Senior DarkWeb Intelligence Lead
Accenture
💰 $94,400 to $293,800via workdayFirst listed here 2026-09-20
Apply on company site ↗
Career Moonshot pulls this listing straight from the employer's hiring system — no recruiter middleman, no reposts. Applying takes you directly to Accenture.
We Are
Accenture is a global collective of innovators whose aim is to improve the way the world works and lives. Empowered with innovative tools, continuous learning, and a global community of diverse talent, we drive success in new business architecture that disrupts conventional practices. We are looking to add an experienced Senior Dark Web Analyst to an already outstanding team.
Accenture Security helps organizations prepare, protect, detect, respond to, and recover across all points of the security lifecycle. We hire top-tier security talent and equip them with advanced tools and technologies to build resilience through integrated, customized solutions.
You Are
A highly experienced cyber threat intelligence professional with direct operational experience in underground environments. You bring both technical depth and leadership capability, with a proven ability to collect intelligence firsthand and translate it into actionable insight. You operate with strong discipline, discretion, and a commitment to protecting long-term access and operational integrity.
The Work
You will lead and contribute to Accenture’s dark web and underground intelligence collection capability. This includes persona-based collection, monitoring criminal ecosystems, and producing actionable intelligence for operational teams.
Key responsibilities include:
Executing persona-based access and intelligence collection within criminal forums and marketplaces
Monitoring ransomware leak sites, Initial Access Broker (IAB) activity, and underground ecosystem trends
Producing intelligence reporting derived from firsthand collection activities
Developing and executing collection requirements aligned to stakeholder needs
Evaluating source credibility and validating claims within underground environments
Maintaining secure persona infrastructure and anonymized collection environments
Mentoring junior analysts and supporting persona development lifecycle
Partnering with legal and compliance stakeholders to ensure adherence to collection authorities
Delivering briefings to senior stakeholders while protecting sensitive collection methodologies
Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements.
Here's what you need
Minimum 7 years of professional experience in cyber threat intelligence (CTI), cybercrime investigations (law enforcement), or intelligence community equivalent
Minimum 3 years of hands-on experience conducting direct dark web or underground collection, including active engagement in forums or marketplaces
Minimum 3 years of hands-on experience with at least two of the following platforms: Flashpoint, Intel 471, Cybersixgill, Recorded Future
Minimum 1 year of experience leading, mentoring, or supervising analysts, including tasking and reviewing analytical output
At least 12 months of experience operating one or more personas within restricted or criminal online communities
Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate’s Degree, must have minimum 6 years work experience)
Professional Skill Requirements
Demonstrated experience producing original intelligence reporting based on firsthand collection, with at least 5–10 completed intelligence products (e.g., reports, alerts, briefings)
Bonus points if you have
Practical experience accessing and collecting intelligence via TOR, I2P, or comparable anonymization networks
Experience building or maintaining secure persona infrastructure, including virtual machines, VPN/proxy chaining, and compartmented digital identities
Experience with structured or semi-automated data collection methods, including forum scraping, data extraction tools, or indexing workflows
Demonstrated familiarity with ransomware ecosystems, including tracking ransomware groups or leak sites
Demonstrated familiarity with cybercriminal ecosystem components, including forums, marketplaces, or Initial Access Broker (IAB) communities
Experience contributing to or supporting intelligence requirements development or collection planning processes
Deep understanding of criminal underground ecosystems and actor behaviors
Ability to assess source credibility, persona trust dynamics, and claim validation
Familiarity with cryptocurrency tracing concepts
Understanding of relationships between cybercrime and APT activity
Strong operational security (OPSEC) discipline
Experience working with legal and compliance teams on collection governance
Demonstrated discretion in handling sensitive intelligence operations
Ability to translate complex underground activity into clear, executive-level reporting
Experience briefing senior leadership while protecting sensitive sources and methods
Experience mentoring junior analysts through persona development lifecycle
Strong written communication across both short-form alerts and long-form reporting
Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired as set forth below.
We anticipate this job posting will be posted until 11/30/2026.
Accenture offers a market competitive suite of benefits including medical, dental, vision, life, and long-term disability coverage, a 401(k) plan, bonus opportunities, paid holidays, and paid time off. See more information on our benefits here:
U.S. Employee Benefits | Accenture
Role Location Annual Salary Range
California $94,400 to $293,800
Colorado $94,400 to $253,800
Connecticut $94,400 to $253,800
District of Columbia
Browse all locations