Mews logo
Posted YesterdayCzechia; Spain
Apply ↗

Cyber Threat Intelligence Specialist

MiddleHybrid (Czechia)€60,000 – €80,000 / yr
Required Skills
.NETLLMs / Generative AIREST APIAgile / Scrum
Job Description

Help make the world more hospitable

The hospitality industry is uniquely human, and it deserves technology that’s just as inspiring as the people behind it. At Mews, we’re transforming the industry with a platform that helps hotels run smarter, move faster and create better guest experiences.

You’ll work with smart, curious people who care deeply about what they do. You’ll have autonomy and the trust to make good decisions and move quickly. And you’ll enjoy a real sense of purpose as you see the impact of what we’re building.

If you’re motivated by ownership, curiosity and meaningful impact, and are driven to deliver consistent high performance, you’ll feel at home here.

About the role

Let's get into the specifics. It’s impossible to capture every nuance of a role – especially at a rapidly growing company like Mews – but if we had to distil it into a job description (which we do because this is a job description), it would be this:

Building a threat intelligence capability from scratch is genuinely rare: most security roles inherit someone else's tooling, someone else's playbooks, someone else's definition of what "good" looks like. This one doesn't. As Mews' first Cyber Threat Intelligence Specialist, you will design and operationalise the CTI function within our Security Operations team, setting the intelligence requirements, the collection and analysis approach, and the feedback loops that will shape how the whole team detects and responds to threats. The hospitality industry is a specific and underserved target for credential phishing, account takeover, and ransomware, and Mews processes data for thousands of properties globally. There is real risk here, and real opportunity to reduce it.

You will join a Security Operations team that operates as a product security function, not a traditional IT security shop. Your work feeds directly into detection engineering, threat hunting, and incident response, and as the program matures you will help shape how intelligence can be surfaced to Mews customers as a trust capability. You will work closely with Security Engineering, Platform Engineering, Legal, and Product teams, and you will report to Roger Ribas, the Director of Security Operations.

What you would do

  • Design and implement Mews' CTI service end-to-end: intelligence requirements, lifecycle management, collection, enrichment, dissemination, and continuous improvement
  • Track threat actors, campaigns, and TTPs (tactics, techniques, and procedures) relevant to SaaS platforms and the hospitality and payments ecosystem
  • Convert raw intelligence into actionable outcomes for detection engineers, threat hunters, and incident responders, with a strong bias toward intelligence that changes decisions rather than just informs them
  • Act as a trusted intelligence partner during security incidents, providing attacker context, likely objectives, and forward-looking risk assessments
  • Identify opportunities to automate and enrich intelligence workflows, including applying AI-assisted techniques where they meaningfully improve speed or coverage

AI Fluency Level 3: In this role, that means you have gone beyond using AI tools for your own productivity. You have redesigned how threat intelligence work gets done: building AI-assisted workflows that others on the team can adopt (for example, automated enrichment pipelines, AI-assisted TTP classification, or LLM-supported threat landscape summaries that are rigorously checked and validated before distribution). You actively interrogate what AI gives you, apply your own judgment to catch errors, and document your approaches so they can be replicated and improved.

Ready to apply? Optimize your CV for this specific jobAI customizes your experience bullets and increases chances to get hired.

Similar Openings in Other

View all in category