A threat intelligence analyst collects, processes and analyses information about attackers so an organisation can anticipate and respond to cyber threats. CREST assesses this role through its Registered Threat Intelligence Analyst exam, aimed at people who already work in a team delivering threat intelligence and have at least two years of hands-on experience.
If that describes you, the CRTIA practice test on EduSum lets you check your readiness against the same syllabus areas this guide walks through, before you book a seat. You can also start with the free threat intelligence analyst sample questions to see the question style.

What does a threat intelligence analyst actually do?
On its Registered Threat Intelligence Analyst certification page and in the syllabus, CREST defines the role as responsible for the collection, processing and analysis of data, information and intelligence in order to produce threat intelligence outputs. In practice that means turning raw material, from domain registration records to social media activity and malware indicators, into a clear assessment a decision-maker can act on.