The Role
Client is looking for an experienced, self-driven Cyber Threat Intelligence Analyst who can operate independently and as a part of a Global Cyber Security Centre.
Skills / Responsibilities:
* Experience in advanced cyber threat intelligence and IT security Knowledge.
* Review all-source intelligence including internal, open source and closed source intelligence to identify emerging threat trends, TTP’s and IOCs.
* Transform these trends and TTP’s into timely, actionable intelligence products to contribute to defensive posture through prevention, detection.
* Conduct intelligence investigations into malicious cyber activity to provide attribution, identify adversary TTP’s, and provide additional context to threats to the network.
* Produce high-quality written reports, presentations and briefings, both in internal and external forums, to a wide variety of audiences, ranging from highly technical teams to executive management.
* Support time-sensitive and critical cyber incident response activities by providing intelligence including TTP’s and IOCs to shorten the incident response cycle and protect the Customer network.
* Establish and maintain productive internal working relationships with other critical teams including our Security Operations Centre, Supply Chain Security, and Vulnerability Team.
* Contribute to the wider cyber threat intelligence community by establishing critical sharing and interpersonal relationships with industry and government organizations.
* Stay up to date on relevant cyber threat trends, defensive cyber practices, tooling and processes to apply industry standard practices to Global operations.
* Executive briefing & reporting skills with attention to detail
* Flexibility to attend to issues beyond normal business hours when needed
* A good understanding of and experience with the cyber threat intelligence cycle, and experience in cyber threat intelligence collection, production and writing.
* Experience with threat analysis models such as the Diamond Model, Cyber Kill Chain and TTP framework.
* Experience conducting technical threat intelligence investigations into malicious activity, including conducting attribution and TTP analysis.
* Familiarity with technical engineering requirements is associated with the production of intelligence.
* Experience with and understanding of incident response processes The Role
Client is looking for an experienced, self-driven Cyber Threat Intelligence Analyst who can operate independently and as a part of a Global Cyber Security Centre.
Skills / Responsibilities:
* Experience in advanced cyber threat intelligence and IT security Knowledge.
* Review all-source intelligence including internal, open source and closed source intelligence to identify emerging threat trends, TTP’s and IOCs.
* Transform these trends and TTP’s into timely, actionable intelligence products to contribute to defensive posture through prevention, detection.
* Conduct intelligence investigations into malicious cyber activity to provide attribution, identify adversary TTP’s, and provide additional context to threats to the network.
* Produce high-quality written reports, presentations and briefings, both in internal and external forums, to a wide variety of audiences, ranging from highly technical teams to executive management.
* Support time-sensitive and critical cyber incident response activities by providing intelligence including TTP’s and IOCs to shorten the incident response cycle and protect the Customer network.
* Establish and maintain productive internal working relationships with other critical teams including our Security Operations Centre, Supply Chain Security, and Vulnerability Team.
* Contribute to the wider cyber threat intelligence community by establishing critical sharing and interpersonal relationships with industry and government organizations.
* Stay up to date on relevant cyber threat trends, defensive cyber practices, tooling and processes to apply industry standard practices to Global operations.
* Executive briefing & reporting skills with attention to detail
* Flexibility to attend to issues beyond normal business hours when needed
* A good understanding of and experience with the cyber threat intelligence cycle, and experience in cyber threat intelligence collection, production and writing.
* Experience with threat analysis models such as the Diamond Model, Cyber Kill Chain and TTP framework.
* Experience conducting technical threat intelligence investigations into malicious activity, including conducting attribution and TTP analysis.
* Familiarity with technical engineering requirements is associated with the production of intelligence.
* Experience with and understanding of incident response processes