Often Missing SkillsOSINT at scale and source validationIntelligence product writing with estimative languageProficiency with TIP/SIEM tools (MISP, Recorded Future, Splunk)Cyber threat fundamentals and ATT&CK technique mappingScripting for data enrichment/automation (Python) and basic SQL
Development SuggestionsComplete an OSINT course (e.g., SANS SEC487) and write sample threat briefs; practice with MISP/ATT&CK labs, automate a small intel collection pipeline in Python, and seek feedback from CTI communities.