Come along as I explain how our in depth phishing research morphed me into a new hybrid analyst: part Intel, part IR, part Detection, and a bit of everything else. As I walk through our research and analysis process, I will point out how each step propelled me to expand my skills and helped form a new understanding of what a Cyber Threat Intel Analyst could be. Listen as I explain how to collect sources and scope campaigns, which lead to my month with CSIRT and training as a SOC Analyst. As we explore pattern recognition, I will regale you with my new adventures in Regex and detection writing. Each step in the process leads to additional skills and even more twists and turns. Expect education, skills, ideas, memes and more..