Manager, Threat Intelligence

Careers.coca Colacompany.com

Apply to this job
US - GA - Atlanta Until 10/6/2026 6+ years exp First posted August 7, 2026 Last posted August 7, 2026
Job description

Job Description Summary:

Overview 

The Manager, Threat Intelligence is The Coca-Cola Company's hands-on leader for cyber threat intelligence (CTI) operations. This role is responsible for sourcing, producing, and disseminating actionable threat intelligence that informs the Company's defensive posture, supports incident investigations, and enables proactive risk decisions across the Coca-Cola System. The Manager builds and operates the intelligence pipelines, automation, and analyst workflows that keep the Company ahead of evolving adversary tradecraft. 

Reporting to the Senior Manager, Cyber Threat, this is an individual-contributor role that also provides day-to-day operational leadership of the managed security service provider (MSSP) threat intelligence analysts. The Manager sets priorities, maintains quality standards, and ensures the MSSP team delivers timely, relevant, and accurate intelligence products. The role partners closely with Cybersecurity Operations, Incident Response, Threat Simulation, and external intelligence-sharing communities to ensure threat intelligence is integrated into every layer of the Company's cyber defense. 

Key Responsibilities 

Threat Intelligence Operations 

  • Lead the end-to-end cyber threat intelligence lifecycle: requirements definition, collection, processing, analysis, production, and dissemination. 

  • Produce tactical, operational, and strategic intelligence products tailored to diverse audiences, from SOC analysts to senior leadership. 

  • Monitor the threat landscape continuously for adversary activity, campaigns, vulnerabilities, and trends relevant to The Coca-Cola Company, its subsidiaries, bottling partners, and supply chain. 

  • Support incident response investigations with real-time intelligence, adversary attribution, indicators of compromise, and contextual analysis. 

  • Maintain and curate threat intelligence platforms and feeds, ensuring data quality, relevance, and timely integration into defensive tooling. 

CTI Automation & Engineering 

  • Design, build, and maintain automated intelligence collection, enrichment, correlation, and dissemination pipelines. 

  • Integrate threat intelligence feeds and platforms with SIEM, SOAR, EDR, and other security tools to enable automated detection, blocking, and alerting. 

  • Develop and maintain custom tooling, scripts, and integrations that improve the speed and accuracy of intelligence operations. 

  • Evaluate and recommend new intelligence sources, tools, and technologies to enhance coverage and reduce manual effort. 

MSSP Analyst Leadership 

  • Provide day-to-day operational direction to MSSP threat intelligence analysts, setting priorities, reviewing deliverables, and maintaining quality standards. 

  • Define standard operating procedures, playbooks, and training materials for the MSSP team. 

  • Monitor MSSP performance against service-level expectations and drive continuous improvement. 

Intelligence Sharing & Partnerships 

  • Support Coca-Cola System-wide dissemination of cyber threat intelligence to subsidiaries, bottling partners, and key stakeholders. 

  • Engage with external intelligence-sharing communities, ISACs, government agencies, and industry peers to exchange threat intelligence and stay current on adversary activity. 

  • Coordinate with law enforcement and external partners on threat investigations and takedown efforts as needed. 

Reporting & Continuous Improvement 

  • Produce clear, executive-framed threat intelligence briefings and reports for Cyber Threat leadership, the CISO, and senior management. 

  • Track and report on intelligence program metrics, including coverage, timeliness, accuracy, and impact on defensive outcomes. 

  • Continuously improve intelligence processes, templates, and tooling based on feedback and lessons learned. 

Qualifications 

  • Minimum 6–10 years of progressive cybersecurity experience, with a significant portion in cyber threat intelligence roles within large or complex organizations. 

  • Demonstrated experience in the full threat intelligence lifecycle, including collection, analysis, production, and dissemination of tactical, operational, and strategic intelligence. 

  • Hands-on experience building CTI automation pipelines, including integration with SIEM, SOAR, and detection platforms. 

  • Proficiency with threat intelligence platforms and tools such as CrowdStrike Falcon Intelligence, Google Threat Intelligence, Recorded Future, MISP, or similar. 

  • Strong working knowledge of adversary tradecraft, MITRE ATT&CK framework, indicator management, and malware analysis fundamentals. 

  • Experience providing operational direction to managed service providers, contractors, or distributed analyst teams. 

  • Familiarity with intelligence-sharing standards and protocols such as STIX/TAXII, and participation in ISACs or similar communities. 

  • Strong written and verbal communication skills, with the ability to produce intelligence products for audiences ranging from SOC analysts to senior executives. 

  • Relevant certifications such as GCTI, GIAC (any), CISSP, CISM, or CTIA are preferred. 

  • Scripting and automation skills (Python, PowerShell, or equivalent) for building intelligence workflows and integrations. 

Education 

  • Bachelor's degree in Cybersecurity, Intelligence Studies, Computer Science, Information Systems, or related field required. 

  • Master's degree or relevant professional certification (GCTI, CISSP, CISM, or equivalent) highly desirable. 

  • Data-Driven Storytelling – Translate complex threat data into clear, actionable briefings and reports for technical and executive audiences. 

Reporting Relationship 

Reports to the Senior Manager, Cyber Threat, within the Cyber Defense team of the Chief Information Security Office (CISO) organization. 

No direct reports. Provides day-to-day operational leadership of MSSP threat intelligence analysts. 

Location 

Atlanta, GA (Global Headquarters) 

Travel 

Estimated up to 10% travel, primarily domestic, with occasional travel for intelligence-sharing events, industry conferences, and partner engagements. 

The Coca-Cola Company will not offer sponsorship for employment status (including, but not limited to, H1-B visa status and other employment-based nonimmigrant visas) for this position. Accordingly, all applicants must be currently authorized to work in the United States on a full-time basis and must not require The Coca-Cola Company's sponsorship to continue to work legally in the United States.

Skills:

Agile Methodology, Business Requirements, Communication, Computer Programming, Configuring (Inactive), Data Analysis, Financial Processing, Information Systems, Software Development, Structured Query Language (SQL), Systems Analysis, Systems Development Lifecycle (SDLC), Teamwork, Test Environments, Troubleshooting, Waterfall Model, Workflow Management

Pay Range:

United States of America: 124,600 USD - 148,200 USD

Base pay offered may vary depending on geography, job-related knowledge, skills, and experience. A full range of medical, financial, and/or other benefits, dependent on the position, is offered.

Annual Incentive Reference Value Percentage:

15

Annual Incentive reference value is a market-based competitive value for your role. It falls in the middle of the range for your role, indicating performance at target.

Location(s):

United States of America

City/Cities:

Atlanta

Travel Required:

00% - 25%

Relocation Provided:

No

Job Posting End Date:

August 14, 2026

Our Purpose and Growth Culture:

We are taking deliberate action to nurture an inclusive culture that is grounded in our company purpose, to refresh the world and make a difference. We act with a growth mindset, take an expansive approach to what’s possible and believe in continuous learning to improve our business and ourselves. We focus on four key behaviors – curious, empowered, inclusive and agile – and value how we work as much as what we achieve. We believe that our culture is one of the reasons our company continues to thrive after 130+ years. Visit Our Purpose and Vision to learn more about these behaviors and how you can bring them to life in your next role at Coca-Cola.

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. When we collect your personal information as part of a job application or offer of employment, we do so in accordance with industry standards and best practices and in compliance with applicable privacy laws.
About this role

Summary

Lead cyber threat intelligence operations, automation, and MSSP analyst management.

Job title

Manager, Threat Intelligence

Experience level

6-10 years

Minimum experience

6+ years exp

Industry

consumer goods

Location requirements

Atlanta, GA; remote work allowed

Salary

$125k–$148k

Management role

No

Skills & keywords

Required skills

cyber threat intelligenceautomation pipelinesSIEMSOARPythonPowerShellthreat platformsMITRE ATT&CKSTIX/TAXII

Preferred skills

GCTICISSPCISMcybersecurity certificationsdata storytelling

Specializations

threat intelligenceautomationincident responseadversary tradecraftcyber defense
Locations

Structured locations inferred from the posting.

Atlanta, GA, USA

Hybrid City

United States

Remote Country