Jobs and Careers
DE

Global Cyber Threat Intelligence Analyst

Dentons
Johannesburg, South AfricaRemotefull_timeVerifiedPosted 17 Apr 2023

About the role

<p></p><strong>Description:</strong> The Global Cyber Threat Intelligence Analyst is an individual contributor role that is pivotable to the threat intelligence program. The GCTI Analyst applies a broad understanding of tactical to strategic intelligence to provide actionable intelligence in support of the global and regional business technology, security, and incident response teams. This individual will work independently, or in concert with other team members to identify cybersecurity threats, produce analytical deliverables, and provide support to ensure internal recipients as required. The successful candidate will use all-source technical data collection and analysis to produce a commonly understandable model of relevant threat related activity. The role includes developing and maintaining a Threat Intelligence Platform to collect new technical and non-technical sources of information, threat research, threat profile development, analyses, debriefings, warnings, and operational data to create tailored intelligence products. The GCTI Analyst will be responsible for operating our insider threat operations and will support its development and implementation. This role is a dynamic role that will require strong technical ability across multiple technical disciplines and strong interpersonal skills.<p><br/></p><p><strong>Requirements</strong></p><p><strong>Duties:</strong></p> <ul> <li>Identify, collect, and curate cyber threat intelligence from multiple sources</li> <li>Drive the development of actionable cyber threat intelligence reporting and analysis to the global and regional business technology and security teams for purposes of situational awareness and risk reduction</li> <li>Develop intelligence briefings, reports, and short position papers, with a focus on relevant, actionable intelligence</li> <li>Conduct trending and correlation research from various cyber threat intelligence sources for the purposes of indicator collection, shifts in TTPs, attribution, and establishing countermeasures to increase cyber resiliency</li> <li>Conduct insider threat identification and reporting activities.</li> <li>Process community reporting, conduct link analysis and collaborate with other business technology and security teammates</li> <li>Provide support to the global security operations team during incident response and threat hunting activities that include cyber threat analysis support, research, recommending relevant mitigation and remediation</li> <li>Conduct analysis of active phishing campaigns, fraudulent online activities, and threat actors targeting the Firm</li> <li>Meet with business technology team, privacy team, and other stakeholders to gain a deeper understanding of our technology and security architectures, client requirements, client and regulatory requirements</li> <li>Actively monitor Firm resources and research cyber threats that could have a direct or indirect impact on the Firm, business operations, technology infrastructure and client trust</li> <li>Develop actionable threat intelligence at the tactical and operational levels sourced from internal incident reports and Open-Source Intelligence (OSINT) data</li> <li>Identify and develop a portfolio of threat profiles, threat activity, trends and common attack vectors from all available sources</li> <li>Assist in the integration of threat intelligence information into SIEM and SOAR platforms to enrich IOCs and assist ongoing response activities</li> <li>Additional projects and activities as required</li> </ul> <p><strong>Essential Requirements:</strong></p> <ul> <li>3+ years performing cyber threat intelligence functions</li> <li>Industry professional certifications such as GCTI, GOSI, C|TIA, CPTIA, CRTIA, CTIP, CCTIA, CISSP, CISM, etc.</li> <li>Demonstrated subject matter expertise in cyber threat models such as Cyber Kill Chain, MITRE ATT&amp;CK, Diamond Model, etc.</li> <li>Practical knowledge of cyber threat intelligence tools such as Maltego, Recorded Future, Shodan, MISP, Virus Total, YARA, STIX/TAXII, and ISAC Portals</li> <li>Demonstrable experience with SIEM, SOAR, Firewalls, Endpoint Protection, Security Event Correlation, Threat Intelligence Platforms, and Visualization Tools</li> <li>Subject matter expertise in the full cyber threat intelligence lifecycle</li> <li>Good analytical and problem-solving skills coupled with thoroughness and attention to detail</li> <li>Ability to optimize and condense information and transform data into easily understandable concepts, reports and presentation slides</li> <li>Deep understanding of increasingly sophisticated cyberattacks, threat TTPs, and associated defensive techniques</li> <li>Familiarity with security threat monitoring tools that identify data breaches and network compromises using externally generated threat intel feeds together with internal data sources</li> <li>Excellent written and verbal communica

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Dentons

View company profile →