Analyst - Cyber Threat Intelligence
IT
Purpose
The Analyst – Cyber Threat Intelligence will support the Digital Defence Center (DDC) in researching and reporting on emerging threats against company and to strategically shape and guide the approach the taken to protect its people and assets. The analyst will be responsible for responding and analyzing major cyber security incidents, conducting forensic investigations across a complex multi-cloud environment, supporting threat hunting cycles, and purple team engagements.
Experience :
Around 3+ years of experience in a technical role with Digital Forensics and Incident Response background in the areas of Security Operations, Threat Hunting , Threat Intelligence, Cyber Incident Response, Penetration Testing and Red Teaming.
•Experience using Cyber Kill Chain
•Expertise on in using Threat Intelligence Platforms (Recorded Future, Flashpoint, Blueliv, Anomali, ThreatIQ etc.)
•Demonstrable experience in the use of Digital Forensics tools, techniques and concepts including creating and using Custom tools and scripts
•Demonstrable experience of analyzing and interpreting system, security, and application logs
•Experience with offensive security including tools such as Metasploit, exploit development, Open Source Intelligence Gathering (OSINT), and designing ways to breach enterprise networks
•Advanced knowledge of operating system internals and security mechanisms.
•Experience analyzing attacker techniques at all stages of a breach.
•Experience in forensics, threat intelligence, incident response
•Skilled working with extremely large data sets, using tools and scripting languages such as: SQL/KQL, Python, Splunk, etc.
•Working knowledge of EDR solutions
Responsibilities:
Threat Hunting
Conducts hunt missions on Business Environment (on-prem, cloud) with the use of Digital Forensics tools & techniques and Custom tools and scripts
Offensive Assessments
Conducts offensive on Business Environment (on-prem, cloud) using security including tools such as Metasploit, exploit development, Open Source Intelligence Gathering (OSINT), and designing ways to breach enterprise networks
Breach Analysis
Analyzes attacker techniques at all stages of a breach with the capability of mapping to ATT&CK framework
Forensics
Performs incident response and forensics of active breaches
Reporting
Reports measurable improvement of overall security posture
Ref: JN-092026-1163474