Role & responsibilities
- Having 7+ years of experience in CTI SME
- Working with SOC engineers, architects, and incident responders.
- Documenting content logic, assumptions, and tuning parameters.
- Participating in governance and change management processes
- Hunting for advanced persistent threats (APTs) and zero-day exploits.
- Monitoring threat actor activity, TTPs (Tactics, Techniques, and Procedures), and Indicators of Compromise (IOCs).
- Leveraging threat feeds from open, commercial, and dark web sources
- Gathering raw data from internal logs, external feeds, and social media.
- Sorting, filtering, and analysing data to extract actionable insights.
- Disseminating intelligence to SOCs, CISOs, and executive stakeholders
- Producing executive-level dashboards and situational awareness reports.
- Advising on risk mitigation strategies and compliance frameworks (e.g., NIST, RMF).
- Supporting audits and regulatory reporting through tailored intelligence briefs
- Collaborate with SOAR and SIEM teams to Automate threat detection and response workflows.
- Work closely with SOC analysts (L1L3) and SIEM Engineering Team to review threat briefs and refine detection logic
Preferred candidate profile
- Bachelors degree in Computer Science, Cybersecurity, Information Technology, or other related fields
- •Experience with workload, server, network architectures and associated security controls
- Tool: Google
📌 Cyber Threat Intelligence Analyst (Noida)
🏢 Kyndryl
📍 Noida