The Center for Protection of the National Infrastructure (CPNI) and CERT-UK recently sponsored a white paper called Threat Intelligence: Collecting, Analyzing, Evaluating. The paper discusses the need for ensuring that intelligence collected be relevant for major security stakeholders in your organization. There is a myriad of threat intelligence providers each with their own threat data specialty that produce the data in a variety of formats. This paper discusses a technical approach for making threat data fit the subtype classification model in figure 1.