
  • karta lunchpass

Recruitment stages

  • 1.
    Phone interview with a recruiter
  • 2.
    Meeting with a direct manager
  • 3.
    Meeting with a higher level manager

Robert Bosch Sp. z o.o.

At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!

This is how we work

Senior Cyber Threat Intelligence (CTI) Engineer (f/m)
I apply to:
Robert Bosch Sp. z o.o.
Warszawa, Włochy
Pracodawca zbiera zgłoszenia przez swój system.
Przejdziesz na zewnętrzny formularz.

By clicking "Aplikuj" you confirm that you've read and accepted our Terms and Conditions.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Need more information?

  • Make sure the body of the offer doesn’t already include what you’re looking for.
  • Ask a question if you need more information you’re interested in.
  • We’ll forward your question to the employer and aim to provide a response within 3 business days.

Share this offer